TW200523752A - Mobility device - Google Patents
Mobility device Download PDFInfo
- Publication number
- TW200523752A TW200523752A TW93129443A TW93129443A TW200523752A TW 200523752 A TW200523752 A TW 200523752A TW 93129443 A TW93129443 A TW 93129443A TW 93129443 A TW93129443 A TW 93129443A TW 200523752 A TW200523752 A TW 200523752A
- Authority
- TW
- Taiwan
- Prior art keywords
- mobile device
- computer
- environment
- web services
- computer environment
- Prior art date
Links
Landscapes
- Information Transfer Between Computers (AREA)
- Mobile Radio Communication Systems (AREA)
Abstract
Description
200523752 九、發明說明: 主張優先權及交互參考 本專利申請案要求下列美國臨時專利申請案之權利: 2003年9月29曰提出第60/507,197號名為「GO-KEY SYSTEM」; 2003年 9月 29 曰提出第 60/506,918號名為「GO-KEY ONLINE MUSIC SUBSCRIPTION AND DISTRIBUTION APPLICATION AND SERVICE」;2003 年 9 月 29日提出第 60/506,919號名為「GO-KEY E-MAIL APPLICATION AND SERVICE」;2003年9月29曰提出第60/506,925號名為 「GO-KEY MOBILE DESKTOP ENVIRONMET」;2004年 1 月22日提出第60/543,735號名為「MDMS」;2004年1月22曰 提出第 60/538,763號名為「OMNI FILE SYSTEM (OFS)」; 2004年1月22曰提出第60/538,915號名為 「UDDI DIRECTORY」;以及2004年1月22日提出第60/538,767號名 為「UDDI REPOSITORY」,彼等專利申請案皆以引用方式 併入本文中。另外,本專利申請案係相關於以下專利申請 案且交互參考,並且彼等專利申請案皆以引用方式併入本 文中·· 2004年4月30日提出第10/837,426號名為「MOBILITY DEVICE PLATFORM」(代理人檔案號碼 45597/196314); 以及2004年4月30日提出第10/83 6,934號名為「MOBILITY DEVICE SERVER」(代理人檔案號碼 45597/196321)。 【發明所屬之技術領域】 本文描述之裝置及方法係相關於行動電腦作業技術’最 為重要的是,係關於一種允許利用通信網路及行動裝置伺 96372.doc 200523752 服器進行安全的遠端行動電腦作業之行動裝置。 【先前技術】 企業及個人-致地愈來愈需要行動能力作為其電腦環境 的特徵部分。對於企業,行動能力允許在各地理位置部署 人員,使企業為客戶提供更好的服務。例如,大型製藥企 業,想要在接近未來客戶(例如,醫生)的「現場」部署⑽ 人貝。在此背景下’「現場」人員會想要透過安全 取機密的銷售和市場資訊以及電 、、來存 勿貝Λ Μ及冤細應用程式。運用現行的 方案’這些人員通常會在工作曰結束時,繼續透過某安全 的電腦網路連線⑽如,虛擬私人輯)來進行使其資料鱼公 司網路「同步化」繁雜卫作。相比之下,個人尋求其電腦 %境的行動能力,以便能夠易取得其資料及電腦應用程 =最為重要的是’在網際網路通信期間繼續維持「連線 為了應響行動電腦作業的需要,電腦環境製造商已開發 出行動電腦作f技術(例如,獨立、連線網路及/或内嵌式), 讓人們可隨時使用其電腦環境。此類行動裝置旨在允許使 者匕夺攜帶」其稽案及應用程式。雖然這些裝置提供 了仃動月<3力’但是會由於外型、處理能力及可攜性不同而 U 2於效率有限。由於彼等限制使用者通常會攜帶大型 可U ^電細’以確保其具有所有必要的稽案及電腦應用程 式實現此類方案係以電腦作業系統㈣本 身的設計為前提,#,採用「以裝置為中心」電腦作業。 用 「以梦番·5¾ 、罝為中心」電腦作業,電腦使用者雖然可經 96372.doc 200523752 由遠端通信應用程式(例如,虛擬私人網路)以遠端且安全方 式來存取檔案,但|柄妙在 疋仍^會攜帶大型笨重的電腦作業設備 來掏取其資料及雷月盗座田 冤月命應用程式。最為重要的是,運用以裝 置為中心型電腦作業,使用者-般會基於企業電腦作業需 求而配備一個裝置(例如’公司個人電腦或膝上型電腦),並 且-般會在家中具有供個人使用的—或多個電腦環境。在 維護多個電腦環境過程中,電腦使用者負責使許多不同電 腦環境之㈣自訂偏好設定及各項設定时化之卫作。此 類工作疋件萬分銀矩的事,並且通常會因電腦使用者無法 在不同電腦環境之間存取所要的資料及/或電腦應用程式 而受挫。 例如,電腦使用者會希望隨時從自己的財務規劃管理電 腦應用程式(例如,Quicken、Micr〇s〇ft M_y)取得自己的 財務規劃管理資料,以便處理可能出現的支付款項(例如, 到期的帳單)。運用現行方案,電腦使用者需要在每個電腦 缞浼(包括公司電腦,這可能會違反企業電腦作業政策及程 序)上女裝財務規劃管理電腦應用程式及資料,以便可能存 取所要的資料。相比之下,企業會想要高效率且立即終止 已解雇之貝工對機也、公司資料的所有存取權。在以裝置為 中心型電腦作業為基礎的現行實施中,會要求員工歸還其 電腦環境(例如,膝上型電腦、個人電腦、行動電話或個人 數位助理)。另外,還會藉由終止即將解雇之員工的企業使 用者目錄資訊,而使得使用公司資料時受到限制。但是, 收集此類裝置及終止存取權原因就需要一段作業時間。此 96372.doc 200523752 段作業時間會導致該員工從企業電腦環境複製檔案以供未 來使用。在此情況下,依據現行的實施,可能會洩露機密 的企業資料。 從前文所述可得知,需要克服現行實施缺點。 【發明内容】 本發明揭示一種在行動裝置平臺中用於保護行動電腦作 業安全性之行動裝置。在一項例證實施中,一種示例性行 動裝置平臺包括:一行動裝置,其可運作以透過一通信介 面與至少一電腦環境通信,並且其中該行動裝置可運作成 處理及儲存安全的Web服務;一通信網路,其可運作成使 用Web服務來傳達資料及電腦應用程式;以及一行動裝置 管理伺服器,其可運作以產生、處理、儲存、傳達及加密 關於該行動裝置的Web服務。該行動裝置可包括:一處理 單兀,一行動装置通信介面,用於介接合作的電腦環境; 一記憶體儲存單元;以及一作業系統,其可運作以執行Web 服務及/或電腦應用程式。 在運作過程中,該行動裝置透過該行動裝置通信介面來 與一或多個合作的電腦環境協作。該行動裝置可運用使用 者鑑認資訊來進行使用者鑑認…峰認後,該行動裝置 可透過該行動裝置通信介面來與至少一合作的電腦環境協 作,以便在該合作的電腦環境上執行一 Web服務及/或電腦 應用程式。另夕卜’該行動裝置可與多個合作的行動裂置管 理祠服器協作,以便獲得用於在該至少一合作的電腦環境 上執行的Web服務及/或電腦應用程式。下文中會進—步說 96372.doc 200523752 明本文描述之裝置及方法的其他特徵。 【實施方式】 * 概覽: 電腦作業和行動電腦作業提 現行電腦作業方案(企業或個 本文描述之裝置及方法針對 供「以使用者為中心」做法。 心」模型。以裝置為中 來管理及追蹤使用者。 業電腦環境可包括數個 人)一般被設計成使用「以裝置為中 心式模型旨在依據裝置指派及指定 例如,在企業電腦作業背景下,企 境以網路連線至伺服器電腦環境,或是,如果使用者身在 遠離企業通信網路之處,則是透過虛擬私人網路(vpN)將用 戶電細環i兄連線至連線至企業通信網路。另外,在習知 祠服器電腦環境及許多用戶端電腦環境。—般而言,企業 中的每個使用者都有配備用戶端電腦環境(例如,個人電腦 或膝上型電腦),一般會透過企業通信介面將用戶端電腦環 企業電腦環境中,會透過一用於建立使用者權利和權限與 某企業資料和電腦應用程式之關聯性的目錄服務結構,來 提供使用者的使用者識別資訊及密碼資訊。 