Remote Signing Wrapped Applications via Secure Intermediary

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current methods for certifying and signing electronic applications require the exchange of private information, potentially leading to inadvertent disclosure and are limited by third-party restrictions, necessitating a more secure and efficient way to handle signed and wrapped applications.

Innovation Solution

A method for signing a wrapped computer application involves receiving it via a secure communication connection, authenticating, modifying, and transmitting it to another server using secure communication connections, which may include modifying certificates using confidential information and signature keys, allowing for secure re-signing and re-certification of wrapped applications.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If an entity transmits their private information (such as a key) to another entity for signing and certification, then the application can be certified and signed, but the private information may be inadvertently disclosed or restricted by third-party terms

Engineering Contradiction:
Improveapplication certification reliabilityVSAvoidprivate information disclosure risk
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a remote signing service as an intermediary between the application developer and the signing entity. The service receives the application, performs the signing operation remotely using the signing entity's credentials, and returns the signed application without requiring direct transmission of private keys. This mediator approach enables certification while eliminating the need for sensitive information exchange.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If an entity requires another entity to wrap the electronic application after signing, then additional functions can be performed, but the signing entity would need to pursue costly and time-intensive alternatives to re-sign the wrapped application

Engineering Contradiction:
Improveapplication processing versatilityVSAvoidre-signing time
Core Design Contradiction:
Adaptability or versatilityVSLoss of time

Solution Approach 1:

The patent enables the signing operation to be performed as a preliminary action before wrapping, and then the wrapped application can be re-signed remotely through the same service. The system is designed to handle signing at different stages (before and after wrapping) without requiring time-intensive manual intervention, thus enabling versatile processing workflows.

Inventive Principle:
Principle #10Preliminary action

3Reliability

If current methods are used for signing and wrapping applications, then applications can be certified, but the process is limited by third-party restrictions and requires exchange of confidential information

Engineering Contradiction:
Improveapplication signing reliabilityVSAvoidinformation exchange complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the sensitive information exchange step from the signing process. By using remote signing services, the system removes the requirement for direct transmission of private keys and confidential information between entities. The signing operation is performed remotely using secured credentials, eliminating the complex information exchange while maintaining signing reliability.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS9692741B1Remote signing wrapped applications
Publication Date: 2017.06.27 CA TECH INC
  • US9692741B1 patent drawing
  • US9692741B1 patent drawing
  • US9692741B1 patent drawing

AI summary

A method for signing a wrapped computer application is described. In some embodiments, methods may include receiving a wrapped computer application via a first secure communication connection from a first remote server, authenticating the first secure communication connection, modifying the wrapped computer application based at least in part on the authenticating, and transmitting the wrapped computer application via a second secure communication connection to a second remote server based at least in part on the modifying.