CN104063656A - Method for realizing application program management and control under Android platform - Google Patents
Method for realizing application program management and control under Android platform Download PDFInfo
- Publication number
- CN104063656A CN104063656A CN201410319591.9A CN201410319591A CN104063656A CN 104063656 A CN104063656 A CN 104063656A CN 201410319591 A CN201410319591 A CN 201410319591A CN 104063656 A CN104063656 A CN 104063656A
- Authority
- CN
- China
- Prior art keywords
- application
- application program
- signature
- android
- android system
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
- 238000000034 method Methods 0.000 title claims abstract description 22
- 238000012795 verification Methods 0.000 claims abstract description 12
- 238000004519 manufacturing process Methods 0.000 claims description 26
- 238000011161 development Methods 0.000 claims description 7
- 238000012360 testing method Methods 0.000 claims description 4
- 238000009434 installation Methods 0.000 abstract description 4
- GOLXNESZZPUPJE-UHFFFAOYSA-N spiromesifen Chemical compound CC1=CC(C)=CC(C)=C1C(C(O1)=O)=C(OC(=O)CC(C)(C)C)C11CCCC1 GOLXNESZZPUPJE-UHFFFAOYSA-N 0.000 description 5
- 241000700605 Viruses Species 0.000 description 1
- 238000013459 approach Methods 0.000 description 1
- 238000009826 distribution Methods 0.000 description 1
- 238000003860 storage Methods 0.000 description 1
Classifications
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/51—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems at application loading time, e.g. accepting, rejecting, starting or inhibiting executable software based on integrity or source reliability
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/10—Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
-
- G—PHYSICS
- G06—COMPUTING; CALCULATING OR COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/57—Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Software Systems (AREA)
- Theoretical Computer Science (AREA)
- Computer Hardware Design (AREA)
- General Engineering & Computer Science (AREA)
- Physics & Mathematics (AREA)
- General Physics & Mathematics (AREA)
- Multimedia (AREA)
- Technology Law (AREA)
- Stored Programmes (AREA)
Abstract
The invention discloses a method for realizing application program management and control under an Android platform, belongs to a mobile device application program management and control method, and solves the technical problem of how to control Android system mobile devices to prohibit installation of application programs for stealing user data and invading user privacy. The technical scheme is as follows: downloading or updating and controlling an application program to be downloaded on the Android system mobile equipment, and after an application program developer develops the application program, applying a signature file to an equipment manufacturer; the device manufacturer issues the signature file to an application program developer; the application program developer uses the signature file to sign the application program; putting the product on shelf to an application mall; when a user installs an application program to an Android system mobile device, the Android system verifies the signature of the application program; if the signature verification is passed, the signature can be normally installed or updated, otherwise, the signature is forbidden.
Description
Technical field
The present invention relates to a kind of mobile device application program management-control method, specifically a kind of method that realizes application programs management and control under Android platform.
Background technology
On November 5th, 2007, Google has issued the equipment platform of increasing income--the Android based on Linux platform.This platform is made up of operating system, middleware, user interface and application program etc., it is the Mobile Development platform of first real opening of making for mobile terminal, Android is mainly used in mobile phone, panel computer in early days, afterwards due to the increasing income of Android, freely, characteristic freely, it is also constantly applied in the middle of more equipment, as Set Top Box, televisor, IPTV terminal, OTT terminal etc.
But, due to the opening of Android, in system, there is the abbreviation of apk(Android Package miscellaneous, i.e. Android installation kit) application program, as applying store application, Internet video application, video aggregated application, the third parties such as Web TV application apply.The educational application of helpful people's study and raising knowledge in these application, also there is the information amusement class application of joyful people's life, but also exist hacker's application of stealing subscriber data and invading privacy of user, the pornographic application of the regulation that transgresses the law in addition and the video display class application of piracy of intellectual property rights.And the various device of use Android system, especially the equipment using TV as display terminal such as Set Top Box, intelligent television, TV box, IPTV terminal, OTT TV internet television terminal is affected by the application of these confusions too, thereby can demonstrate many contents that do not meet Policy Conditions.
Android platform device business especially the equipment vendor using TV as display terminal in the urgent need to the application management-control method under a kind of Android platform.
Summary of the invention
Technical assignment of the present invention is for above weak point, provide a kind of application program that Android system mobile device is installed more standardize and legalize, can make Android system mobile device forbid installing a kind of method that realizes application programs management and control under Android platform of stealing subscriber data and invading the application program of privacy of user.
