CN105404827B - The method, apparatus and system communicated between control application program - Google Patents

The method, apparatus and system communicated between control application program Download PDF

Info

Publication number
CN105404827B
CN105404827B CN201510989527.6A CN201510989527A CN105404827B CN 105404827 B CN105404827 B CN 105404827B CN 201510989527 A CN201510989527 A CN 201510989527A CN 105404827 B CN105404827 B CN 105404827B
Authority
CN
China
Prior art keywords
application
priority assignation
destination
application interface
interface
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201510989527.6A
Other languages
Chinese (zh)
Other versions
CN105404827A (en
Inventor
王力
李旋
张晨
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Qihoo Technology Co Ltd
Original Assignee
Beijing Qihoo Technology Co Ltd
Qizhi Software Beijing Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Qihoo Technology Co Ltd, Qizhi Software Beijing Co Ltd filed Critical Beijing Qihoo Technology Co Ltd
Priority to CN201510989527.6A priority Critical patent/CN105404827B/en
Publication of CN105404827A publication Critical patent/CN105404827A/en
Application granted granted Critical
Publication of CN105404827B publication Critical patent/CN105404827B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • G06F21/629Protecting access to data via a platform, e.g. using keys or access control rules to features or functions of an application
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2221/00Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/21Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F2221/2141Access rights, e.g. capability lists, access control lists, access tables, access matrices

Abstract

The invention discloses the method, apparatus and system that are communicated between a kind of control application program, it is related to Internet technical field, can solve the problem of in the prior art when the application program in the personal area on same mobile terminal can be accessed arbitrarily, access the application program of workspace there will be illegally uploaded by the application program in personal area, the shared and equivalent risk that leaks.The present invention method include mainly:Business administration client receives the application interface priority assignation instruction that server is sent, and the instruction of application interface priority assignation includes the application identities and priority assignation information of the destination application of application interface permission to be placed;The application identities and priority assignation information of destination application in being instructed according to application interface priority assignation are that access rights are arranged in the application interface of the destination application in workspace.The present invention is mainly suitable in BYOD, control in the scene mutually called between workspace and the application program in personal area.

