CN104200159A - Method and device for configuring application program permission - Google Patents

Method and device for configuring application program permission Download PDF

Info

Publication number
CN104200159A
CN104200159A CN201410453132.XA CN201410453132A CN104200159A CN 104200159 A CN104200159 A CN 104200159A CN 201410453132 A CN201410453132 A CN 201410453132A CN 104200159 A CN104200159 A CN 104200159A
Authority
CN
China
Prior art keywords
authority
application program
information
layer
described application
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201410453132.XA
Other languages
Chinese (zh)
Other versions
CN104200159B (en
Inventor
庄庆
宋爽
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Qihoo Technology Co Ltd
Original Assignee
Beijing Qihoo Technology Co Ltd
Qizhi Software Beijing Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Qihoo Technology Co Ltd, Qizhi Software Beijing Co Ltd filed Critical Beijing Qihoo Technology Co Ltd
Priority to CN201410453132.XA priority Critical patent/CN104200159B/en
Publication of CN104200159A publication Critical patent/CN104200159A/en
Application granted granted Critical
Publication of CN104200159B publication Critical patent/CN104200159B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/51Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems at application loading time, e.g. accepting, rejecting, starting or inhibiting executable software based on integrity or source reliability
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2145Inheriting rights or properties, e.g., propagation of permissions or restrictions within a hierarchy

Abstract

The invention discloses a method and device for configuring application program permission. The method comprises the steps that an application program layer monitors the behavior of installing application programs in a frame layer through a monitoring module and determines the application programs which are being installed or to be installed through monitoring to obtain installation package information containing the installation types and the permission information of the application programs; the application program permission is configured through the permission information when upgrade installation or coverage is determined through the installation types. According to the method and device, the trouble of reconfiguring software permission after a user updates software can be saved.