The technical solution adopted for the present invention to solve the technical problems is:
Under Android platform, realize a method for application programs management and control, on the Android system mobile device under Android platform, download or upgrade management and control downloading to the application program of this Android system mobile device, comprise the steps:
(1), application developer developed after application program, applies for the signature file of this application program on this equipment to the device fabrication business of Android system mobile device;
(2), device fabrication business receives after application, uses signature instrument to generate signature file, then signature file is handed down to application developer;
(3), application developer uses the signature file application programs of applying for from device fabrication business to sign;
(4), application developer by added application program to applying store;
(5), application program is mounted to Android system mobile device by user, Android system application programs is carried out signature verification;
(6), signature verification passes through, can normal mounting or upgrade application program, otherwise Android system forbids installing or upgrading this application program.
Automatic signature instrument is the Android application signature instrument of Google.
The Android application signature instrument of Google is Auto-sign software.
Application developer application development is completed and through test after, use the signature file application programs of applying for from device fabrication business to sign, last application programs is packed and is generated the application program of apk document form, added to applying store.
There is following mode by added application program to applying store: upload to device fabrication business's application store system, or upload to third-party application store system.
Android system mobile device comprises the mobile phone, flat panel TV, Set Top Box, TV box, intelligent television, IPTV terminal, the OTT terminal that use Android system.
A kind of method that realizes application programs management and control under Android platform of the present invention, has the following advantages:
1, issue signature file by device fabrication business, and Android system carries out authentication mechanism, the object that reaches application programs and carry out management and control;
The application program of 2, Android system mobile device being installed is more standardized and legalizes, and can make Android system mobile device forbid installing to steal subscriber data and invade the application program such as pornographic application, the video display class application of piracy of intellectual property rights of the application of hacker's class, the virus applications of privacy of user, the regulation that transgresses the law.
Brief description of the drawings
Below in conjunction with accompanying drawing, the present invention is further described.
Accompanying drawing 1 is a kind of FB(flow block) that realizes the method for application programs management and control under Android platform.
Embodiment
Below in conjunction with the drawings and specific embodiments, the invention will be further described.
Embodiment 1:
A kind of method that realizes application programs management and control under Android platform of the present invention, on Android system mobile device under Android platform, download or upgrade management and control downloading to the application program of this Android system mobile device, comprising the steps:
(1), application developer developed after application program, applies for the signature file of this application program on this equipment to the device fabrication business of Android system mobile device;
(2), device fabrication business receives after application, uses signature instrument to generate signature file, then signature file is handed down to application developer;
(3), application developer uses the signature file application programs of applying for from device fabrication business to sign;
(4), application developer by added application program to applying store;
(5), application program is mounted to Android system mobile device by user, Android system application programs is carried out signature verification;
(6), signature verification passes through, can normal mounting or upgrade application program, otherwise Android system forbids installing or upgrading this application program.
Automatic signature instrument is the Android application signature instrument of Google.
Embodiment 2:
A kind of method that realizes application programs management and control under Android platform of the present invention, on Android system mobile device under Android platform, download or upgrade management and control downloading to the application program of this Android system mobile device, comprising the steps:
(1), application developer developed after application program, applies for the signature file of this application program on this equipment to the device fabrication business of Android system mobile device;
(2), device fabrication business receives after application, uses signature instrument to generate signature file, then signature file is handed down to application developer;
(3), application developer uses the signature file application programs of applying for from device fabrication business to sign;
(4), application developer by added application program to applying store;
(5), application program is mounted to Android system mobile device by user, Android system application programs is carried out signature verification;
(6), signature verification passes through, can normal mounting or upgrade application program, otherwise Android system forbids installing or upgrading this application program.
Automatic signature instrument is the Android application signature instrument of Google.
The Android application signature instrument of Google is Auto-sign software.
Application developer application development is completed and through test after, use the signature file application programs of applying for from device fabrication business to sign, last application programs is packed and is generated the application program of apk document form, added to applying store.
There is following mode by added application program to applying store: upload to device fabrication business's application store system, or upload to third-party application store system.
Android system mobile device is the mobile phone that uses Android system.