Description

The method, apparatus and system communicated between control application program
Technical field
The present invention relates to Internet technical fields, more particularly to a kind of method communicated between control application program, fill It sets and system.
Background technology
With mobile terminal maturation with it is universal, progressed into as the individual mobile terminal of representative using mobile phone, tablet computer Enterprise field, this phenomenon are referred to as handling official business (Bring Your Own Device, BYOD) from carrying device.Employee uses at present Individual mobile terminal office has become a kind of trend that can not be reversed.
In BYOD, existing individual application program and data, also there is enterprise application and data on same mobile terminal, Region where individual application program and data is referred to as personal area, and the region where enterprise application and data is referred to as work Make area.If the application program in personal area can arbitrarily access, access the application program of workspace, there will be by personal area The risk that application program is illegally uploaded, shares and leaked.Therefore, in BYOD, how by the workspace on same mobile terminal It is effectively isolated and comes with the application program and data in personal area, to ensure that the safety of business data is current a great problem.
Invention content
In view of this, the method, apparatus and system that are communicated between a kind of control application program provided by the invention, can solve Certainly in the prior art when the application program in the personal area on same mobile terminal can arbitrarily access, access the application journey of workspace When sequence, there will be illegally uploaded by the application program in personal area, it is shared and leak equivalent risk the problem of.
In order to achieve the above objectives, the present invention provides the following technical solutions:
In a first aspect, the present invention provides a kind of method communicated between control application program, the method is applied to enterprise Industry managing customer end side, the method includes:
The application interface priority assignation instruction that server is sent is received, the application interface priority assignation instruction includes waiting setting The application identities and priority assignation information of the destination application of application interface permission are set, the priority assignation information includes tool There are the application identities for the application program for accessing the destination application permission;
The application identities and the permission of destination application in being instructed according to the application interface priority assignation are set Confidence ceases, and is that access rights are arranged in the application interface of the destination application in workspace, the access rights are for limiting it His application program accesses the permission of the application interface of the destination application.
Second aspect, the present invention provides a kind of method communicated between control application program, the method is applied to clothes Business device side, the method includes:
Determine the destination application of the application interface permission to be placed in workspace and the setting information that defines the competence, institute It includes the application identities with the application program for accessing the destination application permission to state priority assignation information;
Based on the destination application and the priority assignation information, to business administration client sending application interface Priority assignation instructs.
The third aspect, the present invention provides the device communicated between a kind of control application program, described device is applied to enterprise Industry managing customer end side, described device include:
Receiving unit, the application interface priority assignation instruction for receiving server transmission, the application interface permission are set Set the application identities and priority assignation information that instruction includes the destination application of application interface permission to be placed, the permission Setting information includes the application identities with the application program for accessing the destination application permission;
Setting unit, the target in application interface priority assignation instruction for being received according to the receiving unit are answered Application identities with program and the priority assignation information are that the application interface setting of the destination application in workspace is visited Ask that permission, the access rights are used to limit the permission for the application interface that other applications access the destination application.
Fourth aspect, the present invention provides the device communicated between a kind of control application program, described device is applied to clothes Business device side, described device include:
Determination unit, the destination application for determining the application interface permission to be placed in workspace and determining power Setting information is limited, the priority assignation information includes the application mark with the application program for accessing the destination application permission Know;
Transmission unit, the destination application determined for unit based on the determination and priority assignation letter Breath is arranged to business administration client sending application interface authority and instructs.
5th aspect, the present invention provides the systems communicated between a kind of control application program, and the system comprises enterprises Management client and server;Wherein, the business administration client includes the device as described in the third aspect, the server It include the device as described in fourth aspect.
The method, apparatus and system communicated between control application program provided by the invention can determine work in server After making destination application and the priority assignation information of the application interface permission to be placed in area, based on destination application with And priority assignation information, it is arranged to business administration client sending application interface authority and instructs;When business administration client receives It, being capable of answering according to the destination application in the application interface priority assignation instruction when being instructed to the application interface priority assignation It is that access rights are arranged in the application interface of the destination application in workspace, to make with mark and priority assignation information Only possess access target application program the application program of application interface permission (include application and the workspace in personal area Application program) ability access target application program, and then avoid the application program access target application program of not access rights And illegally upload, the shared and equivalent risk that leaks are caused, thereby ensure that the safety of data in the application program in workspace.
Above description is only the general introduction of technical solution of the present invention, in order to better understand the technical means of the present invention, And can be implemented in accordance with the contents of the specification, and in order to allow above and other objects of the present invention, feature and advantage can It is clearer and more comprehensible, below the special specific implementation mode for lifting the present invention.
Description of the drawings
By reading the detailed description of hereafter preferred embodiment, various other advantages and benefit are common for this field Technical staff will become clear.Attached drawing only for the purpose of illustrating preferred embodiments, and is not considered as to the present invention Limitation.And throughout the drawings, the same reference numbers will be used to refer to the same parts.In the accompanying drawings:
Fig. 1 shows the flow chart of the method communicated between a kind of control application program provided in an embodiment of the present invention;
Fig. 2 shows the flow charts of the method communicated between another control application program provided in an embodiment of the present invention;
Fig. 3 shows the composition frame chart of the device communicated between a kind of control application program provided in an embodiment of the present invention;
Fig. 4 shows the composition frame of the device communicated between another control application program provided in an embodiment of the present invention Figure;
Fig. 5 shows the composition frame of the device communicated between another control application program provided in an embodiment of the present invention Figure;
Fig. 6 shows the composition frame of the device communicated between another control application program provided in an embodiment of the present invention Figure;
Fig. 7 shows the system schematic communicated between a kind of control application program provided in an embodiment of the present invention.
Specific implementation mode
The exemplary embodiment of the disclosure is more fully described below with reference to accompanying drawings.Although showing the disclosure in attached drawing Exemplary embodiment, it being understood, however, that may be realized in various forms the disclosure without should be by embodiments set forth here It is limited.On the contrary, these embodiments are provided to facilitate a more thoroughly understanding of the present invention, and can be by the scope of the present disclosure Completely it is communicated to those skilled in the art.
An embodiment of the present invention provides a kind of method communicated between control application program, this method is applied to business administration Client-side, as shown in Figure 1, this method includes mainly:
101, business administration client receives the application interface priority assignation instruction that server is sent.
Wherein, the instruction of application interface priority assignation includes the application mark of the destination application of application interface permission to be placed Know and priority assignation information, priority assignation information include the application mark of the application program with access target application program permission Know;Application interface is that other applications call the entrance needed when certain application program.
It, can be to the application after business administration client receives the application interface priority assignation instruction of server transmission Interface authority setting instruction is parsed, therefrom obtain the application identities of the destination application of application interface permission to be placed with And corresponding priority assignation information, so as to subsequently according to application identities and corresponding priority assignation information, to intended application journey The application interface of sequence carries out priority assignation.Wherein, destination application is located in the working region of mobile terminal.
In addition, destination application can be one, or multiple.When destination application is multiple, each The corresponding priority assignation information of destination application can be identical, can not also be identical.