Description

The method of the authority of configuring application program and device
Technical field
The present invention relates to technical field of mobile terminals, be specifically related to a kind of method and device of authority of configuring application program.
Background technology
As the most popular Mobile operating system in the whole world, Android (Android) has had hundreds of millions of users.When the application program in Android system (software) will be carried out some key operation, all must the corresponding authority of application.In view of the application program of a lot of Android systems can be applied for many non-essential authorities, such as sending note, reading the important privacy authorities such as contact person, this likely brings the risk that privacy is revealed and property is lost to user.So the fail-safe software of some Android platform provides application program rights management function now, user can be according to the use needs of oneself, and the authority of configuring application program, avoids privacy to reveal voluntarily.
Yet after user configures the application program updating of authority, the authority of application program will be restored to default configuration, user need to reconfigure all authorities of this application program, and this very bothers and be not humane for user.
Summary of the invention
In view of the above problems, the present invention has been proposed to a kind of method and device of authority of the configuring application program that overcomes the problems referred to above or address the above problem are at least in part provided.
According to one aspect of the present invention, a kind of method of authority of configuring application program is provided, comprising: application layer, by monitoring module, is monitored the behavior of described application program is installed in ccf layer; By described monitoring, determine and to install or application program to be installed, get the Setup Type that comprises described application program and the installation kit information of authority information; While determining that by described Setup Type installation behavior is update or covering installation, utilize described authority information to be configured the authority of described application program.
Preferably, described application layer is monitored and is comprised the behavior of described application program is installed in ccf layer by monitoring module: described application layer is by monitoring the API in module invoke block rack-layer, and the behavior that realization is installed described application program to ccf layer is monitored.
Preferably, describedly by described monitoring, get the Setup Type that comprises described application program and the installation kit information of authority information comprises: by the API in invoke block rack-layer, obtain the APK file that comprises installation kit information; By the API Message function in invoke block rack-layer, obtain the Setup Type of described application program; Resolve described APK file, obtain the function list file of operating system, from this function list file, get the authority information of described application program.
Preferably, described authority information comprises: the authority of short message reading record, read associated person information authority, read message registration authority, obtain the authority of positional information, and/or, obtain the authority of facility information.
Preferably, describedly utilize described authority information that the authority of described application program is configured and is comprised: in definite described installation behavior, to be update or cover while installing, to read the last authority of preserving of installing; According to described authority, the authority of described application program is configured.
Preferably, describedly utilize described authority information that the authority of described application program is configured and is comprised: directly to utilize described authority information to be configured the authority of described application program, or, described authority information is showed to user, make user to authority, carry out option and installment on described authority information basis.
Preferably, described is described application program to be installed last time preserve afterwards for the authority information that the authority of described application program is configured.
Preferably, described method also comprises: set in advance the application list, described list comprises the application program list that need to carry out described authority allocation plan; According to the sign of described application program, mate with described list, if the match is successful, for described application program, carry out described authority allocation plan.
Preferably, after installing described application program, also comprise: ccf layer returns to installment state code to application layer; Described application layer is by described installment state code, and whether judgement this time installs successful, if successful installation saves as APK file by the authority configuration of this installation, for installing and using next time.
Preferably, described method also comprises: by the monitoring module of described application layer, monitor described ccf layer and whether described application program is carried out to unloading operation; If listened to, described application program is carried out to unloading operation, the authority information file relevant to described application program of preserving deleted.
According to another aspect of the present invention, a kind of device of authority of configuring application program is provided, comprising: monitoring unit, for utilizing application layer to monitor ccf layer being installed to the behavior of described application program; Information acquisition unit, for being determined and to be installed or application program to be installed, get the Setup Type that comprises described application program and the installation kit information of authority information by described monitoring unit; Authority dispensing unit, for determining that by described Setup Type installation behavior is update or while cover installing, and utilizes described authority information to be configured the authority of described application program.
Preferably, described monitoring unit specifically for: by the API in described application layer invoke block rack-layer, realize the behavior that ccf layer is installed to described application program and monitor.
Preferably, described information acquisition unit specifically for: by the API in invoke block rack-layer, obtain the APK file that comprises installation kit information; By the API Message function in invoke block rack-layer, obtain the Setup Type of described application program; And, resolve described APK file, obtain the function list file of operating system, from this function list file, get the authority information of described application program.
Preferably, described authority information comprises: the authority of short message reading record, read associated person information authority, read message registration authority, obtain the authority of positional information, and/or, obtain the authority of facility information.
Preferably, described authority dispensing unit specifically for: in definite described installation behavior, be update or while cover installing, read the last authority of preserving of installing; According to described authority, the authority of described application program is configured.
Preferably, authority dispensing unit specifically for: directly utilize described authority information to be configured the authority of described application program, or, described authority information is showed to user, make user to authority, carry out option and installment on described authority information basis.
Preferably, described authority dispensing unit utilizes and the authority information of preserving after described application program was installed last time this installation is carried out to authority configuration.
Preferably, described authority dispensing unit mates with the application list setting in advance according to the sign of described application program, if the match is successful, for described application program, carry out described authority allocation plan, wherein, described the application list comprises the application program list that need to carry out described authority allocation plan.
Preferably, also comprise: installment state determining unit, for obtain installment state code from ccf layer, described application layer is by described installment state code, and whether judgement this time installs successful; Authority storage unit, if this successful installation saves as APK file by the authority configuration of this installation, for installing and using next time.
Preferably, also comprise: unloading monitoring unit, by described application layer, monitor described ccf layer and whether described application program is carried out to unloading operation; Authority delete cells, carries out unloading operation if listened to described application program, for the authority information file relevant to described application program of preserving deleted.
Visible, in technical scheme provided by the invention, by monitoring the behavior of set up applications, under non-installation situation first, by being installed before getting, the authority information of preserving shows user, user is unnecessary to be chosen again to every authority, but configuration can take easily installed last time time.
