CN104063656A - Method for realizing application program management and control under Android platform - Google Patents

Method for realizing application program management and control under Android platform Download PDF

Info

Publication number
CN104063656A
CN104063656A CN201410319591.9A CN201410319591A CN104063656A CN 104063656 A CN104063656 A CN 104063656A CN 201410319591 A CN201410319591 A CN 201410319591A CN 104063656 A CN104063656 A CN 104063656A
Authority
CN
China
Prior art keywords
application
application program
signature
android
android system
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201410319591.9A
Other languages
Chinese (zh)
Inventor
胡中涛
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Inspur Software Group Co Ltd
Original Assignee
Inspur Software Group Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Inspur Software Group Co Ltd filed Critical Inspur Software Group Co Ltd
Priority to CN201410319591.9A priority Critical patent/CN104063656A/en
Publication of CN104063656A publication Critical patent/CN104063656A/en
Pending legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/51Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems at application loading time, e.g. accepting, rejecting, starting or inhibiting executable software based on integrity or source reliability
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/10Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/57Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Software Systems (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • General Engineering & Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Multimedia (AREA)
  • Technology Law (AREA)
  • Stored Programmes (AREA)

Abstract

The invention discloses a method for realizing application program management and control under an Android platform, belongs to a mobile device application program management and control method, and solves the technical problem of how to control Android system mobile devices to prohibit installation of application programs for stealing user data and invading user privacy. The technical scheme is as follows: downloading or updating and controlling an application program to be downloaded on the Android system mobile equipment, and after an application program developer develops the application program, applying a signature file to an equipment manufacturer; the device manufacturer issues the signature file to an application program developer; the application program developer uses the signature file to sign the application program; putting the product on shelf to an application mall; when a user installs an application program to an Android system mobile device, the Android system verifies the signature of the application program; if the signature verification is passed, the signature can be normally installed or updated, otherwise, the signature is forbidden.