運用此類企業電腦環境,通常僅允許使用者使用自己的 偏好設定及各項設定來自訂所配備的電腦環境,以至於如 果使用者跨網路漫遊且登入非所屬的電腦環境時,就無法 存取自己的自訂偏好設定及各項設定。這項問題通常會發 生在企業使用者身上,企業使用者會想要維護介於其企業 電腦環境與其個人電腦環境(例如,家中的電腦)之間的偏好 设定及各項設定(例如,劉覽器書藏、桌面的外觀及操作、 96372.doc • 10 - 200523752 色彩配置、應用程式佈局及檔案的目錄結構)同步甬 常需要執行手動同步化。 另外,運用現有企業電腦環境來管 衣兄木g理汗夕用戶端電腦環 境變成-項繁重的工作。目前,企業的資訊技術部門雇用 數十人(而不S數百人)來支援許多使用者及使用者的電腦 % 士見。除了僅僅實際管理以外,還提出企業資料完整性及 安全性運用以裝置為中心式電腦作業模型。在此背景下, $業電腦使用者通常需要自行決定複製及包含機密的企業 資料。由於防止使用者未經授權複製企業檔案及資料是一 項繁重的工作,所以大部分企業都忽視此工作。對於企業 及個人,這項現有實施的限制可能成本極高。 本文描述之裝置及方法旨在藉由提供運用「以使用者為 中心」模型所設計的行動裝置平臺來改良現有實施的缺 點。在一項例證實施中,該行動裝置係預定當做一種包含 至少一行動裝置(MD)的行動裝置平臺部分使用,行動裝置 可運作以透過通信介面(例如,通用序列埠(USB)、IEEE 1394 通信介面(Firewire)、8〇2 χχ 通信介面、blutet〇〇th(藍 芽)通信介面、個人電腦介面、小型電腦序列介面及無線應 用通訊協定(WAP)通信介面)來與一或多個合作的電腦環境 (例如,個人電腦、個人數位助理、行動電話、網路連線型 電腦及其他電腦環境)通信。另外,該行動裝置平臺包括一 或多個行動裝置管理伺服器(MDMS),行動裝置管理伺服器 係運作以為合作的行動裝置及其使用者鑑認、確認及提供 使用者管理。 96372.doc 11 200523752 在運作過程中,該行動裝置可與用於調用(invoke)—或多 個工作環境的一或多個電腦環境協作,以便處理Web服 務。可以從位於MD本機中的資料和電腦應用程式來執行該 等Web服務,或是該MD可與一或多個MDMS協作來獲得所 要求的Web服務。該MDMS可運作以鑑認要求方MD,藉此 確保要求方MD具有關於所要求之Web服務的權利及權限。 另外,該MDMS還可與第三方Web服務提供者協作,藉此獲 得所要求的Web服務。在此背景下,該MDMS可採取動作以 將來自非MD原生Web服務格式轉譯成一原生MD Web服 務。當將Web服務從該MDMS傳達至多個合作的MD時,該 MDMS與MD都會使用使用者和裝置鑑認和確認資訊,來進 行1028位元及/或2056位元加密(例如,PKI加密)。該MDMS 提供給該MD的Web服務可包括(但不限於)電腦應用程式及 所要資料。另外,該MD可運作以儲存參與方使用者的自訂 設定及偏好設定至該MD的本機中,讓使用者隨時可取得自 訂設定及偏好設定。 以此方式使用行動裝置,使用者就可以在任何數目的協 作電腦環境下進行作業,只要使用者確信其可以在合作的 電腦環境中存取其自訂設定及偏好設定,最為重要的是, 安全存取自己的電腦應用程式及檔案(例如,提供為Web服 務)。200523752 IX. Description of the Invention: Claiming priority and cross-referencing This patent application claims the following U.S. provisional patent applications: September 29, 2003 Filed 60 / 507,197 entitled "GO-KEY SYSTEM"; September 2003 On the 29th of September, the number 60 / 506,918 was named "GO-KEY ONLINE MUSIC SUBSCRIPTION AND DISTRIBUTION APPLICATION AND SERVICE"; On September 29, 2003, the number 60 / 506,919 was named "GO-KEY E-MAIL APPLICATION AND SERVICE" ; No. 60 / 506,925 named "GO-KEY MOBILE DESKTOP ENVIRONMET" on September 29, 2003; No. 60 / 543,735 named "MDMS" on January 22, 2004; No. 60 on January 22, 2004 No. 60 / 538,763 is named "OMNI FILE SYSTEM (OFS)"; January 22, 2004; no. 60 / 538,915 is named "UDDI DIRECTORY"; and January 22, 2004, no. 60 / 538,767 is named " UDDI REPOSITORY ", their patent applications are incorporated herein by reference. In addition, this patent application is related to the following patent applications and is cross-referenced, and their patent applications are incorporated herein by reference. · April 30, 2004 No. 10 / 837,426 entitled "MOBILITY DEVICE" "Platform" (agent file number 45597/196314); and on April 30, 2004, filed "MOBILITY DEVICE SERVER" No. 10/83 6,934 (agent file number 45597/196321). [Technical field to which the invention belongs] The devices and methods described herein are related to mobile computer operation technology. 'Most importantly, it relates to a method that allows communication networks and mobile devices to serve 96372.doc 200523752 servers for secure remote operations. Computer-operated mobile devices. [Previous Technology] Businesses and individuals are increasingly demanding mobility as a characteristic part of their computer environment. For businesses, mobility allows people to be deployed across geographic locations, enabling them to better serve their customers. For example, large pharmaceutical companies want to deploy human shellfish “onsite” close to future customers (eg, doctors). In this context, the “on-site” personnel would want to securely obtain confidential sales and market information, as well as electricity, to save, and to save applications and applications. Using the current scheme, these people usually continue to synchronize their data fish company network with a secure computer network connection (such as a virtual