Above-mentioned explanation is only the general introduction of technical solution of the present invention, in order to better understand technological means of the present invention, and can be implemented according to the content of instructions, and for above and other objects of the present invention, feature and advantage can be become apparent, below especially exemplified by the specific embodiment of the present invention.
Accompanying drawing explanation
By reading below detailed description of the preferred embodiment, various other advantage and benefits will become cheer and bright for those of ordinary skills.Accompanying drawing is only for the object of preferred implementation is shown, and do not think limitation of the present invention.And in whole accompanying drawing, by identical reference symbol, represent identical parts.In the accompanying drawings:
Fig. 1 shows the method flow diagram of the authority of configuring application program according to an embodiment of the invention; And
Fig. 2 shows the method schematic diagram of the authority of configuring application program according to an embodiment of the invention.
Embodiment
Exemplary embodiment of the present disclosure is described below with reference to accompanying drawings in more detail.Although shown exemplary embodiment of the present disclosure in accompanying drawing, yet should be appreciated that and can realize the disclosure and the embodiment that should do not set forth limits here with various forms.On the contrary, it is in order more thoroughly to understand the disclosure that these embodiment are provided, and can by the scope of the present disclosure complete convey to those skilled in the art.
The invention discloses a kind of method that authority information of application programs manages, can exempt the puzzlement that needs to reconfigure software authority after customer upgrade software.
Referring to Fig. 1, the method flow diagram of the authority of the configuring application program providing for one embodiment of the invention.
The method comprises the following steps:
S101: application layer, by monitoring module, is monitored the behavior of set up applications in ccf layer;
S102: determine and to install or application program to be installed by monitoring, get the Setup Type that comprises application program and the installation kit information of authority information;
S103: for example, while determining that by Setup Type installation behavior is non-installation first (update or covering are installed), the authority of exploitation right limit information application programs is configured.
It will be appreciated by those skilled in the art that operating system comprises application layer (app layer) and system framework layer (framework layer).A kind of preferred implementation of the present invention is app layer and framework layer are improved, thereby the authority information that utilizes this two-layer coordinated to realize application programs to manage.Concrete, can increase by one at app layer and monitor module, for the behavior of monitoring framework layer set up applications, thereby can be when set up applications, get installation kit information and the Setup Type of application program, thereby for example, when non-installation first (update or covering are installed), utilize the authority of the authority information application programs being resolved to be configured.
Referring to Fig. 2, it is the embodiment of the method schematic diagram of the authority of the configuring application program of the embodiment of the present invention.The monitoring module of App layer is monitored the behavior of some specific application programs is installed in framework layer, and the installation kit information listening to is resolved and acquired authority information, when Setup Type is non-while installing first, directly according to authority information, carry out the configuration of application program authority.
Can, by the API of operating system, realize the behavior of ccf layer set up applications is monitored.API (Application Programming Interface, application programming interface) be the calling interface that operating system is left application program for, application program makes operating system go the order of executive utility (action) by the API of call operation system.Can adopt interrupt mechanism to realize monitors API.Concrete, can adopt hook (hook or hook) mechanism to realize monitoring for realizing the interface of set up applications in framework layer.Those skilled in the art understand, and hook mechanism allows application program to intercept and capture message or the particular event of processing operating system.Hook is actually the program segment of a processing messages, by system call, it is hung into system.Whenever specific message is sent, before not arriving object window, hook program is just first caught this message, that is the first controlled power of Hook Function.At this moment Hook Function can process this message of processing (change), also can not deal with and continue to transmit this message, can also force the transmission of end.In embodiments of the present invention, adopt hook mechanism to interrupt the process of set up applications, realized before application program is installed and obtain relevant information.
Below when application program is installed, install after and while unloading three kinds of situations the embodiment of the present invention is introduced.
(1) when application program is installed, authority information reads, stores and arranges
New application program needs to apply for a lot of authorities when mounted.The authority of application program refer to application program have exercise certain/rights of a little operations.Such as, certain input method provides the function of an intelligent address list, user can be when front several characters of input contact person phonetic or initial, input method just can present Related Contact's name automatically, in order to realize this function, input method must state that it need to have the authority that reads contact person in mobile phone.
Installation kit information is resolved in the invention process regular meeting, and the authority of installation kit is enumerated out, and the installation monitoring of fit applications program shows user.
For example, a software is installed on the mobile phone of Android system, by calling API, APK (installation kit) file can be resolved, open the function list file AndroidManifest.xml of android, obtain the software function authority of registration.By the word implication of the id representative of this authority, the UI by monitoring before installing is showing user, user such as can allow, forbid at the operation.For example, the authority listing comprises: short message reading record (acquiescence allows), read associated person information (acquiescence allows), read message registration (acquiescence allows), obtain positional information (acquiescence is forbidden), obtain facility information (acquiescence is forbidden) etc., user can operate on this basis, for example user directly takes default setting, or part option is changed etc.Except this, authority information is showed to user, user is carried out outside option and installment authority on authority information basis, directly the authority of exploitation right limit information application programs is configured.It will be appreciated by those skilled in the art that, authority information for authority configuration in current installation process is the preservation afterwards of set up applications last time, for example this is installed as update contruction, directly utilizes the APK file of preserving after installing first last time to carry out authority configuration.
In addition, when software is installed, by calling API, learn the installation behavior of software, such as, cover installation, update etc.For different situations, the authority of keeping is configured to preservation.
Concrete, by the API Message function in invoke block rack-layer, the Setup Type of the program that is applied.Whether for example, by API PackageManager.getPackageInfo (), obtain current installation kit installed.If installed, further by the method, obtain the information such as version number of mounting software.
By the checking of the relevant informations such as version number, judge current behavior.If the behavior of judgement is update or cover installs, the authority of preservation is installed by last time so, read the rights state that user installed this APK preservation last time, as transmission note-forbid, obtain positional information-permission etc.Read after authority, authority setting is showed to user.
(2) authority after application program installation is preserved
After software is installed, operating system is whether the bag of current installation is successfully returned to correlative code (code), obtains passing through reflex mechanism after code, obtains the relevant information of this code representative.As successful installation, different, insufficient space installed unsuccessfully, sign etc.
Software is installed unsuccessfully, current APK authority is not preserved.
After software successful installation, the data of authority need to be preserved.So that while installing, carry out the setting of permissions data next time.
(3) authority after application program unloading is processed