Embodiment 3:
A kind of method that realizes application programs management and control under Android platform of the present invention, on Android system mobile device under Android platform, download or upgrade management and control downloading to the application program of this Android system mobile device, as shown in Figure 1, comprising the steps:
Step S101: developer applies for signature file: application developer must application programs be signed after exploitation completes application program in Android platform, application program through signature just can be by user installation, in order to reach the object of management and control, application developer is not the signature file that uses oneself to generate after having developed application, but applies for a signature file to the device fabrication business of Android system mobile device;
Step S102: equipment vendor authorizes signature file: device fabrication business receives after the application of application developer, uses the Android application signature instrument that Google provides to generate signature file, then signature file is handed down to application developer;
Step S103: developer's Application and Development: application developer uses Android SDK to develop suitable application program according to the intention of oneself;
Step S104: developer is to application signature: application developer completes application development and the application program of the generation apk document form of will pack after test, Android system requirements application program must just can be installed through signature, and at this moment application developer will use the signature file application programs of applying for from device fabrication business to sign;
Step S105: developer issues application: after application development and signature complete, application developer will try every possible means application to be distributed to user, the form of distribution is multimodal various, can upload to device fabrication business's application store system, also can upload to third-party application store, can also by other approach directly by apk file distributing to user;
Step S106: user is applied: the address that user can issue by application developer or the mutually propagation program apk file that is directly applied, also can directly download or indirectly download to application program apk file by various existing application store in Android system mobile device etc.;
Step S201: install, upgrade application: user can install or upgrade after the program that is directly or indirectly applied;
Step S202: judge whether signature is legal: the signature file of the Android system application programs that device fabrication business will customize by oneself in the time installing or upgrade application is verified;
Step S203: allow application is installed: the signature file of this application program of signature verification is the signature file that device fabrication business issues, can normal mounting or upgrade this application program;
Step S204: forbid application is installed: the signature file of this application program of signature verification is not the signature file that device fabrication business issues, can forbid installing or upgrading this application program, thereby reach the object of management and control.
Android system mobile device is the TV box that uses Android system.
Android system mobile device set up applications is mainly divided into three kinds of modes: 1, install by the built-in application store of equipment.2, apply store application or other application installation by third party.3, after equipment access movable storage device, install by file browser.The 1st kind of mounting means is owing to being the built-in application store of equipment using, application in the system of the application store of equipment vendor is all to advise application through closing of examination & verification, not need to carry out management and control, be mainly application program be derived from the third-party the 2nd and the 3rd kind of mounting means just need to carry out management and control, due to the application program of Android be with the form of apk file exist and application developer issue application must sign to it, in the time of use the 2nd and the 3rd kind of mounting means, only need the signature file information of application programs to compare, legal permission is installed, illegal forbid installing just can reach the object of management and control.After application program is installed, in the time that application developer has redaction to issue, can upgrade by application program or other means reminding user, user upgrades after also can redaction being detected by the renewal measuring ability in built-in application store.The management and control mode of upgrading is identical with mounting pipe control method, is that the signature file information of application programs is compared equally, and legal signature file allows to upgrade, and illegal signature file is forbidden upgrading to reach the object of management and control.
Above-mentioned embodiment is only concrete case of the present invention; scope of patent protection of the present invention includes but not limited to above-mentioned embodiment; any a kind of suitable variation or replacements claims and that any person of an ordinary skill in the technical field does it that realize the method for application programs management and control under Android platform according to the invention, all should fall into scope of patent protection of the present invention.
Claims (6)
1. under Android platform, realize the method for application programs management and control for one kind, it is characterized in that on the Android system mobile device under Android platform, download or upgrade management and control downloading to the application program of this Android system mobile device, comprising the steps:
(1), application developer developed after application program, applies for the signature file of this application program on this equipment to the device fabrication business of Android system mobile device;
(2), device fabrication business receives after application, uses signature instrument to generate signature file, then signature file is handed down to application developer;
(3), application developer uses the signature file application programs of applying for from device fabrication business to sign;
(4), application developer by added application program to applying store;
(5), application program is mounted to Android system mobile device by user, Android system application programs is carried out signature verification;
(6), signature verification passes through, can normal mounting or upgrade application program, otherwise Android system forbids installing or upgrading this application program.
2. a kind of method that realizes application programs management and control under Android platform according to claim 1, is characterized in that automatic signature instrument is the Android application signature instrument of Google.
3. a kind of method that realizes application programs management and control under Android platform according to claim 2, is characterized in that the Android application signature instrument of Google is Auto-sign software.
4. a kind of method that realizes application programs management and control under Android platform according to claim 1, it is characterized in that application developer completes application development and after test, use the signature file application programs of applying for from device fabrication business to sign, last application programs is packed and is generated the application program of apk document form, added to applying store.
5. according to a kind of method that realizes application programs management and control under Android platform described in claim 1 or 4, it is characterized in that there is following mode by added application program to applying store: upload to device fabrication business's application store system, or upload to third-party application store system.