private series) at the end of the work day. In contrast, individuals seek the mobility of their computers in order to be able to easily access their data and computer applications = most importantly, 'continue to maintain the connection during Internet communications "in response to the needs of mobile computer operations , Computer environment manufacturers have developed mobile computers as f technology (e.g., standalone, networked and / or embedded) that allow people to use their computer environment at any time. Such mobile devices are designed to allow messengers to carry "Its audits and applications. Although these devices provide a pulsating month < 3 force ', U 2 is limited in efficiency due to differences in appearance, processing power, and portability. Due to their restrictions, users usually carry large electronic devices to ensure that they have all necessary audits and computer applications. The implementation of such solutions is based on the design of the computer operating system itself. Device-centric "computer operations. Using "Mengfan · 5¾, 罝 as the center" computer operation, although computer users can remotely and securely access files through remote communication applications (such as virtual private networks) via 96372.doc 200523752, But | Miao Zai Zai still ^ will carry large and cumbersome computer operating equipment to fetch its data and the thunder moon stealing the field wrong application. Most importantly, with device-centric computer operations, users will typically be equipped with a device (such as a 'corporate personal computer or laptop') based on the needs of the enterprise's computer operations, and will generally have personal devices at home for personal use. Used—or multiple computer environments. In the maintenance of multiple computer environments, computer users are responsible for making custom preferences and time-saving work for many different computer environments. Such tasks are extremely expensive and often frustrated by computer users' inability to access the required data and / or computer applications between different computer environments. For example, computer users may wish to obtain their financial planning management data from their financial planning management computer applications (eg, Quicken, Micr0sft M_y) at any time in order to process possible payments (eg, due bill). With the current solution, computer users need to manage women's financial planning and management computer applications and data on each computer (including company computers, which may violate corporate computer operating policies and procedures), so that they can access the required information. In contrast, companies will want to efficiently and immediately terminate all access to machine and company data for fired shellfishers. In current implementations based on device-centric computer operations, employees are required to return their computer environment (for example, laptops, personal computers, mobile phones, or personal digital assistants). In addition, the use of company data may be restricted by discontinuing the corporate user directory information for employees who are about to be fired. However, it takes time to collect such devices and the reason for terminating access. This 96372.doc 200523752 working period will cause the employee to copy files from the corporate computer environment for future use. In this case, under the current implementation, confidential corporate information may be leaked. As can be seen from the foregoing, it is necessary to overcome the shortcomings of the current implementation. SUMMARY OF THE INVENTION The present invention discloses a mobile device for protecting the security