By the monitoring module of application layer, whether application programs is carried out unloading operation to monitor ccf layer; If listen to application programs, carry out unloading operation, the authority information file relevant to application program of preserving deleted.For example, after software unloading, according to API, get unloading behavior, and the permissions data of preserving is removed.
Visible, the embodiment of the present invention at least comprises two gordian technique points:
1, by API, installation kit is resolved, analyze the authority of installation kit; And by screening, match user setting, shows user by final authority setting.
2, the adapter to the installation behavior of operating system, injects by bottom, by the installation behavior of system, is mapped to and installs in front monitoring; And the code of installment state is taken over, and the state analysis to code; Select the most at last correct result to show.
In technical scheme provided by the invention, by monitoring the behavior of set up applications, under non-installation situation first, by being installed before getting, the authority information of preserving shows user, user is unnecessary to be chosen again to every authority, but configuration can take easily installed last time time.
It should be noted that, can in terminal, by presetting application program list, only to specific application program, implement the present invention program.For example, 10 app are installed in mobile phone, by selection, set user and wish that wherein 5 app can implement authority allocation plan provided by the invention, for the app that does not select to set, do not wish to implement authority allocation plan of the present invention.Therefore, the embodiment of the present invention can also comprise: set in advance the application list, described list comprises the application program list that need to carry out described authority allocation plan; According to the sign of described application program, mate with described list, if the match is successful, for described application program, carry out described authority allocation plan.
Corresponding with said method, the present invention also provides a kind of device of authority of configuring application program.This device can be realized by hardware, software or software and hardware combining mode.This device can refer to the functional module of terminal inner, also can refer to terminal itself, as long as terminal comprises the function that realizes this device.Wherein, the operating system of terminal comprises ccf layer and application layer.This device comprises:
Monitoring unit, for utilizing application layer to monitor ccf layer being installed to the behavior of described application program;
Information acquisition unit, for being determined and to be installed or application program to be installed, get the Setup Type that comprises described application program and the installation kit information of authority information by described monitoring unit;
Authority dispensing unit, while installing for be defined as update or covering by described Setup Type, utilizes described authority information to be configured the authority of described application program.
Preferably, described monitoring unit specifically for: by the API in described application layer invoke block rack-layer, realize the behavior that ccf layer is installed to described application program and monitor.
Preferably, described information acquisition unit specifically for: by the API in invoke block rack-layer, obtain the APK file that comprises installation kit information; And, by the API Message function in invoke block rack-layer, obtain the Setup Type of described application program; Resolve described APK file, obtain the function list file of operating system, from this function list file, get the authority information of described application program.
Preferably, described authority information comprises: the authority of short message reading record, read associated person information authority, read message registration authority, obtain the authority of positional information, and/or, obtain the authority of facility information.
Preferably, described authority dispensing unit specifically for: in definite described installation behavior, be update or while cover installing, read the last authority of preserving of installing; According to described authority, the authority of described application program is configured.
Preferably, described authority dispensing unit specifically for: directly utilize described authority information to be configured the authority of described application program, or, described authority information is showed to user, make user to authority, carry out option and installment on described authority information basis.
Preferably, described authority dispensing unit utilizes and the authority information of preserving after described application program was installed last time this installation is carried out to authority configuration.
Preferably, described authority dispensing unit mates with the application list setting in advance according to the sign of described application program, if the match is successful, for described application program, carry out described authority allocation plan, wherein, described the application list comprises the application program list that need to carry out described authority allocation plan.
Preferably, described device also comprises:
Installment state determining unit, for obtain installment state code from ccf layer, described application layer is by described installment state code, and whether judgement this time installs successful;
Authority storage unit, if this successful installation saves as APK file by the authority configuration of this installation, for installing and using next time.
Preferably, described device also comprises:
Unloading monitoring unit, monitors described ccf layer by described application layer and whether described application program is carried out to unloading operation;
Authority delete cells, carries out unloading operation if listened to described application program, for the authority information file relevant to described application program of preserving deleted.
The algorithm providing at this is intrinsic not relevant to any certain computer, virtual system or miscellaneous equipment with demonstration.Various general-purpose systems also can with based on using together with this teaching.According to description above, it is apparent constructing the desired structure of this type systematic.In addition, the present invention is not also for any certain programmed language.It should be understood that and can utilize various programming languages to realize content of the present invention described here, and the description of above language-specific being done is in order to disclose preferred forms of the present invention.
In the instructions that provided herein, a large amount of details have been described.Yet, can understand, embodiments of the invention can not put into practice in the situation that there is no these details.In some instances, be not shown specifically known method, structure and technology, so that not fuzzy understanding of this description.
Similarly, be to be understood that, in order to simplify the disclosure and to help to understand one or more in each inventive aspect, in the above in the description of exemplary embodiment of the present invention, each feature of the present invention is grouped together into single embodiment, figure or sometimes in its description.Yet, the method for the disclosure should be construed to the following intention of reflection: the present invention for required protection requires than the more feature of feature of clearly recording in each claim.Or rather, as reflected in claims below, inventive aspect is to be less than all features of disclosed single embodiment above.Therefore, claims of following embodiment are incorporated to this embodiment thus clearly, and wherein each claim itself is as independent embodiment of the present invention.
Those skilled in the art are appreciated that and can the module in the equipment in embodiment are adaptively changed and they are arranged in one or more equipment different from this embodiment.Module in embodiment or unit or assembly can be combined into a module or unit or assembly, and can put them into a plurality of submodules or subelement or sub-component in addition.At least some in such feature and/or process or unit are mutually repelling, and can adopt any combination to combine all processes or the unit of disclosed all features in this instructions (comprising claim, summary and the accompanying drawing followed) and disclosed any method like this or equipment.Unless clearly statement in addition, in this instructions (comprising claim, summary and the accompanying drawing followed) disclosed each feature can be by providing identical, be equal to or the alternative features of similar object replaces.
In addition, those skilled in the art can understand, although embodiment more described herein comprise some feature rather than further feature included in other embodiment, the combination of the feature of different embodiment means within scope of the present invention and forms different embodiment.For example, in the following claims, the one of any of embodiment required for protection can be used with array mode arbitrarily.