Description

A kind of method that realizes application programs management and control under Android platform
Technical field
The present invention relates to a kind of mobile device application program management-control method, specifically a kind of method that realizes application programs management and control under Android platform.
Background technology
On November 5th, 2007, Google has issued the equipment platform of increasing income--the Android based on Linux platform.This platform is made up of operating system, middleware, user interface and application program etc., it is the Mobile Development platform of first real opening of making for mobile terminal, Android is mainly used in mobile phone, panel computer in early days, afterwards due to the increasing income of Android, freely, characteristic freely, it is also constantly applied in the middle of more equipment, as Set Top Box, televisor, IPTV terminal, OTT terminal etc.
But, due to the opening of Android, in system, there is the abbreviation of apk(Android Package miscellaneous, i.e. Android installation kit) application program, as applying store application, Internet video application, video aggregated application, the third parties such as Web TV application apply.The educational application of helpful people's study and raising knowledge in these application, also there is the information amusement class application of joyful people's life, but also exist hacker's application of stealing subscriber data and invading privacy of user, the pornographic application of the regulation that transgresses the law in addition and the video display class application of piracy of intellectual property rights.And the various device of use Android system, especially the equipment using TV as display terminal such as Set Top Box, intelligent television, TV box, IPTV terminal, OTT TV internet television terminal is affected by the application of these confusions too, thereby can demonstrate many contents that do not meet Policy Conditions.
Android platform device business especially the equipment vendor using TV as display terminal in the urgent need to the application management-control method under a kind of Android platform.
Summary of the invention
Technical assignment of the present invention is for above weak point, provide a kind of application program that Android system mobile device is installed more standardize and legalize, can make Android system mobile device forbid installing a kind of method that realizes application programs management and control under Android platform of stealing subscriber data and invading the application program of privacy of user.
The technical solution adopted for the present invention to solve the technical problems is:
Under Android platform, realize a method for application programs management and control, on the Android system mobile device under Android platform, download or upgrade management and control downloading to the application program of this Android system mobile device, comprise the steps:
(1), application developer developed after application program, applies for the signature file of this application program on this equipment to the device fabrication business of Android system mobile device;
(2), device fabrication business receives after application, uses signature instrument to generate signature file, then signature file is handed down to application developer;
(3), application developer uses the signature file application programs of applying for from device fabrication business to sign;
(4), application developer by added application program to applying store;
(5), application program is mounted to Android system mobile device by user, Android system application programs is carried out signature verification;
(6), signature verification passes through, can normal mounting or upgrade application program, otherwise Android system forbids installing or upgrading this application program.
Automatic signature instrument is the Android application signature instrument of Google.
The Android application signature instrument of Google is Auto-sign software.
Application developer application development is completed and through test after, use the signature file application programs of applying for from device fabrication business to sign, last application programs is packed and is generated the application program of apk document form, added to applying store.
There is following mode by added application program to applying store: upload to device fabrication business's application store system, or upload to third-party application store system.
Android system mobile device comprises the mobile phone, flat panel TV, Set Top Box, TV box, intelligent television, IPTV terminal, the OTT terminal that use Android system.
A kind of method that realizes application programs management and control under Android platform of the present invention, has the following advantages:
1, issue signature file by device fabrication business, and Android system carries out authentication mechanism, the object that reaches application programs and carry out management and control;
The application program of 2, Android system mobile device being installed is more standardized and legalizes, and can make Android system mobile device forbid installing to steal subscriber data and invade the application program such as pornographic application, the video display class application of piracy of intellectual property rights of the application of hacker's class, the virus applications of privacy of user, the regulation that transgresses the law.
Brief description of the drawings
Below in conjunction with accompanying drawing, the present invention is further described.
Accompanying drawing 1 is a kind of FB(flow block) that realizes the method for application programs management and control under Android platform.
Embodiment
Below in conjunction with the drawings and specific embodiments, the invention will be further described.
Embodiment 1:
A kind of method that realizes application programs management and control under Android platform of the present invention, on Android system mobile device under Android platform, download or upgrade management and control downloading to the application program of this Android system mobile device, comprising the steps:
(1), application developer developed after application program, applies for the signature file of this application program on this equipment to the device fabrication business of Android system mobile device;
(2), device fabrication business receives after application, uses signature instrument to generate signature file, then signature file is handed down to application developer;
(3), application developer uses the signature file application programs of applying for from device fabrication business to sign;
(4), application developer by added application program to applying store;
(5), application program is mounted to Android system mobile device by user, Android system application programs is carried out signature verification;
(6), signature verification passes through, can normal mounting or upgrade application program, otherwise Android system forbids installing or upgrading this application program.
Automatic signature instrument is the Android application signature instrument of Google.
Embodiment 2:
A kind of method that realizes application programs management and control under Android platform of the present invention, on Android system mobile device under Android platform, download or upgrade management and control downloading to the application program of this Android system mobile device, comprising the steps:
(1), application developer developed after application program, applies for the signature file of this application program on this equipment to the device fabrication business of Android system mobile device;
(2), device fabrication business receives after application, uses signature instrument to generate signature file, then signature file is handed down to application developer;
(3), application developer uses the signature file application programs of applying for from device fabrication business to sign;
(4), application developer by added application program to applying store;
(5), application program is mounted to Android system mobile device by user, Android system application programs is carried out signature verification;
(6), signature verification passes through, can normal mounting or upgrade application program, otherwise Android system forbids installing or upgrading this application program.
Automatic signature instrument is the Android application signature instrument of Google.
The Android application signature instrument of Google is Auto-sign software.
Application developer application development is completed and through test after, use the signature file application programs of applying for from device fabrication business to sign, last application programs is packed and is generated the application program of apk document form, added to applying store.
There is following mode by added application program to applying store: upload to device fabrication business's application store system, or upload to third-party application store system.
Android system mobile device is the mobile phone that uses Android system.
Embodiment 3:
A kind of method that realizes application programs management and control under Android platform of the present invention, on Android system mobile device under Android platform, download or upgrade management and control downloading to the application program of this Android system mobile device, as shown in Figure 1, comprising the steps:
Step S101: developer applies for signature file: application developer must application programs be signed after exploitation completes application program in Android platform, application program through signature just can be by user installation, in order to reach the object of management and control, application developer is not the signature file that uses oneself to generate after having developed application, but applies for a signature file to the device fabrication business of Android system mobile device;
Step S102: equipment vendor authorizes signature file: device fabrication business receives after the application of application developer, uses the Android application signature instrument that Google provides to generate signature file, then signature file is handed down to application developer;
Step S103: developer's Application and Development: application developer uses Android SDK to develop suitable application program according to the intention of oneself;
Step S104: developer is to application signature: application developer completes application development and the application program of the generation apk document form of will pack after test, Android system requirements application program must just can be installed through signature, and at this moment application developer will use the signature file application programs of applying for from device fabrication business to sign;
Step S105: developer issues application: after application development and signature complete, application developer will try every possible means application to be distributed to user, the form of distribution is multimodal various, can upload to device fabrication business's application store system, also can upload to third-party application store, can also by other approach directly by apk file distributing to user;
Step S106: user is applied: the address that user can issue by application developer or the mutually propagation program apk file that is directly applied, also can directly download or indirectly download to application program apk file by various existing application store in Android system mobile device etc.;
Step S201: install, upgrade application: user can install or upgrade after the program that is directly or indirectly applied;
Step S202: judge whether signature is legal: the signature file of the Android system application programs that device fabrication business will customize by oneself in the time installing or upgrade application is verified;
Step S203: allow application is installed: the signature file of this application program of signature verification is the signature file that device fabrication business issues, can normal mounting or upgrade this application program;
Step S204: forbid application is installed: the signature file of this application program of signature verification is not the signature file that device fabrication business issues, can forbid installing or upgrading this application program, thereby reach the object of management and control.
Android system mobile device is the TV box that uses Android system.
Android system mobile device set up applications is mainly divided into three kinds of modes: 1, install by the built-in application store of equipment.2, apply store application or other application installation by third party.3, after equipment access movable storage device, install by file browser.The 1st kind of mounting means is owing to being the built-in application store of equipment using, application in the system of the application store of equipment vendor is all to advise application through closing of examination & verification, not need to carry out management and control, be mainly application program be derived from the third-party the 2nd and the 3rd kind of mounting means just need to carry out management and control, due to the application program of Android be with the form of apk file exist and application developer issue application must sign to it, in the time of use the 2nd and the 3rd kind of mounting means, only need the signature file information of application programs to compare, legal permission is installed, illegal forbid installing just can reach the object of management and control.After application program is installed, in the time that application developer has redaction to issue, can upgrade by application program or other means reminding user, user upgrades after also can redaction being detected by the renewal measuring ability in built-in application store.The management and control mode of upgrading is identical with mounting pipe control method, is that the signature file information of application programs is compared equally, and legal signature file allows to upgrade, and illegal signature file is forbidden upgrading to reach the object of management and control.
Above-mentioned embodiment is only concrete case of the present invention; scope of patent protection of the present invention includes but not limited to above-mentioned embodiment; any a kind of suitable variation or replacements claims and that any person of an ordinary skill in the technical field does it that realize the method for application programs management and control under Android platform according to the invention, all should fall into scope of patent protection of the present invention.