of mobile computer operations in a mobile device platform. In an exemplary implementation, an exemplary mobile device platform includes: a mobile device operable to communicate with at least one computer environment through a communication interface, and wherein the mobile device is operable to process and store secure Web services; A communication network that is operable to communicate data and computer applications using Web services; and a mobile device management server that is operable to generate, process, store, communicate, and encrypt Web services for the mobile device. The mobile device may include: a processing unit, a mobile device communication interface for interfacing with a cooperative computer environment; a memory storage unit; and an operating system that is operable to execute Web services and / or computer applications . In operation, the mobile device cooperates with one or more cooperating computer environments through the mobile device communication interface. The mobile device can use user authentication information for user authentication ... After the peak identification, the mobile device can cooperate with at least one cooperative computer environment through the mobile device communication interface so as to execute on the cooperative computer environment A web service and / or computer application. In addition, the mobile device can cooperate with a plurality of cooperative mobile split management temple servers to obtain a web service and / or a computer application program for execution on the at least one cooperative computer environment. In the following, it will be further explained that 96372.doc 200523752 illustrates other features of the device and method described herein. [Implementation] * Overview: Computer operation and mobile computer operation present the current computer operation solution (enterprise or a device and method described in this article is for a "user-centric" approach. Heart "model. Device-centric management and Tracking users. Industrial computer environments can include several individuals) are generally designed to use a "device-centric model that is designed to be assigned and assigned based on the device. For example, in the context of corporate computer operations, an enterprise environment connects to a server over a network Computer environment, or if the user is away from the corporate communication network, the user's computer is connected to the corporate communication network through a virtual private network (vpN). In addition, in Learn about the server computer environment and many client computer environments. In general, every user in an enterprise has a client computer environment (for example, a personal computer or laptop), and usually communicates through the enterprise. The interface connects the client computer to the enterprise computer environment. It is used to establish a relationship between user rights and permissions and a company's data and computer applications. A directory service structure to provide users with user identification information and password information. With this type of corporate computer environment, users are usually only allowed to use their own preferences and settings to customize the computer environment they are equipped with, so that If users roam across the network and log in to a non-owning computer environment, they will not be able to access their custom preferences and settings. This problem usually occurs with corporate users who will want to maintain Preferences and settings between their corporate computer environment and their personal computer environment (eg, a computer at home) (eg, Liu Lanji's collection, desktop appearance and