All parts embodiment of the present invention can realize with hardware, or realizes with the software module moved on one or more processor, or realizes with their combination.It will be understood by those of skill in the art that and can use in practice microprocessor or digital signal processor (DSP) to realize the some or all functions according to the some or all parts in the device of the authority of the configuring application program of the embodiment of the present invention.The present invention for example can also be embodied as, for carrying out part or all equipment or device program (, computer program and computer program) of method as described herein.Realizing program of the present invention and can be stored on computer-readable medium like this, or can there is the form of one or more signal.Such signal can be downloaded and obtain from internet website, or provides on carrier signal, or provides with any other form.
It should be noted above-described embodiment the present invention will be described rather than limit the invention, and those skilled in the art can design alternative embodiment in the situation that do not depart from the scope of claims.In the claims, any reference symbol between bracket should be configured to limitations on claims.Word " comprises " not to be got rid of existence and is not listed as element or step in the claims.Being positioned at word " " before element or " one " does not get rid of and has a plurality of such elements.The present invention can be by means of including the hardware of some different elements and realizing by means of the computing machine of suitably programming.In having enumerated the unit claim of some devices, several in these devices can be to carry out imbody by same hardware branch.The use of word first, second and C grade does not represent any order.Can be title by these word explanations.
The invention provides following scheme:
The method of the authority of A1, a kind of configuring application program, comprising:
Application layer, by monitoring module, is monitored the behavior of described application program is installed in ccf layer;
By described monitoring, determine and to install or application program to be installed, get the Setup Type that comprises described application program and the installation kit information of authority information;
While determining that by described Setup Type installation behavior is update or covering installation, utilize described authority information to be configured the authority of described application program.
A2, the method as described in A1, described application layer is monitored and is comprised the behavior of described application program is installed in ccf layer by monitoring module:
Described application layer is by monitoring the API in module invoke block rack-layer, and the behavior that realization is installed described application program to ccf layer is monitored.
A3, the method as described in A2, describedly get the Setup Type that comprises described application program and the installation kit information of authority information comprises by described monitoring:
By the API in invoke block rack-layer, obtain the APK file that comprises installation kit information;
By the API Message function in invoke block rack-layer, obtain the Setup Type of described application program;
Resolve described APK file, obtain the function list file of operating system, from this function list file, get the authority information of described application program.
A4, the method as described in A1, described authority information comprises: the authority of short message reading record, read associated person information authority, read message registration authority, obtain the authority of positional information, and/or, obtain the authority of facility information.
A5, the method as described in A1, describedly utilize described authority information that the authority of described application program is configured and is comprised:
When definite described installation behavior is update or covering installation, read the last authority of preserving of installing;
According to described authority, the authority of described application program is configured.
A6, the method as described in A1, describedly utilize described authority information that the authority of described application program is configured and is comprised:
Directly utilize described authority information to be configured the authority of described application program, or, described authority information is showed to user, make user to authority, carry out option and installment on described authority information basis.
A7, the method as described in A1, described is described application program to be installed last time preserve afterwards for the authority information that the authority of described application program is configured.
A8, the method as described in A1, described method also comprises:
Set in advance the application list, described list comprises the application program list that need to carry out described authority allocation plan;
According to the sign of described application program, mate with described list, if the match is successful, for described application program, carry out described authority allocation plan.
A9, the method as described in A1, after installing described application program, also comprise:
Ccf layer returns to installment state code to application layer;
Described application layer is by described installment state code, and whether judgement this time installs successful, if successful installation saves as APK file by the authority configuration of this installation, for installing and using next time.
A10, the method as described in A1, described method also comprises:
By the monitoring module of described application layer, monitor described ccf layer and whether described application program is carried out to unloading operation;
If listened to, described application program is carried out to unloading operation, the authority information file relevant to described application program of preserving deleted.
The device of the authority of B11, a kind of configuring application program, comprising:
Monitoring unit, for utilizing application layer to monitor ccf layer being installed to the behavior of described application program;
Information acquisition unit, for being determined and to be installed or application program to be installed, get the Setup Type that comprises described application program and the installation kit information of authority information by described monitoring unit;
Authority dispensing unit, for determining that by described Setup Type installation behavior is update or while cover installing, and utilizes described authority information to be configured the authority of described application program.
B12, the device as described in B11, described monitoring unit specifically for: by the API in described application layer invoke block rack-layer, realize the behavior that ccf layer is installed to described application program and monitor.
B13, the device as described in B10, described information acquisition unit specifically for: by the API in invoke block rack-layer, obtain the APK file that comprises installation kit information; By the API Message function in invoke block rack-layer, obtain the Setup Type of described application program; And, resolve described APK file, obtain the function list file of operating system, from this function list file, get the authority information of described application program.
B14, the device as described in B11, described authority information comprises: the authority of short message reading record, read associated person information authority, read message registration authority, obtain the authority of positional information, and/or, obtain the authority of facility information.
B15, the device as described in B11, described authority dispensing unit specifically for: in definite described installation behavior, be update or while cover installing, read the last authority of preserving of installing; According to described authority, the authority of described application program is configured.
B16, the device as described in B11, authority dispensing unit specifically for: directly utilize described authority information to be configured the authority of described application program, or, described authority information is showed to user, make user to authority, carry out option and installment on described authority information basis.
B17, the device as described in B11, described authority dispensing unit utilizes to be installed the authority information of preserving after described application program last time this installation was carried out to authority configuration.
B18, the device as described in B11, described authority dispensing unit mates with the application list setting in advance according to the sign of described application program, if the match is successful, for described application program, carry out described authority allocation plan, wherein, described the application list comprises the application program list that need to carry out described authority allocation plan.
B19, the device as described in B11, also comprise:
Installment state determining unit, for obtain installment state code from ccf layer, described application layer is by described installment state code, and whether judgement this time installs successful;
Authority storage unit, if this successful installation saves as APK file by the authority configuration of this installation, for installing and using next time.
B20, the device as described in B11, also comprise:
Unloading monitoring unit, monitors described ccf layer by described application layer and whether described application program is carried out to unloading operation;
Authority delete cells, carries out unloading operation if listened to described application program, for the authority information file relevant to described application program of preserving deleted.