In practical applications, it is often necessary to be isolated entirely from the application program of the application program in personal area and workspace Come, to avoid the application program in personal area from illegally being uploaded by calling the application program of workspace, share equivalent risk Operation.Therefore, do not include often in priority assignation information personal area application program application identities.Further, since enterprise manages Reason client needs the application program in Administration workplace, so priority assignation information may include answering for business administration client With mark.
102, the application identities of the destination application during business administration client is instructed according to application interface priority assignation And priority assignation information, it is that access rights are arranged in the application interface of the destination application in workspace.
Wherein, access rights are used to limit the permission of the application interface of other applications access target application program.When After the application identities for obtaining destination application in the instruction of application interface priority assignation, needs can be determined according to application identities The destination application of application interface access rights is set, and is destination application according to the content in priority assignation information Access rights are arranged in application interface.
When destination application is multiple, and when the corresponding priority assignation information difference of each destination application, enterprise Management client needs first to search the corresponding priority assignation information of current goal application program from priority assignation information, then root It is investigated that the priority assignation information found, priority assignation is carried out to the application interface of current goal application program.
The method communicated between control application program provided in an embodiment of the present invention can receive server transmission Application interface priority assignation instruction after, according to the application interface priority assignation instruct in destination application application identities with And priority assignation information, it is that access rights are arranged in the application interface of the destination application in workspace, so that only gathering around There are application program (including the application in personal area and the application journey of workspace of the application interface permission of access target application program Sequence) ability access target application program, and then avoid the application program access target application program of not access rights and cause Illegal upload, the shared and equivalent risk that leaks, thereby ensure that the safety of data in the application program in workspace.
Further, the specific implementation of above-mentioned steps 102 can be:
(1) business administration client searches the installation of the corresponding destination application of application identities of destination application Packet.
Specifically, being stored with the installation kit of each application program in mobile terminal, business administration client record has application The correspondence of mark and the storage address of installation kit, therefore, business administration client can first determine destination application The storage address of the corresponding installation kit of application identities, then finds the installation kit of destination application according to storage address.Its In, application identities may include title and version number of application program etc..
(2) business administration client obtains inventory file from the installation kit of destination application, wherein inventory file For defining application interface.
Specifically, the installation kit due to application program often stores in the form of compressed package, so business administration client End needs first to carry out decompression processing to the installation kit of destination application, and inventory text is then searched in the installation kit after decompression Part.
It should be noted that containing there are one inventory files (such as in Android system in the installation kit of each application program AndroidManifest.xml files), the activity of the component for describing application program, service, broadcasting receiver, content carry For quotient, various application interfaces, and access for defining other applications permission (such as the Android system of itself application interface In can be defined by permission) and owned access other applications application interface access right (such as can be defined by uses-permission in Android system).
(3) according to priority assignation information, the application for the destination application in inventory file connects business administration client Mouth setting access rights.
After obtaining inventory file, business administration client can be according to priority assignation information, in the inventory file Code is modified, to realize the function of carrying out priority assignation to the application interface of destination application.
In addition, to save the memory space of mobile terminal, business administration client according to priority assignation information, is being inventory Destination application in file application interface setting access rights after, can to setting access rights after installation kit into Row packing is handled.
Further, in practical applications, if an application program (application program A) needs to access another using journey The application interface protected by permission in sequence (application program B), then application program A must be used in manifest Uses-permission states its required permission.When application program A needs to install on mobile terminals, erector is ask Ask whether user authorizes its permission stated, if user allows to authorize its permission stated, application program A could be used Shielded application interface, if not allowing, application program A cannot use shielded application interface.Therefore, according to application The application identities and priority assignation information of destination application in interface authority setting instruction, are answered for the target in workspace After the application interface setting access rights of program, business administration client needs to be answering with access target application program Corresponding access right is added with the application program of interface authority, so as to the application interface permission with access target application program Application program application interface access target application program that destination application is passed through based on access right.
Wherein, the method for adding access rights is similar, needs to be to answer with access target when business administration client It, can be from access target application program when adding corresponding access right with the application program of the application interface permission of program Application interface permission application program installation kit in obtain inventory file, and modify to the code in inventory file, Application interface for the destination application of record adds access right.
Further, since application interface permission, institute are not arranged for the destination application that mobile terminal is currently installed on When being only provided with application interface permission to installation kit, can not may also it come into force.Therefore in order to ensure application interface priority assignation Really come into force, it can be in the application identities and priority assignation of the destination application in being instructed according to application interface priority assignation Information is that the application interface of the destination application in workspace is arranged after access rights, based on the target after priority assignation The corresponding installation kit of application program, reinstalls destination application.
It should be noted that when business administration client is answering for the application interface permission with access target application program After the corresponding access right of program addition, it is also desirable to the application to the application interface permission with access target application program Program carries out reinstalling operation, to ensure that it being capable of successful access destination application.
Further, in practical applications, it is often necessary to the application interface of each application program of workspace into Row access rights are arranged, and therefore, on mobile terminal often install a new application program and are required for carrying out priority assignation.To avoid Business administration client repeats to carry out application interface priority assignation to certain application program, can be according to application interface priority assignation The application identities and priority assignation information of destination application in instruction are the application of the destination application in workspace Interface is arranged after access rights, updates the setting time for the application interface priority assignation being locally stored, and set updated Setting the time is reported to server, so as to server update when its setting corresponding with the business administration client being locally stored Between, and set according to the set-up time of setting time and application program to judge whether corresponding application program is completed permission It sets, to avoid server from issuing the instruction of application interface priority assignation again for the application program that priority assignation is completed.
Further, according to above method embodiment, an alternative embodiment of the invention additionally provides a kind of control application The method communicated between program, this method is applied to server side, as shown in Fig. 2, this method includes mainly:
201, server determines the destination application of the application interface permission to be placed in workspace and defines the competence Setting information.
Wherein, priority assignation information includes the application identities of the application program with access target application program permission.? In practical application, administrator in real time or periodically can issue server different application interface permissions according to actual conditions Setting rule, so that server determines that the application to be placed in workspace connects according to the content in application interface priority assignation rule The destination application and priority assignation information of mouth permission;Server can also determine machine according to local existing priority assignation System determines destination application and priority assignation information.
In addition, being referred in the embodiment of the method for business administration client-side, since business administration client needs to manage Application program in workspace, so priority assignation information may include the application identities of business administration client.Actually answering In, generally require to come the application program of the application program in personal area and workspace is completely isolated, to avoid personal area Application program by calling the application program of workspace by the risk that is illegally uploaded, shared.Therefore, priority assignation information In do not include often personal area application program application identities.