operation, 96372.doc • 10-200523752 color Configuration, application layout, and directory structure of files) Synchronization often requires manual synchronization. In addition, using the existing enterprise computer environment to manage the client computer environment has become a heavy task. Currently, enterprises Of IT departments employ dozens (not hundreds) to support many users and their computers In addition to just the actual management, it also proposes a device-centric computer operation model for the integrity and security of enterprise data. In this context, computer users usually need to decide to copy and include confidential corporate data. Unauthorized copying of corporate files and data by users is a heavy task, so most companies ignore this work. For businesses and individuals, this existing implementation of the restrictions can be extremely costly. The devices and methods described in this article are designed to Improve the shortcomings of existing implementations by providing a mobile device platform designed using a "user-centric" model. In an exemplary implementation, the mobile device is intended to be used as part of a mobile device platform that includes at least one mobile device (MD), and the mobile device is operable to communicate via a communication interface (eg, Universal Serial Port (USB), IEEE 1394 communication Firewire, 802 χχ communication interface, blurt00th (Bluetooth) communication interface, personal computer interface, small computer serial interface and wireless application protocol (WAP) communication interface) to cooperate with one or more Computer environments (e.g., personal computers, personal digital assistants, mobile phones, networked computers, and other computer environments). In addition, the mobile device platform includes one or more mobile device management servers (MDMS). The mobile device management server is operable to authenticate, confirm, and provide user management for the cooperating mobile devices and their users. 96372.doc 11 200523752 In operation, the mobile device can collaborate with one or more computer environments for invoking—or multiple work environments—in order to process web services. These Web services can be executed from data and computer applications located locally in the MD, or the MD can collaborate with one or more MDMSs to obtain the required Web services. The MDMS can operate to authenticate the requesting MD, thereby ensuring that the requesting MD has the rights and authority regarding the requested Web service. In addition, the MDMS can collaborate with third-party web service providers to obtain the required web services. In this context, the MDMS can take action to translate a format from a non-MD native web service into a native MD web service. When the Web service is transmitted from the MDMS to multiple cooperating MDs, both the MDMS and the MD use user and device authentication and confirmation information to perform 1028-bit and / or 2056-bit encryption (for example, PKI encryption). The web services provided by the MDMS to the MD may include, but are not limited to, computer applications and required information. In addition, the MD can operate to store the user's custom settings and preferences in the local machine of the MD, so that users can obtain the custom settings and preferences at any time. Using a mobile device in this way, users can work in any number of collaborative computer environments, as long as the user is confident that they can access their custom settings and preferences in a collaborative computer environment, and most importantly, security Access your own computer applications and files (for example, provided as a web service).