Claims (10)

1. a method for the authority of configuring application program, is characterized in that, comprising:
Application layer, by monitoring module, is monitored the behavior of described application program is installed in ccf layer;
By described monitoring, determine and to install or application program to be installed, get the Setup Type that comprises described application program and the installation kit information of authority information;
While determining that by described Setup Type installation behavior is update or covering installation, utilize described authority information to be configured the authority of described application program.
2. the method for claim 1, is characterized in that, described application layer is monitored and comprised the behavior of described application program is installed in ccf layer by monitoring module:
Described application layer is by monitoring the API in module invoke block rack-layer, and the behavior that realization is installed described application program to ccf layer is monitored.
3. method as claimed in claim 2, is characterized in that, describedly by described monitoring, gets the Setup Type that comprises described application program and the installation kit information of authority information comprises:
By the API in invoke block rack-layer, obtain the APK file that comprises installation kit information;
By the API Message function in invoke block rack-layer, obtain the Setup Type of described application program;
Resolve described APK file, obtain the function list file of operating system, from this function list file, get the authority information of described application program.
4. the method for claim 1, is characterized in that, described authority information comprises: the authority of short message reading record, read associated person information authority, read message registration authority, obtain the authority of positional information, and/or, obtain the authority of facility information.
5. the method for claim 1, is characterized in that, describedly utilizes described authority information that the authority of described application program is configured and is comprised:
When definite described installation behavior is update or covering installation, read the last authority of preserving of installing;
According to described authority, the authority of described application program is configured.
6. the method for claim 1, is characterized in that, describedly utilizes described authority information that the authority of described application program is configured and is comprised:
Directly utilize described authority information to be configured the authority of described application program, or, described authority information is showed to user, make user to authority, carry out option and installment on described authority information basis.
7. the method for claim 1, is characterized in that, described is described application program to be installed last time preserve afterwards for the authority information that the authority of described application program is configured.
8. the method for claim 1, is characterized in that, described method also comprises:
Set in advance the application list, described list comprises the application program list that need to carry out described authority allocation plan;
According to the sign of described application program, mate with described list, if the match is successful, for described application program, carry out described authority allocation plan.
9. the method for claim 1, is characterized in that, after installing described application program, also comprises:
Ccf layer returns to installment state code to application layer;
Described application layer is by described installment state code, and whether judgement this time installs successful, if successful installation saves as APK file by the authority configuration of this installation, for installing and using next time.
10. a device for the authority of configuring application program, is characterized in that, comprising:
Monitoring unit, for utilizing application layer to monitor ccf layer being installed to the behavior of described application program;
Information acquisition unit, for being determined and to be installed or application program to be installed, get the Setup Type that comprises described application program and the installation kit information of authority information by described monitoring unit;
Authority dispensing unit, for determining that by described Setup Type installation behavior is update or while cover installing, and utilizes described authority information to be configured the authority of described application program.
CN201410453132.XA 2014-09-05 2014-09-05 Configure the method and device of the authority of application program Active CN104200159B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410453132.XA CN104200159B (en) 2014-09-05 2014-09-05 Configure the method and device of the authority of application program

