Terminal-Specific Application Package Compilation for Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing operating systems, such as Android and iOS, lack effective protection mechanisms for applications, leading to security concerns and instability in the software industry chain ecosystem.

Innovation Solution

A method where a terminal sends an application download request to an application management server, which compiles an application installation package based on terminal identification information, ensuring the application can only be installed in a specific runtime environment, thereby enhancing security and stability.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If applications are made openly accessible in an open system like Android, then ease of operation and ecosystem collaboration are improved, but application security and stability of the software industry chain ecosystem deteriorate

Engineering Contradiction:
Improveease of operationVSAvoidapplication security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments the application distribution system by creating terminal-specific installation packages. Each terminal receives a customized package tied to its unique identification information, dividing the previously unified open distribution model into isolated, secure segments that prevent unauthorized copying and modification while maintaining ease of operation for legitimate users.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent applies local quality by binding application installation packages to specific terminal identification information. Each terminal receives a package with local quality characteristics (unique binding) that ensures security for that specific device while maintaining openness for other terminals, thus resolving the contradiction between open access and security.

Inventive Principle:
Principle #3Local quality

2Reliability

If applications are made accessible in a closed system like iOS, then application security is improved, but ease of operation and ecosystem collaboration deteriorate

Engineering Contradiction:
Improveapplication securityVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces dynamics by implementing a flexible application distribution mechanism that adapts between open and closed characteristics. The system dynamically generates terminal-specific packages that provide closed-system security when needed while maintaining open-system accessibility through automated distribution, thus resolving the contradiction between security and ease of operation.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent changes the parameter of package binding from either completely open or completely closed to a dynamic parameter based on terminal identification information. This parameter change allows the system to provide security equivalent to closed systems while maintaining the distribution efficiency and accessibility of open systems.

Inventive Principle:
Principle #35Parameter changes

3Reliability

If application installation packages are customized for specific terminals, then application security is improved, but device complexity increases

Engineering Contradiction:
Improveapplication securityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies self-service by enabling terminals to automatically receive and install their own customized application packages without requiring complex manual configuration. The terminal identification information is automatically bound to packages, and installation occurs seamlessly, thus achieving high security without significantly increasing device complexity for end users.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent implements preliminary action by pre-binding terminal identification information to application installation packages before distribution. This preliminary customization eliminates the need for complex post-installation security configurations, reducing overall device complexity while maintaining high security standards.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentEP3264265B1Application protection method, server and terminal
Publication Date: 2025.01.29 HUAWEI TECH CO LTD
  • EP3264265B1 patent drawingFigure 1~2
  • EP3264265B1 patent drawingFigure 3
  • EP3264265B1 patent drawingFigure 4

AI summary

Embodiments of the present invention disclose an application protection method, a server, and a terminal. The application protection method includes: receiving an application download request that is for a target application and that is sent by a terminal, where the application download request carries terminal identification information of the terminal; compiling an application installation package of the target application according to the terminal identification information; and sending the compiled application installation package to the terminal, so that the terminal installs the target application in a running environment that is based on the terminal identification information, where the running environment is obtained by the terminal by compiling a preset intermediate file of the terminal according to the terminal identification information, and the preset intermediate file includes a runtime file and a framework file. In the embodiments of the present invention, application security can be effectively improved and stability of a software industry chain ecosystem can be effectively improved.