Web服務: 透過如網際網路等通信網路提供的服務(泛稱為Web服務 或應用程式服務)正在成長中。同樣地,促進此類服務的技 96372.doc -12- 200523752 術也正在成長中。Web服務可被定義為任何資訊源,用於 執行基於供使用者的應用程式使用而便利套裝的商業邏輯 程序。Web服務日益成長意謂著,可在網路上利用Web服務 來提供功能。Web服務通常包括某種程式設計與資料之組 合,促使使用者及其他網路連線的應用程式可從應用程式 伺服器來取得Web服務。Web服務的範圍涵蓋如儲存管理和 客戶關係管理等服務’且向下延伸至如提供股票即時行情 及查核拍賣項目投標價等更有限的服務。 著重於定義及標準化Web服務用途的行動包括開發Web 服務描述語言(Web Services Description Language ; WSDL)。WSDL是一種可延伸標記語言(Extensible Markup Language ; XML)格式,用於將Web服務描述為用於處理含 文件導向式或程序導向式資訊之訊息的一組結束點。作業 及訊息係以抽象方式予以描述,並且接著繫結(bound)成具 體(concrete)網路協定及定義結束點的訊息格式。相關的具 體結束點被組合成抽象結束點(服務)。 目前,廣泛主張的Web服務使用方式模型如下: (1) 服務係實施及部署在某站點(通常稱為伺服器方)上。 (2) 服務係使用WSDL予以描述並且經由如UDDI (Universal Description, Discovery,and Integration ;通用描 述、探索與整合)等手段多以發佈,UDDI是一種適用於全 球企業的XML型登錄(XML-based registry),藉此按所提供 的Web服務而列入網際網路上。 (3) 用戶端應用程式藉由先解譯一或多個WSDL文件,藉 96372.doc -13- 200523752 此在其他站點處(通常稱為用戶端方)使用Web服務。經過解 譯後,用戶端就可以瞭解相關服務的特性。例如,服務特 性可包括服務API規格,例如:(a)輸入資料類型;(b)服務 輸入資料格式;(c)服務存取機制或樣式(例如,RpC相對於 訊息發送服務);以及(d)相關編碼格式。 (4) 用戶ί而應用程式以各種Web服務瞭解的方式來準備資 料。 ' (5) 用戶端應用程式按照一特定服務所指定的方式(例 如’在相關的WSDL文件中指定的方式)來調用該服務。 各種Web服務的輸入資料格式及調用方式皆不相同。例 如 饭5又某應用私式服務提供者提供一項服務 (getCityWeather),該服務要求如慣例城市名稱(例如,Web services: Services (commonly known as web services or application services) provided over communication networks such as the Internet are growing. Similarly, the technologies to promote such services are growing. Web services can be defined as any source of information that executes business logic programs that are conveniently packaged based on the applications used by the user. The growing Web services means that Web services can be used to provide functions on the network. Web services usually include a combination of programming and data that enables users and other network-connected applications to obtain Web services from an application server. The scope of web services covers services such as storage management and customer relationship management ’and extends down to more limited services such as providing real-time stock quotes and checking bid prices for auction items. Actions focused on defining and standardizing the use of Web services include the development of Web Services Description Language (WSDL). WSDL is an Extensible Markup Language (XML) format used to describe Web services as a set of end points for processing messages containing document-oriented or process-oriented information. Assignments and messages are described in an abstract way, and then bound to concrete network protocols and message formats that define end points. The related specific end points are combined into abstract end points (services). At present, the