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410453132.XA CN104200159B (en) 2014-09-05 2014-09-05 Configure the method and device of the authority of application program

Publications (2)

Publication Number Publication Date
CN104200159A true CN104200159A (en) 2014-12-10
CN104200159B CN104200159B (en) 2017-07-28

Family

ID=52085450

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410453132.XA Active CN104200159B (en) 2014-09-05 2014-09-05 Configure the method and device of the authority of application program

Country Status (1)

Country Link
CN (1) CN104200159B (en)

Cited By (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104462961A (en) * 2014-12-24 2015-03-25 北京奇虎科技有限公司 Mobile terminal and privacy permission optimizing method thereof
CN105653904A (en) * 2015-12-24 2016-06-08 北京奇虎科技有限公司 Application screen-locking processing method and apparatus as well as mobile terminal
CN107526580A (en) * 2016-07-26 2017-12-29 腾讯科技(深圳)有限公司 Terminal applies recognition methods and device
CN108132818A (en) * 2016-11-30 2018-06-08 阿里巴巴集团控股有限公司 Interface processing method and the electronic device for performing this method
CN108234414A (en) * 2016-12-16 2018-06-29 北京京东尚科信息技术有限公司 A kind of upgrade method and device of APP applications
CN108681436A (en) * 2018-03-13 2018-10-19 广东欧珀移动通信有限公司 Image quality parameter adjusting method, device, terminal and storage medium
CN109711150A (en) * 2018-12-19 2019-05-03 努比亚技术有限公司 Using installation permission grant method for limiting and device, mobile terminal and storage medium
CN109815680A (en) * 2018-12-27 2019-05-28 歌尔股份有限公司 Management method, device, terminal device and the storage medium of application permission
WO2020024793A1 (en) * 2018-07-30 2020-02-06 中兴通讯股份有限公司 Method, terminal, and computer readable storage medium for processing information
CN111125676A (en) * 2019-12-23 2020-05-08 北京百度网讯科技有限公司 Joint authorization method and device
CN111273962A (en) * 2020-02-14 2020-06-12 腾讯科技(深圳)有限公司 Configuration management method, device, computer readable storage medium and computer equipment
CN112559293A (en) * 2020-12-22 2021-03-26 上海哔哩哔哩科技有限公司 Application package monitoring method and device

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101697133A (en) * 2009-10-26 2010-04-21 中兴通讯股份有限公司 Software upgrading method, software upgrading system and client
CN102200922A (en) * 2011-04-06 2011-09-28 宇龙计算机通信科技(深圳)有限公司 Application program installation method and terminal
US20130067563A1 (en) * 2011-09-09 2013-03-14 Pantech Co., Ltd. Apparatus and method for managing permission information of application
CN103324506A (en) * 2013-06-24 2013-09-25 上海天奕达电子科技有限公司 Method and mobile phone for controlling installation of Android applications
CN103345411A (en) * 2013-07-09 2013-10-09 北京奇虎科技有限公司 Method and device for uninstalling application program
CN103577757A (en) * 2013-11-15 2014-02-12 北京奇虎科技有限公司 Virus defending method and device
CN103870306A (en) * 2014-02-21 2014-06-18 北京奇虎科技有限公司 Method and device for installing application program on basis of intelligent terminal equipment

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101697133A (en) * 2009-10-26 2010-04-21 中兴通讯股份有限公司 Software upgrading method, software upgrading system and client
CN102200922A (en) * 2011-04-06 2011-09-28 宇龙计算机通信科技(深圳)有限公司 Application program installation method and terminal
US20130067563A1 (en) * 2011-09-09 2013-03-14 Pantech Co., Ltd. Apparatus and method for managing permission information of application
CN103324506A (en) * 2013-06-24 2013-09-25 上海天奕达电子科技有限公司 Method and mobile phone for controlling installation of Android applications
CN103345411A (en) * 2013-07-09 2013-10-09 北京奇虎科技有限公司 Method and device for uninstalling application program
CN103577757A (en) * 2013-11-15 2014-02-12 北京奇虎科技有限公司 Virus defending method and device
CN103870306A (en) * 2014-02-21 2014-06-18 北京奇虎科技有限公司 Method and device for installing application program on basis of intelligent terminal equipment

