Virtual Desktop Storage Authentication via QR Code Mediator
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current cloud storage systems require manual authentication credentials for accessing remote storage providers, which is cumbersome and impractical for scalable and secure virtual desktop infrastructure, especially when dealing with vast numbers of virtual machines with limited lifetimes.
Innovation Solution
Obtaining an authentication token from an authentication platform that can be used to securely access remote storage providers, allowing seamless access to virtual applications for performing operations on cloud-stored files without manual credential input.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If manual authentication credentials are used for accessing remote storage providers, then security can be maintained, but the system becomes cumbersome and impractical for scalable virtual desktop infrastructure
Solution Approach 1:
The system automatically manages authentication credentials through machine-readable documents that contain embedded authentication information. Virtual machines can independently access remote storage providers without manual credential input, as the authentication credentials are automatically provided through the machine-readable document (e.g., QR code) scanned by the storage provider client application.
Solution Approach 2:
A machine-readable document (QR code) serves as an intermediary between the virtual machine and the remote storage provider. This intermediary contains embedded authentication credentials that enable automatic authentication, eliminating the need for manual credential entry while maintaining security.
2Productivity
If authentication credentials are manually entered for each virtual machine, then security can be ensured, but the process becomes time-consuming and impractical for vast numbers of virtual machines
Solution Approach 1:
Authentication credentials are pre-configured in the machine-readable document before the virtual machine needs to access the storage provider. The QR code contains embedded authentication information that is prepared in advance, allowing immediate authentication without time-consuming manual credential entry when the virtual machine needs to access remote storage.
3Productivity
If session handles are not cached, then memory resources are preserved, but repeated authentication operations must be performed, reducing system efficiency
Solution Approach 1:
The system implements selective caching of session handles in memory based on local conditions. Session handles are cached when memory resources are available and authentication operations are repeated, improving efficiency. The caching is managed locally in the storage provider client application, allowing the system to optimize between memory usage and authentication speed based on specific operational contexts.
Data Source
AI summary
A method includes retrieving, by a workspace client on a computing device, a first set of resource associations from a workspace server. The first set of resource associations identify one or more data file-types executable by each application on a virtualization server. The method also includes generating, by the workspace client, from the first set of resource associations, a second set of resource associations. The second set of resource associations identify a subset of applications on the virtualization server operable to perform operations on each of the one or more data file-types. The method further includes obtaining, by a storage provider client on the computing device, the second set of resource associations. The storage provider client is configured to enable one or more applications on the virtualization server to execute at least one data file accessible from a storage provider.