202, server is based on destination application and priority assignation information, is connect to business administration client sending application Mouth priority assignation instruction.
After server determines destination application and priority assignation information, it can generate and carry destination application The application interface priority assignation of application identities and priority assignation information instructs, and application interface priority assignation instruction is issued It is workspace so that business administration client is instructed according to the application interface priority assignation to corresponding business administration client Access rights are arranged in the application interface of interior destination application.
The method communicated between control application program provided in an embodiment of the present invention can wait setting determining in workspace After setting destination application and the priority assignation information of application interface permission, believed based on destination application and priority assignation Breath is arranged to business administration client sending application interface authority and instructs, so that business administration client is according to the application interface Priority assignation instructs, and is that access rights are arranged in the application interface of the destination application in workspace, so that only possessing The application program (including the application in personal area and application program of workspace) of the application interface permission of access target application program Ability access target application program, and then avoid the application program access target application program of not access rights and cause illegal It uploads, the shared and equivalent risk that leaks, thereby ensures that the safety of data in the application program in workspace.
Further, in practical applications, the destination application of the application interface permission to be placed in workspace is determined And the specific implementation of priority assignation information can there are many, be introduced by taking following two realization methods as an example below:
Mode one:Server obtains application interface priority assignation rule, and application interface priority assignation rule is business administration The rule that platform issues;According to application interface priority assignation rule, the mesh of the application interface permission to be placed in workspace is determined Mark application program and priority assignation information.
Wherein, application interface priority assignation rule description has application program to be placed and is set to the permission of application program Confidence ceases, and application interface priority assignation rule can be the rule for a certain application program, or is answered for multiple With the rule of program, do not limit herein.
Illustratively, application interface priority assignation rule includes three rules, and first is " for the application program of workspace 1 application interface adds access rights, and the content of access rights is that only business administration client possesses access rights ", the Two are " to add access rights for the application interface of the application program 2 of workspace, and the content of access rights is that only enterprise manages Application program in reason client and workspace possesses access rights ", Article 3 is " to be answered for the application program 3 of workspace Add access rights with interface, and the content of access rights be only have business administration client, the application program in workspace with And the application program 3 in personal area possesses access rights ".
Mode two:Server detects the set-up time of each application program in the workspace of mobile terminal;By application program Set-up time be more than the application program for the setting time of application interface priority assignation being locally stored and be determined as intended application journey Sequence;The priority assignation information being locally stored is determined as the corresponding priority assignation information of destination application.
Specifically, often installing an application program in the workspace of mobile terminal, business administration client can will all be installed Application program set-up time real-time report to server.When server knows that the set-up time of certain application program is more than locally When the setting time of the application interface priority assignation of storage, determine the application program be the application program newly installed and this apply journey Sequence does not carry out application interface priority assignation, and the application program is thus determined as destination application, and the power that will be locally stored Limit setting information is determined as the corresponding priority assignation information of destination application, and corresponding application is sent to business administration client Interface authority setting instruction.
Further, method according to figure 1, an alternative embodiment of the invention provide a kind of control application program Between the device that communicates, which is applied to business administration client-side, as shown in figure 3, the device mainly includes:Receiving unit 31 and setting unit 32.Wherein,
Receiving unit 31, the application interface priority assignation instruction for receiving server transmission, application interface priority assignation Instruction includes the application identities and priority assignation information of the destination application of application interface permission to be placed, priority assignation letter Breath includes the application identities of the application program with access target application program permission;
Setting unit 32, the intended application journey in the instruction of application interface priority assignation for being received according to receiving unit 31 The application identities and priority assignation information of sequence are that access rights are arranged in the application interface of the destination application in workspace, Access rights are used to limit the permission of the application interface of other applications access target application program.
The device communicated between control application program provided in an embodiment of the present invention can receive server transmission Application interface priority assignation instruction after, according to the application interface priority assignation instruct in destination application application identities with And priority assignation information, it is that access rights are arranged in the application interface of the destination application in workspace, so that only gathering around There are application program (including the application in personal area and the application journey of workspace of the application interface permission of access target application program Sequence) ability access target application program, and then avoid the application program access target application program of not access rights and cause Illegal upload, the shared and equivalent risk that leaks, thereby ensure that the safety of data in the application program in workspace.
Further, as shown in figure 4, setting unit 32, including:
Searching module 321, the installation kit of the corresponding destination application of application identities for searching destination application;
Acquisition module 322, for obtaining inventory text from the installation kit for the destination application that searching module 321 is found Part, inventory file is for defining application interface;
Setup module 323, for being the target in the inventory file that acquisition module 322 obtains according to priority assignation information Access rights are arranged in the application interface of application program.
Further, as shown in figure 4, acquisition module 322, including:
Submodule 3221 is decompressed, decompression processing is carried out for the installation kit to destination application;
Submodule 3222 is searched, for searching inventory file in the installation kit after decompression submodule decompression;
Setting unit 32 further includes:
Processing module 324, the application interface setting for the destination application in being inventory file in setup module 323 After access rights, packing processing is carried out to the installation kit after setting access rights.
Further, as shown in figure 4, the device further includes:
Adding device 33, for the destination application in being instructed according to application interface priority assignation in setting unit 32 Application identities and priority assignation information are that the application interface of the destination application in workspace is arranged after access rights, Corresponding access right is added for the application program of the application interface permission with access target application program, is accessed to have The application program of the application interface permission of destination application is visited based on access right by the application interface of destination application Ask destination application.
Further, as shown in figure 4, the device further includes:
Installation unit 34, for the destination application in being instructed according to application interface priority assignation in setting unit 32 Application identities and priority assignation information are that the application interface of the destination application in workspace is arranged after access rights, Based on the corresponding installation kit of destination application after priority assignation, destination application is reinstalled.
Further, as shown in figure 4, the device further includes:
Updating unit 35, for the destination application in being instructed according to application interface priority assignation in setting unit 32 Application identities and priority assignation information are that the application interface of the destination application in workspace is arranged after access rights, The setting time for the application interface priority assignation being locally stored is updated, and the updated setting time is reported to server.
Further, priority assignation information includes the application identities of business administration client.
Further, method according to Fig.2, an alternative embodiment of the invention also provide a kind of control application program Between the device that communicates, which is applied to server side, as shown in figure 5, the device mainly includes:Determination unit 41 and transmission Unit 42.Wherein,
Determination unit 41, the destination application for determining the application interface permission to be placed in workspace and determination Priority assignation information, priority assignation information include the application identities of the application program with access target application program permission;
Transmission unit 42, the destination application for being determined based on determination unit 41 and priority assignation information, Xiang Qi The setting instruction of industry management client sending application interface authority.