6. a kind of method that realizes application programs management and control under Android platform according to claim 1, is characterized in that Android system mobile device comprises the mobile phone, flat panel TV, Set Top Box, TV box, intelligent television, IPTV terminal, the OTT terminal that use Android system.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201410319591.9A CN104063656A (en) | 2014-07-07 | 2014-07-07 | Method for realizing application program management and control under Android platform |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201410319591.9A CN104063656A (en) | 2014-07-07 | 2014-07-07 | Method for realizing application program management and control under Android platform |
Publications (1)
Publication Number | Publication Date |
---|---|
CN104063656A true CN104063656A (en) | 2014-09-24 |
Family
ID=51551364
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201410319591.9A Pending CN104063656A (en) | 2014-07-07 | 2014-07-07 | Method for realizing application program management and control under Android platform |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN104063656A (en) |
Cited By (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN104392168A (en) * | 2014-11-27 | 2015-03-04 | 上海斐讯数据通信技术有限公司 | Application program verification method |
CN104618437A (en) * | 2014-12-31 | 2015-05-13 | 成都卓影科技有限公司 | Adaptation method for android terminal device system setting interface |
WO2016127587A1 (en) * | 2015-02-13 | 2016-08-18 | 中兴通讯股份有限公司 | Software version updating method and apparatus |
Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN102300065A (en) * | 2011-08-31 | 2011-12-28 | 四川长虹电器股份有限公司 | Security authentication method for android-platform-based smart television software |
CN103324506A (en) * | 2013-06-24 | 2013-09-25 | 上海天奕达电子科技有限公司 | Method and mobile phone for controlling installation of Android applications |
CN103685138A (en) * | 2012-08-30 | 2014-03-26 | 卓望数码技术(深圳)有限公司 | Method and system for authenticating application software of Android platform on mobile internet |
US9083703B2 (en) * | 2012-03-29 | 2015-07-14 | Lockheed Martin Corporation | Mobile enterprise smartcard authentication |
-
2014
- 2014-07-07 CN CN201410319591.9A patent/CN104063656A/en active Pending
Patent Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN102300065A (en) * | 2011-08-31 | 2011-12-28 | 四川长虹电器股份有限公司 | Security authentication method for android-platform-based smart television software |
US9083703B2 (en) * | 2012-03-29 | 2015-07-14 | Lockheed Martin Corporation | Mobile enterprise smartcard authentication |
CN103685138A (en) * | 2012-08-30 | 2014-03-26 | 卓望数码技术(深圳)有限公司 | Method and system for authenticating application software of Android platform on mobile internet |
CN103324506A (en) * | 2013-06-24 | 2013-09-25 | 上海天奕达电子科技有限公司 | Method and mobile phone for controlling installation of Android applications |
Cited By (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN104392168A (en) * | 2014-11-27 | 2015-03-04 | 上海斐讯数据通信技术有限公司 | Application program verification method |
CN104618437A (en) * | 2014-12-31 | 2015-05-13 | 成都卓影科技有限公司 | Adaptation method for android terminal device system setting interface |
CN104618437B (en) * | 2014-12-31 | 2018-01-12 | 成都卓影科技有限公司 | A kind of adaptation method that interface is set with android terminal device systems |
WO2016127587A1 (en) * | 2015-02-13 | 2016-08-18 | 中兴通讯股份有限公司 | Software version updating method and apparatus |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
Acar et al. | Sok: Lessons learned from android security research for appified software platforms | |
US9537869B2 (en) | Geographical restrictions for application usage on a mobile device | |
US8566937B2 (en) | Information processing apparatus and method for preventing unauthorized cooperation of applications | |
US8613101B2 (en) | Software distribution service federation | |
Barrera et al. | Secure software installation on smartphones | |
CN103049692B (en) | A kind of application installation method, device and equipment | |
CN104516783B (en) | Authority control method and device | |
KR102003850B1 (en) | Method for providing application and terminal thereof | |
CN102289633A (en) | Method for managing dynamic permission of application program under Android platform | |
Husted et al. | Smartphone security limitations: conflicting traditions | |
KR102125923B1 (en) | Method and apparatus for upgrading operating system of a electronic device | |
KR20140074252A (en) | Secure execution of unsecured apps on a device | |
KR20140044991A (en) | Method and apparatus for managing application in a user device | |
CN103858130A (en) | Method, apparatus and terminal for administration of permission | |
KR20120092724A (en) | Methods and apparatus for content protection in a wireless network | |
CN110209416A (en) | Application software update method, device, terminal and storage medium | |
CN104036194B (en) | Vulnerability detection method and device for revealing private data in application program | |
CN103793248A (en) | Method and device for upgrading application program | |
Alepis et al. | Hey doc, is this normal?: Exploring android permissions in the post marshmallow era | |
CN104063656A (en) | Method for realizing application program management and control under Android platform | |
US9672353B2 (en) | Securing and managing apps on a device using policy gates | |
CN103019938A (en) | Method and device for locally testing application program based on cloud platform | |
Jeter et al. | Identifying and quantifying the android device users' security risk exposure | |
CN103024558A (en) | Television camera privacy security protection method and system | |
US9354849B2 (en) | Modification of compiled applications and application management using retrievable policies |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
WD01 | Invention patent application deemed withdrawn after publication |
Application publication date: 20140924 |
|
WD01 | Invention patent application deemed withdrawn after publication |