Claims (6)

1. under Android platform, realize the method for application programs management and control for one kind, it is characterized in that on the Android system mobile device under Android platform, download or upgrade management and control downloading to the application program of this Android system mobile device, comprising the steps:
(1), application developer developed after application program, applies for the signature file of this application program on this equipment to the device fabrication business of Android system mobile device;
(2), device fabrication business receives after application, uses signature instrument to generate signature file, then signature file is handed down to application developer;
(3), application developer uses the signature file application programs of applying for from device fabrication business to sign;
(4), application developer by added application program to applying store;
(5), application program is mounted to Android system mobile device by user, Android system application programs is carried out signature verification;
(6), signature verification passes through, can normal mounting or upgrade application program, otherwise Android system forbids installing or upgrading this application program.
2. a kind of method that realizes application programs management and control under Android platform according to claim 1, is characterized in that automatic signature instrument is the Android application signature instrument of Google.
3. a kind of method that realizes application programs management and control under Android platform according to claim 2, is characterized in that the Android application signature instrument of Google is Auto-sign software.
4. a kind of method that realizes application programs management and control under Android platform according to claim 1, it is characterized in that application developer completes application development and after test, use the signature file application programs of applying for from device fabrication business to sign, last application programs is packed and is generated the application program of apk document form, added to applying store.
5. according to a kind of method that realizes application programs management and control under Android platform described in claim 1 or 4, it is characterized in that there is following mode by added application program to applying store: upload to device fabrication business's application store system, or upload to third-party application store system.
6. a kind of method that realizes application programs management and control under Android platform according to claim 1, is characterized in that Android system mobile device comprises the mobile phone, flat panel TV, Set Top Box, TV box, intelligent television, IPTV terminal, the OTT terminal that use Android system.
CN201410319591.9A 2014-07-07 2014-07-07 Method for realizing application program management and control under Android platform Pending CN104063656A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410319591.9A CN104063656A (en) 2014-07-07 2014-07-07 Method for realizing application program management and control under Android platform

