Virtual Device Shared File Security via Controller Segmentation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Virtual devices sharing files pose security risks due to potential modifications by one virtual device affecting others, leading to unprotected storage and security breaches.

Innovation Solution

Implementing a controller that creates an alternative exclusive file when a shared file is modified, denying access to the modifying virtual device and requesting restoration from outside sources, ensuring the original shared file remains unmodified and secure.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Quantity of substance

If virtual devices share files to improve resource utilization, then storage efficiency is improved, but security protection deteriorates because modifications by one virtual device can affect others

Engineering Contradiction:
Improvestorage efficiencyVSAvoidsecurity protection
Core Design Contradiction:
Quantity of substanceVSReliability

Solution Approach 1:

The patent segments the shared file into multiple versions (original shared file and alternative files) with different access permissions. Each virtual device is assigned specific access rights to different versions, allowing storage efficiency to be maintained while security is protected through segmented access control.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent applies local quality by giving different access permissions to different virtual devices for the same file. The controller manages read-only access for some devices and read-write access for others, allowing storage efficiency while maintaining security through localized permission assignment.

Inventive Principle:
Principle #3Local quality

2Adaptability or versatility

If a virtual device is allowed to modify shared files to improve functionality, then adaptability is improved, but security protection deteriorates because other virtual devices may be affected by unauthorized modifications

Engineering Contradiction:
ImprovefunctionalityVSAvoidsecurity protection
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The controller acts as an intermediary between virtual devices and shared files. It manages modification requests by creating alternative files when modifications are needed, allowing functional adaptability while maintaining security protection through centralized mediation.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent uses copying by creating alternative files when modifications are required. The original shared file remains intact and protected, while modified versions are created as separate copies, allowing functionality improvement without compromising security.

Inventive Principle:
Principle #26Copying

3Reliability

If access control is implemented to protect shared files, then security protection is improved, but device complexity increases due to additional management mechanisms

Engineering Contradiction:
Improvesecurity protectionVSAvoidmanagement complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system implements self-service by automatically creating alternative files and managing access permissions when modifications are detected. The controller autonomously handles security management tasks, improving security protection while minimizing the complexity burden on users.

Inventive Principle:
Principle #25Self-service

Data Source

PatentEP3493094B1Electronic device and control method therefor
Publication Date: 2024.11.13 SAMSUNG ELECTRONICS CO LTD
  • EP3493094B1 patent drawingFigure 1
  • EP3493094B1 patent drawingFigure 2
  • EP3493094B1 patent drawingFigure 3

AI summary

Disclosed is an electronic device comprising: a storage configured to store a shared file shared between a plurality of virtual devices; and a controller configured to create an alternative film by copying the shared file when a first virtual device of the plurality of virtual devices makes a request for modifying the shared file, and control a second virtual device, which desires to share the shared file, to refer to the alternative file.