Cited By (18)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104462961A (en) * 2014-12-24 2015-03-25 北京奇虎科技有限公司 Mobile terminal and privacy permission optimizing method thereof
CN105653904B (en) * 2015-12-24 2019-05-17 北京奇虎科技有限公司 Using the processing method of screen locking, device and mobile terminal
CN105653904A (en) * 2015-12-24 2016-06-08 北京奇虎科技有限公司 Application screen-locking processing method and apparatus as well as mobile terminal
CN107526580A (en) * 2016-07-26 2017-12-29 腾讯科技(深圳)有限公司 Terminal applies recognition methods and device
CN108132818A (en) * 2016-11-30 2018-06-08 阿里巴巴集团控股有限公司 Interface processing method and the electronic device for performing this method
CN108132818B (en) * 2016-11-30 2021-12-21 阿里巴巴集团控股有限公司 Interface processing method and electronic device for executing same
CN108234414A (en) * 2016-12-16 2018-06-29 北京京东尚科信息技术有限公司 A kind of upgrade method and device of APP applications
CN108681436B (en) * 2018-03-13 2020-09-22 Oppo广东移动通信有限公司 Image quality parameter adjusting method, device, terminal and storage medium
CN108681436A (en) * 2018-03-13 2018-10-19 广东欧珀移动通信有限公司 Image quality parameter adjusting method, device, terminal and storage medium
WO2020024793A1 (en) * 2018-07-30 2020-02-06 中兴通讯股份有限公司 Method, terminal, and computer readable storage medium for processing information
CN109711150A (en) * 2018-12-19 2019-05-03 努比亚技术有限公司 Using installation permission grant method for limiting and device, mobile terminal and storage medium
CN109815680A (en) * 2018-12-27 2019-05-28 歌尔股份有限公司 Management method, device, terminal device and the storage medium of application permission
CN109815680B (en) * 2018-12-27 2021-08-31 歌尔股份有限公司 Application authority management method and device, terminal equipment and storage medium
CN111125676A (en) * 2019-12-23 2020-05-08 北京百度网讯科技有限公司 Joint authorization method and device
CN111125676B (en) * 2019-12-23 2022-06-03 北京百度网讯科技有限公司 Joint authorization method and device
CN111273962A (en) * 2020-02-14 2020-06-12 腾讯科技(深圳)有限公司 Configuration management method, device, computer readable storage medium and computer equipment
CN111273962B (en) * 2020-02-14 2022-02-18 腾讯科技(深圳)有限公司 Configuration management method, device, computer readable storage medium and computer equipment
CN112559293A (en) * 2020-12-22 2021-03-26 上海哔哩哔哩科技有限公司 Application package monitoring method and device

Also Published As

Publication number Publication date
CN104200159B (en) 2017-07-28

Similar Documents

Publication Publication Date Title
CN104200159A (en) Method and device for configuring application program permission
CN104731625B (en) A kind of method, apparatus and mobile terminal loading plug-in unit
CN107870787B (en) Application program plug-in loading method and system
CN103761472B (en) Application program accessing method and device based on intelligent terminal
CN103761471A (en) Application program installation method and device based on intelligent terminal
US20210055927A1 (en) Systems, method, and media for determining security compliance of continuous build software
CN104199703A (en) Unattended setup management method and device
CN103839000A (en) Application program installation method and device based on intelligent terminal equipment
CN103870306A (en) Method and device for installing application program on basis of intelligent terminal equipment
CN103595766B (en) Realize the method and device of the sending out notice of extension application
CN103677527A (en) Suspension problem interaction control display method and device suitable for mobile terminal
CN103078949A (en) Method and system for displaying phone number information
CN104375861A (en) Installation-free operation method and device for application programs based on Android platform and terminal
CN103713904A (en) Method, related device and system for installing applications in working area of mobile terminal
CN104536981A (en) Browser safety achieving method, browser client-side and device
WO2007146710A2 (en) Device management in a network
CN103763354A (en) Method and device for downloading upgrading data
CN103577749B (en) The treating method and apparatus of informing message
CN103150513A (en) Method and device for intercepting embedded information in application program
CN103761178A (en) Method for realizing application uninstalling surveys
CN103577747A (en) Mobile equipment privacy protection device and method
CN109815680B (en) Application authority management method and device, terminal equipment and storage medium
CN106557669A (en) A kind of authority control method and device of application program installation process
CN104360925A (en) Method and device for counting and recording use frequency of application program
CN104462997A (en) Method, device and system for protecting work data in mobile terminal

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant
TR01 Transfer of patent right
TR01 Transfer of patent right

Effective date of registration: 20220713

Address after: Room 801, 8th floor, No. 104, floors 1-19, building 2, yard 6, Jiuxianqiao Road, Chaoyang District, Beijing 100015

Patentee after: BEIJING QIHOO TECHNOLOGY Co.,Ltd.

Address before: 100088 room 112, block D, 28 new street, new street, Xicheng District, Beijing (Desheng Park)

Patentee before: BEIJING QIHOO TECHNOLOGY Co.,Ltd.

Patentee before: Qizhi software (Beijing) Co.,Ltd.