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410319591.9A CN104063656A (en) 2014-07-07 2014-07-07 Method for realizing application program management and control under Android platform

Publications (1)

Publication Number Publication Date
CN104063656A true CN104063656A (en) 2014-09-24

Family

ID=51551364

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410319591.9A Pending CN104063656A (en) 2014-07-07 2014-07-07 Method for realizing application program management and control under Android platform

Country Status (1)

Country Link
CN (1) CN104063656A (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104392168A (en) * 2014-11-27 2015-03-04 上海斐讯数据通信技术有限公司 Application program verification method
CN104618437A (en) * 2014-12-31 2015-05-13 成都卓影科技有限公司 Adaptation method for android terminal device system setting interface
WO2016127587A1 (en) * 2015-02-13 2016-08-18 中兴通讯股份有限公司 Software version updating method and apparatus

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102300065A (en) * 2011-08-31 2011-12-28 四川长虹电器股份有限公司 Security authentication method for android-platform-based smart television software
CN103324506A (en) * 2013-06-24 2013-09-25 上海天奕达电子科技有限公司 Method and mobile phone for controlling installation of Android applications
CN103685138A (en) * 2012-08-30 2014-03-26 卓望数码技术(深圳)有限公司 Method and system for authenticating application software of Android platform on mobile internet
US9083703B2 (en) * 2012-03-29 2015-07-14 Lockheed Martin Corporation Mobile enterprise smartcard authentication

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102300065A (en) * 2011-08-31 2011-12-28 四川长虹电器股份有限公司 Security authentication method for android-platform-based smart television software
US9083703B2 (en) * 2012-03-29 2015-07-14 Lockheed Martin Corporation Mobile enterprise smartcard authentication
CN103685138A (en) * 2012-08-30 2014-03-26 卓望数码技术(深圳)有限公司 Method and system for authenticating application software of Android platform on mobile internet
CN103324506A (en) * 2013-06-24 2013-09-25 上海天奕达电子科技有限公司 Method and mobile phone for controlling installation of Android applications

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104392168A (en) * 2014-11-27 2015-03-04 上海斐讯数据通信技术有限公司 Application program verification method
CN104618437A (en) * 2014-12-31 2015-05-13 成都卓影科技有限公司 Adaptation method for android terminal device system setting interface
CN104618437B (en) * 2014-12-31 2018-01-12 成都卓影科技有限公司 A kind of adaptation method that interface is set with android terminal device systems
WO2016127587A1 (en) * 2015-02-13 2016-08-18 中兴通讯股份有限公司 Software version updating method and apparatus

Similar Documents

Publication Publication Date Title
Acar et al. Sok: Lessons learned from android security research for appified software platforms
US9537869B2 (en) Geographical restrictions for application usage on a mobile device
US8566937B2 (en) Information processing apparatus and method for preventing unauthorized cooperation of applications
US8613101B2 (en) Software distribution service federation
Barrera et al. Secure software installation on smartphones
CN103049692B (en) A kind of application installation method, device and equipment
CN104516783B (en) Authority control method and device
KR102003850B1 (en) Method for providing application and terminal thereof
CN102289633A (en) Method for managing dynamic permission of application program under Android platform
Husted et al. Smartphone security limitations: conflicting traditions
KR102125923B1 (en) Method and apparatus for upgrading operating system of a electronic device
KR20140074252A (en) Secure execution of unsecured apps on a device
KR20140044991A (en) Method and apparatus for managing application in a user device
CN103858130A (en) Method, apparatus and terminal for administration of permission
KR20120092724A (en) Methods and apparatus for content protection in a wireless network
CN110209416A (en) Application software update method, device, terminal and storage medium
CN104036194B (en) Vulnerability detection method and device for revealing private data in application program
CN103793248A (en) Method and device for upgrading application program
Alepis et al. Hey doc, is this normal?: Exploring android permissions in the post marshmallow era
CN104063656A (en) Method for realizing application program management and control under Android platform
US9672353B2 (en) Securing and managing apps on a device using policy gates
CN103019938A (en) Method and device for locally testing application program based on cloud platform
Jeter et al. Identifying and quantifying the android device users' security risk exposure
CN103024558A (en) Television camera privacy security protection method and system
US9354849B2 (en) Modification of compiled applications and application management using retrievable policies

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20140924

WD01 Invention patent application deemed withdrawn after publication