The device communicated between control application program provided in an embodiment of the present invention can wait setting determining in workspace After setting destination application and the priority assignation information of application interface permission, believed based on destination application and priority assignation Breath is arranged to business administration client sending application interface authority and instructs, so that business administration client is according to the application interface Priority assignation instructs, and is that access rights are arranged in the application interface of the destination application in workspace, so that only possessing The application program (including the application in personal area and application program of workspace) of the application interface permission of access target application program Ability access target application program, and then avoid the application program access target application program of not access rights and cause illegal It uploads, the shared and equivalent risk that leaks, thereby ensures that the safety of data in the application program in workspace.
Further, as shown in fig. 6, determination unit 41, including:
Acquisition module 411, for obtaining application interface priority assignation rule, application interface priority assignation rule is managed for enterprise The rule that platform issues;
First determining module 412, for according to application interface priority assignation rule, determining the application to be placed in workspace The destination application and priority assignation information of interface authority.
Further, as shown in fig. 6, determination unit 41, including:
Detection module 413, the set-up time of each application program in the workspace for detecting mobile terminal;
Second determining module 414 is set for the set-up time of application program to be more than the application interface permission being locally stored The application program for the setting time set is determined as destination application;
Second determining module 414, the priority assignation information for being additionally operable to be locally stored are determined as destination application correspondence Priority assignation information.
Further, priority assignation information includes the application identities of business administration client.
Further, according to above method embodiment, an alternative embodiment of the invention additionally provides a kind of control application The system communicated between program, as shown in fig. 7, the system includes business administration client 51 and server 52;Wherein, enterprise manages It includes device as shown in Figure 3 or Figure 4 to manage client 51, and server 52 includes device as shown in Figure 5 or Figure 6.
The system communicated between control application program provided in an embodiment of the present invention, can determine in server in workspace Application interface permission to be placed destination application and priority assignation information after, be based on destination application and permission Setting information is arranged to business administration client sending application interface authority and instructs;It is answered when business administration client receives this When with interface authority, instruction is set, the application identities of the destination application in capable of being instructed according to the application interface priority assignation And priority assignation information, it is that access rights are arranged in the application interface of the destination application in workspace, so that only Possess application program (including the application in personal area and the application journey of workspace of the application interface permission of access target application program Sequence) ability access target application program, and then avoid the application program access target application program of not access rights and cause Illegal upload, the shared and equivalent risk that leaks, thereby ensure that the safety of data in the application program in workspace.
The embodiment of the invention discloses:
A kind of method communicated between A1, control application program, the method is applied to business administration client-side, described Method includes:
The application interface priority assignation instruction that server is sent is received, the application interface priority assignation instruction includes waiting setting The application identities and priority assignation information of the destination application of application interface permission are set, the priority assignation information includes tool There are the application identities for the application program for accessing the destination application permission;
The application identities and the permission of destination application in being instructed according to the application interface priority assignation are set Confidence ceases, and is that access rights are arranged in the application interface of the destination application in workspace, the access rights are for limiting it His application program accesses the permission of the application interface of the destination application.
A2, the method according to A1, according to answering for the destination application in application interface priority assignation instruction It is that access rights, packet is arranged in the application interface of the destination application in workspace with mark and the priority assignation information It includes:
Search the installation kit of the corresponding destination application of application identities of the destination application;
Inventory file is obtained from the installation kit of the destination application, the inventory file connects for defining to apply Mouthful;
It is the application interface setting of the destination application in the inventory file according to the priority assignation information Access rights.
A3, the method according to A2 obtain inventory file from the installation kit of the destination application, including:
Decompression processing is carried out to the installation kit of the destination application;
The inventory file is searched in installation kit after decompression;
After for the application interface of the destination application in the inventory file, access rights are set, the side Method further includes:
Packing processing is carried out to the installation kit after setting access rights.
A4, the method according to A1, according to the destination application in application interface priority assignation instruction Application identities and the priority assignation information, be workspace in destination application application interface be arranged access rights it Afterwards, the method further includes:
Corresponding access right is added for the application program with the application interface permission for accessing the destination application, So that the application program with the application interface permission for accessing the destination application is based on the access right described in The application interface of destination application accesses the destination application.
A5, the method according to A1, according to the destination application in application interface priority assignation instruction Application identities and the priority assignation information, be workspace in destination application application interface be arranged access rights it Afterwards, the method further includes:
Based on the corresponding installation kit of destination application after priority assignation, the destination application is reinstalled.
A6, the method according to A1, according to the destination application in application interface priority assignation instruction Application identities and the priority assignation information, be workspace in destination application application interface be arranged access rights it Afterwards, the method further includes:
The setting time for the application interface priority assignation being locally stored is updated, and the updated setting time is reported to institute State server.
A7, the method according to any one of A1 to A6, the priority assignation information include the business administration client The application identities at end.
A kind of method communicated between B8, control application program, the method are applied to server side, the method packet It includes:
Determine the destination application of the application interface permission to be placed in workspace and the setting information that defines the competence, institute It includes the application identities with the application program for accessing the destination application permission to state priority assignation information;
Based on the destination application and the priority assignation information, to business administration client sending application interface Priority assignation instructs.
B9, the method according to B8, determine the destination application of the application interface permission to be placed in workspace with And the setting information that defines the competence, including:
Application interface priority assignation rule is obtained, the application interface priority assignation rule is what enterprise management platform issued Rule;
According to application interface priority assignation rule, determine that the target of the application interface permission to be placed in workspace is answered With program and priority assignation information.
B10, the method according to B8, determine the destination application of the application interface permission to be placed in workspace with And the setting information that defines the competence, including:
Detect the set-up time of each application program in the workspace of mobile terminal;
The set-up time of application program is more than to the application journey of the setting time for the application interface priority assignation being locally stored Sequence is determined as destination application;
The priority assignation information being locally stored is determined as the corresponding priority assignation information of the destination application.
B11, the method according to any one of B8 to B10, the priority assignation information include the business administration visitor The application identities at family end.
The device communicated between C12, a kind of control application program, described device are applied to business administration client-side, institute Stating device includes:
Receiving unit, the application interface priority assignation instruction for receiving server transmission, the application interface permission are set Set the application identities and priority assignation information that instruction includes the destination application of application interface permission to be placed, the permission Setting information includes the application identities with the application program for accessing the destination application permission;
Setting unit, the target in application interface priority assignation instruction for being received according to the receiving unit are answered Application identities with program and the priority assignation information are that the application interface setting of the destination application in workspace is visited Ask that permission, the access rights are used to limit the permission for the application interface that other applications access the destination application.
C13, the device according to C12, the setting unit, including:
