Computer security architecture and related computing method
US-9774568-B2 · Sep 26, 2017 · US
US10146517B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-10146517-B2 |
| Application number | US-201615044844-A |
| Country | US |
| Kind code | B2 |
| Filing date | Feb 16, 2016 |
| Priority date | Feb 16, 2015 |
| Publication date | Dec 4, 2018 |
| Grant date | Dec 4, 2018 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
An electronic device and method of controlling an electronic device are provided. The electronic device includes a communication module; a processor; and a memory that stores instructions to instruct the processor to install a first application operating only in a first environment, install a second application selectively operating in at least one of the first environment and a second environment, grant access to the first application to first data, the first data being generated while the second application operates in the first environment, deny access to the first application to second data, the second data being generated while the second application operates in the second environment, grant access to the second application to third data, the third data being generated while the first application operates in the first environment, and allocate the second application to at least the second environment without a user's input when the second application is installed.
Opening claim text (preview).
What is claimed is: 1. An electronic device comprising: a communication module; a processor; and a memory that stores instructions to instruct the processor to: install a first application operating only in a first environment, install a second application selectively operating in at least one of the first environment and a second environment, grant access to first data of the first application, the first data being generated while the second application operates in the first environment, deny access to second data of the first application, the second data being different than the first data and being generated while the second application operates in the second environment, grant access to third data of the second application, the third data being different than the first data and the second data and being generated while the first application operates in the first environment, and allocate the second application to at least the second environment without a user's input when the second application is installed. 2. The electronic device of claim 1 , wherein the second application includes metadata indicating whether the second application is associated with the second environment. 3. The electronic device of claim 2 , wherein the processor generates the second environment based on the metadata. 4. The electronic device of claim 2 , wherein the metadata includes at least one of data, a security level of the second application, and authentication related data for security. 5. The electronic device of claim 4 , wherein the processor determines whether to allocate the second application to the second environment according to the security level. 6. The electronic device of claim 1 , wherein the communication module transmits an authentication request for the second application to a security server, and receives an authentication result from the security server in response to the authentication request. 7. The electronic device of claim 6 , wherein the processor determines whether to allocate the second application to the second environment based on the authentication result, and allocates the second application to the second environment according to the determination of the allocation. 8. The electronic device of claim 6 , wherein the authentication request includes at least one of a security key and a value encoded by the security key. 9. The electronic device of claim 1 , wherein the processor controls the displaying of icons for executing applications allocated to the first environment and the second environment on a single screen. 10. The electronic device of claim 1 , wherein the second environment corresponds with a user identifier. 11. A method of controlling an electronic device, the method comprising; installing a first application operating only in a first environment; installing a second application selectively operating in the first environment or a second environment; granting access to first data of the first application, the first data being generated while the second application operates in the first environment; denying access to second data of the first application, the second data being different than the first data and being generated while the second application operates in the second environment; granting access to third data of the second application, the third data being different than the first data and the second data and being generated while the first application operates in the first environment; and allocating the second application to at least the second environment without a user's input when the second application is installed. 12. The method of claim 11 , wherein the second application includes metadata indicating whether the second application is associated with the second environment. 13. The method of claim 12 , further comprising generating the second environment based on the metadata. 14. The method of claim 12 , wherein the metadata includes at least one of data, a security level of the first application, and authentication related data for security. 15. The method of claim 14 , further comprising determining whether to allocate the second application to the second environment according to the security level.
Selection of displayed objects or displayed text elements (G06F3/0482 takes precedence) · CPC title
Installation · CPC title
Multi-level security, e.g. mandatory access control · CPC title
to a system of files or objects, e.g. local or distributed file system or database · CPC title
Program or device authentication · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.