Single Sign-On Launcher for Enterprise Mobile Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The complexity and cumbersome nature of separate authentication processes for multiple enterprise mobile applications hinder their adoption in the enterprise sector due to restrictive security mechanisms, impacting both user experience and administrative efficiency.

Innovation Solution

A single sign-on application launcher that authenticates users and appends security tokens to authorized mobile applications, allowing users to launch multiple applications securely through a unified authentication process, reducing the need for multiple login credentials.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If separate authentication processes are implemented for each enterprise mobile application, then security requirements can be met, but user experience deteriorates and operational complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidauthentication process
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent merges multiple separate authentication processes into a single unified authentication mechanism. The application launcher consolidates security checks across multiple enterprise applications, allowing users to authenticate once and access multiple applications without repeating the login process for each one, thereby maintaining security while improving ease of operation

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The application launcher serves as an intermediary between the user and multiple enterprise applications. It handles the authentication process centrally and distributes security tokens to various applications, acting as a mediator that maintains security requirements while simplifying the user interaction with multiple applications

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If multiple separate login credentials are required for different applications, then security policies can be enforced, but the log on process becomes cumbersome and complex

Engineering Contradiction:
Improvesecurity policy enforcementVSAvoidlog on process
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The application launcher provides a universal authentication interface that serves multiple enterprise applications through a single login process. Instead of requiring separate credentials for each application, the launcher uses a unified security mechanism that can enforce different security policies for different applications while presenting a consistent, simple login interface to users

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent segments the authentication process into two distinct phases: a centralized authentication phase handled by the application launcher, and individual application-specific authorization phases. This segmentation allows complex security policies to be enforced at the application level while keeping the user-facing login process simple and unified

Inventive Principle:
Principle #1Segmentation

3Reliability

If restrictive device configuration is implemented, then data security is ensured, but device functionality for personal use is adversely impacted

Engineering Contradiction:
Improvedata securityVSAvoiddevice functionality
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent applies local quality by implementing security restrictions at the application level rather than at the device level. Each enterprise application receives its own security token with specific access controls, allowing the device to maintain full functionality for personal use while individual applications enforce their own security policies independently

Inventive Principle:
Principle #3Local quality

Data Source

PatentUS10033763B2Centralized mobile application management system and methods of use
Publication Date: 2018.07.24 KONY INC
  • US10033763B2 patent drawing
  • US10033763B2 patent drawing
  • US10033763B2 patent drawing

AI summary

An application launcher is disclosed for retrieving and permitting launch of multiple mobile applications through a single, secure authentication process, and a method of use. The method includes receiving a request to launch one or more applications through a single authentication process. The method further includes authenticating a user through an application launcher. The method further includes appending a security token to one or more applications upon authentication of the user to enable the user to launch the one or more applications through the single authentication process provided by the application launcher.