Searching module, the installation of the corresponding destination application of application identities for searching the destination application Packet;
Acquisition module obtains inventory in the installation kit of the destination application for being found from the searching module File, the inventory file is for defining application interface;
Setup module, for being in the inventory file that the acquisition module obtains according to the priority assignation information The destination application application interface be arranged access rights.
C14, the device according to C13, the acquisition module, including:
Submodule is decompressed, decompression processing is carried out for the installation kit to the destination application;
Submodule is searched, for searching the inventory file in the installation kit after the decompression submodule decompression;
The setting unit further includes:
Processing module, the application for the destination application in being the inventory file in the setup module connect After mouth setting access rights, packing processing is carried out to the installation kit after setting access rights.
C15, the device according to C12, described device further include:
Adding device, for the intended application journey in being instructed according to the application interface priority assignation in the setting unit The application identities of sequence and the priority assignation information are that access right is arranged in the application interface of the destination application in workspace After limit, corresponding access right is added for the application program with the application interface permission for accessing the destination application, So that the application program with the application interface permission for accessing the destination application is based on the access right described in The application interface of destination application accesses the destination application.
C16, the device according to C12, described device further include:
Installation unit, for the intended application journey in being instructed according to the application interface priority assignation in the setting unit The application identities of sequence and the priority assignation information are that access right is arranged in the application interface of the destination application in workspace After limit, based on the corresponding installation kit of destination application after priority assignation, the destination application is reinstalled.
C17, the device according to C12, described device further include:
Updating unit, for the intended application journey in being instructed according to the application interface priority assignation in the setting unit The application identities of sequence and the priority assignation information are that access right is arranged in the application interface of the destination application in workspace After limit, the setting time for the application interface priority assignation being locally stored is updated, and the updated setting time is reported to institute State server.
C18, the device according to any one of C12 to C17, the priority assignation information include the business administration visitor The application identities at family end.
The device communicated between D19, a kind of control application program, described device are applied to server side, described device packet It includes:
Determination unit, the destination application for determining the application interface permission to be placed in workspace and determining power Setting information is limited, the priority assignation information includes the application mark with the application program for accessing the destination application permission Know;
Transmission unit, the destination application determined for unit based on the determination and priority assignation letter Breath is arranged to business administration client sending application interface authority and instructs.
D20, the device according to D19, the determination unit, including:
Acquisition module, for obtaining application interface priority assignation rule, the application interface priority assignation rule is enterprise The rule that management platform issues;
First determining module to be placed is answered for according to application interface priority assignation rule, determine in workspace With the destination application and priority assignation information of interface authority.
D21, the device according to D19, the determination unit, including:
Detection module, the set-up time of each application program in the workspace for detecting mobile terminal;
Second determining module, for the set-up time of application program to be more than the application interface priority assignation being locally stored The application program that the time is arranged is determined as destination application;
Second determining module, the priority assignation information for being additionally operable to be locally stored are determined as the destination application Corresponding priority assignation information.
D22, the device according to any one of D19 to D21, the priority assignation information include the business administration visitor The application identities at family end.
The system communicated between E23, a kind of control application program, the system comprises business administration client and services Device;Wherein, the business administration client includes the device as described in any one of C12 to C18, and the server includes such as Device described in any one of D19 to D22.
In the above-described embodiments, it all emphasizes particularly on different fields to the description of each embodiment, there is no the portion being described in detail in some embodiment Point, it may refer to the associated description of other embodiment.
It is understood that the correlated characteristic in the above method and device can be referred to mutually.In addition, in above-described embodiment " first ", " second " etc. be and not represent the quality of each embodiment for distinguishing each embodiment.
It is apparent to those skilled in the art that for convenience and simplicity of description, the system of foregoing description, The specific work process of device and unit, can refer to corresponding processes in the foregoing method embodiment, and details are not described herein.
Algorithm and display be not inherently related to any certain computer, virtual system or miscellaneous equipment provided herein. Various general-purpose systems can also be used together with teaching based on this.As described above, it constructs required by this kind of system Structure be obvious.In addition, the present invention is not also directed to any certain programmed language.It should be understood that can utilize various Programming language realizes the content of invention described herein, and the description done above to language-specific is to disclose this hair Bright preferred forms.
In the instructions provided here, numerous specific details are set forth.It is to be appreciated, however, that the implementation of the present invention Example can be put into practice without these specific details.In some instances, well known method, structure is not been shown in detail And technology, so as not to obscure the understanding of this description.
Similarly, it should be understood that in order to simplify the disclosure and help to understand one or more of each inventive aspect, Above in the description of exemplary embodiment of the present invention, each feature of the invention is grouped together into single implementation sometimes In example, figure or descriptions thereof.However, the method for the disclosure should be construed to reflect following intention:It is i.e. required to protect Shield the present invention claims the more features of feature than being expressly recited in each claim.More precisely, as following Claims reflect as, inventive aspect is all features less than single embodiment disclosed above.Therefore, Thus the claims for following specific implementation mode are expressly incorporated in the specific implementation mode, wherein each claim itself All as a separate embodiment of the present invention.
Those skilled in the art, which are appreciated that, to carry out adaptively the module in the equipment in embodiment Change and they are arranged in the one or more equipment different from the embodiment.It can be the module or list in embodiment Member or component be combined into a module or unit or component, and can be divided into addition multiple submodule or subelement or Sub-component.Other than such feature and/or at least some of process or unit exclude each other, it may be used any Combination is disclosed to all features disclosed in this specification (including adjoint claim, abstract and attached drawing) and so to appoint Where all processes or unit of method or equipment are combined.Unless expressly stated otherwise, this specification (including adjoint power Profit requires, abstract and attached drawing) disclosed in each feature can be by providing the alternative features of identical, equivalent or similar purpose come generation It replaces.
In addition, it will be appreciated by those of skill in the art that although some embodiments described herein include other embodiments In included certain features rather than other feature, but the combination of the feature of different embodiments means in of the invention Within the scope of and form different embodiments.For example, in the following claims, embodiment claimed is appointed One of meaning mode can use in any combination.
The all parts embodiment of the present invention can be with hardware realization, or to run on one or more processors Software module realize, or realized with combination thereof.It will be understood by those of skill in the art that can use in practice Microprocessor or digital signal processor (DSP) realize the denomination of invention according to the ... of the embodiment of the present invention (as determined in website The device of Hyperlink rank) in some or all components some or all functions.The present invention is also implemented as being used for Some or all equipment or program of device of method as described herein are executed (for example, computer program and calculating Machine program product).It is such to realize that the program of the present invention may be stored on the computer-readable medium, or there are one can having Or the form of multiple signals.Such signal can be downloaded from internet website and be obtained, or be provided on carrier signal, Or it provides in any other forms.
It should be noted that the present invention will be described rather than limits the invention for above-described embodiment, and ability Field technique personnel can design alternative embodiment without departing from the scope of the appended claims.In the claims, Any reference mark between bracket should not be configured to limitations on claims.Word "comprising" does not exclude the presence of not Element or step listed in the claims.Word "a" or "an" before element does not exclude the presence of multiple such Element.The present invention can be by means of including the hardware of several different elements and being come by means of properly programmed computer real It is existing.In the unit claims listing several devices, several in these devices can be by the same hardware branch To embody.The use of word first, second, and third does not indicate that any sequence.These words can be explained and be run after fame Claim.

Claims (19)

1. a kind of method communicated between control application program, the method are applied to business administration client-side, feature exists In, the method includes:
The application interface priority assignation instruction that server is sent is received, the application interface priority assignation instruction includes to be placed answers With the application identities and priority assignation information of the destination application of interface authority, the priority assignation information includes having to visit Ask the application identities of the application identities and the business administration client of the application program of the destination application permission, it is described Destination application is located in the working region of mobile terminal;
The application identities of destination application in being instructed according to the application interface priority assignation and priority assignation letter Breath is that access rights are arranged in the application interface of the destination application in workspace, and the access rights are answered for limiting other The permission of the application interface of the destination application described in routine access.
2. according to the method described in claim 1, it is characterized in that, according to the target in application interface priority assignation instruction The application identities of application program and the priority assignation information are the application interface setting of the destination application in workspace Access rights, including:
Search the installation kit of the corresponding destination application of application identities of the destination application;
Inventory file is obtained from the installation kit of the destination application, the inventory file is for defining application interface;
It is that the application interface setting of the destination application in the inventory file accesses according to the priority assignation information Permission.
3. according to the method described in claim 2, it is characterized in that, obtaining inventory from the installation kit of the destination application File, including:
Decompression processing is carried out to the installation kit of the destination application;
The inventory file is searched in installation kit after decompression;
After access rights are arranged for the application interface of the destination application in the inventory file, the method is also Including:
Packing processing is carried out to the installation kit after setting access rights.
4. according to the method described in claim 1, it is characterized in that, according to the mesh in application interface priority assignation instruction The application identities of application program and the priority assignation information are marked, the application interface for the destination application in workspace is set After setting access rights, the method further includes:
Corresponding access right is added for the application program with the application interface permission for accessing the destination application, so as to Application program with the application interface permission for accessing the destination application passes through the target based on the access right The application interface of application program accesses the destination application.
5. according to the method described in claim 1, it is characterized in that, according to the mesh in application interface priority assignation instruction The application identities of application program and the priority assignation information are marked, the application interface for the destination application in workspace is set After setting access rights, the method further includes:
Based on the corresponding installation kit of destination application after priority assignation, the destination application is reinstalled.
6. according to the method described in claim 1, it is characterized in that, according to the mesh in application interface priority assignation instruction The application identities of application program and the priority assignation information are marked, the application interface for the destination application in workspace is set After setting access rights, the method further includes:
The setting time for the application interface priority assignation being locally stored is updated, and the updated setting time is reported to the clothes Business device.
7. a kind of method communicated between control application program, the method are applied to server side, which is characterized in that the side Method includes:
Determine the destination application of the application interface permission to be placed in workspace and the setting information that defines the competence, the power Limit setting information includes application identities and the business administration client of the application program with the destination application permission is accessed The application identities at end, the destination application are located in the working region of mobile terminal;
Based on the destination application and the priority assignation information, to the business administration client sending application interface Priority assignation instructs.
8. the method according to the description of claim 7 is characterized in that determining the mesh of the application interface permission to be placed in workspace Application program and the setting information that defines the competence are marked, including:
Application interface priority assignation rule is obtained, the application interface priority assignation rule is the rule that enterprise management platform issues Then;
According to application interface priority assignation rule, the intended application journey of the application interface permission to be placed in workspace is determined Sequence and priority assignation information.
9. the method according to the description of claim 7 is characterized in that determining the mesh of the application interface permission to be placed in workspace Application program and the setting information that defines the competence are marked, including:
Detect the set-up time of each application program in the workspace of mobile terminal;
The application program that the set-up time of application program is more than to the setting time for the application interface priority assignation being locally stored is true It is set to destination application;
The priority assignation information being locally stored is determined as the corresponding priority assignation information of the destination application.
10. the device communicated between a kind of control application program, described device are applied to business administration client-side, feature exists In described device includes:
Receiving unit, the application interface priority assignation instruction for receiving server transmission, the application interface priority assignation refer to Enable the application identities and priority assignation information of the destination application for including application interface permission to be placed, the priority assignation Information includes the application identities of the application program with the destination application permission is accessed and the business administration client Application identities, the destination application is located in the working region of mobile terminal;
Setting unit, the intended application journey in application interface priority assignation instruction for being received according to the receiving unit The application identities of sequence and the priority assignation information are that access right is arranged in the application interface of the destination application in workspace Limit, the access rights are used to limit the permission for the application interface that other applications access the destination application.
11. device according to claim 10, which is characterized in that the setting unit, including:
Searching module, the installation kit of the corresponding destination application of application identities for searching the destination application;
Acquisition module obtains inventory text in the installation kit of the destination application for being found from the searching module Part, the inventory file is for defining application interface;
Setup module is used for according to the priority assignation information, the institute in the inventory file obtained for the acquisition module State the application interface setting access rights of destination application.
12. according to the devices described in claim 11, which is characterized in that the acquisition module, including:
Submodule is decompressed, decompression processing is carried out for the installation kit to the destination application;
Submodule is searched, for searching the inventory file in the installation kit after the decompression submodule decompression;
The setting unit further includes:
Processing module, the application interface for the destination application in being the inventory file in the setup module are set After setting access rights, packing processing is carried out to the installation kit after setting access rights.
13. device according to claim 10, which is characterized in that described device further includes:
Adding device, for the destination application in being instructed according to the application interface priority assignation in the setting unit Application identities and the priority assignation information, be workspace in destination application application interface be arranged access rights it Afterwards, corresponding access right is added for the application program with the application interface permission for accessing the destination application, so as to Application program with the application interface permission for accessing the destination application passes through the target based on the access right The application interface of application program accesses the destination application.
14. device according to claim 10, which is characterized in that described device further includes:
Installation unit, for the destination application in being instructed according to the application interface priority assignation in the setting unit Application identities and the priority assignation information, be workspace in destination application application interface be arranged access rights it Afterwards, based on the corresponding installation kit of destination application after priority assignation, the destination application is reinstalled.
15. device according to claim 10, which is characterized in that described device further includes:
Updating unit, for the destination application in being instructed according to the application interface priority assignation in the setting unit Application identities and the priority assignation information, be workspace in destination application application interface be arranged access rights it Afterwards, the setting time for the application interface priority assignation being locally stored is updated, and the updated setting time is reported to the clothes Business device.
16. the device communicated between a kind of control application program, described device are applied to server side, which is characterized in that described Device includes:
Determination unit, destination application for determining the application interface permission to be placed in workspace and defining the competence are set Confidence ceases, the priority assignation information include application identities with the application program for accessing the destination application permission and The application identities of business administration client, the destination application are located in the working region of mobile terminal;
Transmission unit, the destination application determined for unit based on the determination and the priority assignation information, It is arranged to the business administration client sending application interface authority and instructs.
17. device according to claim 16, which is characterized in that the determination unit, including:
Acquisition module, for obtaining application interface priority assignation rule, the application interface priority assignation rule is business administration The rule that platform issues;
First determining module, for according to application interface priority assignation rule, determining that the application to be placed in workspace connects The destination application and priority assignation information of mouth permission.
18. device according to claim 16, which is characterized in that the determination unit, including:
Detection module, the set-up time of each application program in the workspace for detecting mobile terminal;
Second determining module, the setting for the set-up time of application program to be more than to the application interface priority assignation being locally stored The application program of time is determined as destination application;
Second determining module, the priority assignation information for being additionally operable to be locally stored are determined as the destination application and correspond to Priority assignation information.
19. the system that communicates between a kind of control application program, which is characterized in that the system comprises business administration client and Server;Wherein, the business administration client includes the device as described in any one of claim 10 to 15, the service Device includes the device as described in any one of claim 16 to 18.
CN201510989527.6A 2015-12-24 2015-12-24 The method, apparatus and system communicated between control application program Active CN105404827B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201510989527.6A CN105404827B (en) 2015-12-24 2015-12-24 The method, apparatus and system communicated between control application program

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201510989527.6A CN105404827B (en) 2015-12-24 2015-12-24 The method, apparatus and system communicated between control application program

Publications (2)

Publication Number Publication Date
CN105404827A CN105404827A (en) 2016-03-16
CN105404827B true CN105404827B (en) 2018-11-06

Family

ID=55470310

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201510989527.6A Active CN105404827B (en) 2015-12-24 2015-12-24 The method, apparatus and system communicated between control application program

Country Status (1)

Country Link
CN (1) CN105404827B (en)

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107958009A (en) * 2016-10-18 2018-04-24 百度在线网络技术(北京)有限公司 Company information acquisition methods, device and equipment
CN110412843B (en) * 2018-04-26 2021-12-07 广州众诺电子技术有限公司 Serial number switching method and system
CN111339543B (en) * 2020-02-27 2023-07-14 深信服科技股份有限公司 File processing method and device, equipment and storage medium

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102647429A (en) * 2012-04-28 2012-08-22 杭州格畅科技有限公司 Application communication access control method, application process manager and online application platform
CN103548321A (en) * 2011-05-24 2014-01-29 日本电气株式会社 Information processing system, access rights management method, information processing device, and control method and control program therefor
CN103647784A (en) * 2013-12-20 2014-03-19 北京奇虎科技有限公司 Public and private isolation method and device
CN103870306A (en) * 2014-02-21 2014-06-18 北京奇虎科技有限公司 Method and device for installing application program on basis of intelligent terminal equipment
CN104021321A (en) * 2014-06-17 2014-09-03 北京奇虎科技有限公司 Reinforcing protection method and device for software installation package
CN104462997A (en) * 2014-12-04 2015-03-25 北京奇虎科技有限公司 Method, device and system for protecting work data in mobile terminal

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104424019A (en) * 2013-08-27 2015-03-18 宇宙互联有限公司 Application service management system and method

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103548321A (en) * 2011-05-24 2014-01-29 日本电气株式会社 Information processing system, access rights management method, information processing device, and control method and control program therefor
CN102647429A (en) * 2012-04-28 2012-08-22 杭州格畅科技有限公司 Application communication access control method, application process manager and online application platform
CN103647784A (en) * 2013-12-20 2014-03-19 北京奇虎科技有限公司 Public and private isolation method and device
CN103870306A (en) * 2014-02-21 2014-06-18 北京奇虎科技有限公司 Method and device for installing application program on basis of intelligent terminal equipment
CN104021321A (en) * 2014-06-17 2014-09-03 北京奇虎科技有限公司 Reinforcing protection method and device for software installation package
CN104462997A (en) * 2014-12-04 2015-03-25 北京奇虎科技有限公司 Method, device and system for protecting work data in mobile terminal

Also Published As

Publication number Publication date
CN105404827A (en) 2016-03-16

Similar Documents

Publication Publication Date Title
CN109977690A (en) A kind of data processing method, device and medium
US9280665B2 (en) Fast and accurate identification of message-based API calls in application binaries
TW201820168A (en) User information obtaining system, method and device
US11082429B2 (en) Providing access to content within a computing environment
CN105554094B (en) Data interactive method and device
CN109802919B (en) Web page access intercepting method and device
CN105404827B (en) The method, apparatus and system communicated between control application program
CN110262933B (en) Test method, test device, and storage medium
CN110377440B (en) Information processing method and device
CN106980501A (en) A kind of software package management method, device and system
CN107577590A (en) Method and device based on database service real-time calling virtual interface
CN108933695A (en) Method and apparatus for handling information
CN107070931A (en) Cloud application data upload/access method, system and cloud proxy server
CN108549586B (en) Information processing method and device
CN104462500A (en) Method for determining activeness of controls and control processing method and device
CN106775951A (en) A kind of operation management method and device of Android application
CN105607944B (en) A kind of method and device of sharing application environment
CN108023905B (en) Internet of things application system and method
CN103647844B (en) A kind of method and device of Intranet Program upgrading
CN106845270A (en) A kind of seamless browsing method and device
CN108664811A (en) A kind of right management method and device
CN109657451A (en) Web portal security monitoring method, system, equipment and medium based on browser plug-in
CN112052470A (en) Server file protection method and protection system
CN106603701A (en) Method and device for sending message based on long connection platform
CN109635558B (en) Access control method, device and system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant
TR01 Transfer of patent right

Effective date of registration: 20220718

Address after: Room 801, 8th floor, No. 104, floors 1-19, building 2, yard 6, Jiuxianqiao Road, Chaoyang District, Beijing 100015

Patentee after: BEIJING QIHOO TECHNOLOGY Co.,Ltd.

Address before: 100088 room 112, block D, 28 new street, new street, Xicheng District, Beijing (Desheng Park)

Patentee before: BEIJING QIHOO TECHNOLOGY Co.,Ltd.

Patentee before: Qizhi software (Beijing) Co.,Ltd.

TR01 Transfer of patent right