widely advocated web service usage model is as follows: (1) The service is implemented and deployed on a site (usually called the server side). (2) Services are described using WSDL and published through methods such as UDDI (Universal Description, Discovery, and Integration). UDDI is an XML-based login (XML-based registry) to list on the Internet based on the web services provided. (3) The client application borrows 96372.doc -13- 200523752 by first interpreting one or more WSDL files. This uses Web services at other sites (usually called the client side). After interpretation, the client can understand the characteristics of related services. For example, service characteristics may include service API specifications, such as: (a) input data types; (b) service input data formats; (c) service access mechanisms or styles (eg, RpC vs. messaging services); and (d ) Related encoding formats. (4) The user prepares the data in a way that the various web services understand. (5) The client application invokes the service in a manner specified by a particular service (for example, 'as specified in the relevant WSDL file). The input data format and invocation method of various Web services are different. For example, Fan 5 also provides a service (getCityWeather) for an application private service provider, which requires a custom city name (for example,
Lake City的慣例城市名稱為SLC)的單一輸入參數。一預計 調用此類服務的用戶端應用程式必須撰寫成,促使該應用 程式内的資料或所輸出的資料能夠被分析以提取城市資 Λ。在執行時期,會使用適當的Αρι,將所準備的符號傳遞 至getCityWeather服務站點。 然而,假設其他應用程式服務提供者提供類似的服務但 疋要求兩個輸入參數,例如,城市名稱及郵遞區號。因此, 如果一用戶端應用程式預計調用彼等二項服務,則必須考 慮到所要求的服務輸入參數來適當地分析及擷取其資料。 因此’如果一單一應用程式預計調用彼等兩項服務,則必 須使用服務特定的API資訊及程序來硬式編碼該應用程 式另外’如果一單一應用程式預計調用許多服務,則必 96372.doc 200523752 須使用該應用程式預計調用之每項及所有服務相關的API 資訊及程序來硬式編碼該應用程式。 如上文所述,各種Web服務都可以提供類似的功能,但 是提供方式不同。本文描述之系統及方法旨在藉由提供一 種具有行動裝置管理伺服器的行動裝置平臺來改良此類不 同點,除了其他項目以外,該行動裝置管理伺服器包括一 Web服務轉譯模組,該Web服務轉譯模組運作以接受來自 Web服務提供者的資料,並且將Web服務以Web服務模型原 型提供給合作的行動裝置。 簡單物件存取通訊協定(SOAP)概覽: 簡單物件存取通訊協定(Simple Object Access Protocol ; SOAP)是一種在分權(decentraHzed)、分散式環境中用來交 換資訊的輕量塑XML架構通訊協定。SOAP支援不同樣式的 資訊交換,包括: 遠端程序吟叫(Remote Procedure Call ; RPC)樣式,其允 許要求回應(request-response)處理,其中一結束點接收一程 序導向式訊息(procedure oriented message) ’並且回覆一關 聯性的回應訊息(correlated resPonse message) ° 訊息導向式資訊交換(Message-oriented information exchange),其支援需要交換商業或其他類型文件的組織及 應用,其中會傳送一訊息,但是寄件者不會預期或等待一 立即回應。 一般而言,SOAP訊息係由一 SOAP包絡(SOAP envelope, 其封入兩個資料結構SOAP標頭及SOAP主體)與關於命名 96372.doc -15- 200523752 空間(用於定義SOAP訊息)的資訊所組成。標頭屬於選用項 目;如果有標頭,則標頭會運送關於SOAP主體中定義之要 求的資訊。例如,標頭可包含交易、安全性、内容或使用 者設定檔(user profile)資訊。主題包含XML格式的一 Web服 務要求或對要求的回覆。下列圖式顯示SOAP訊息的高階結 構。當使用SOAP訊息來載送Web服務要求及回應時,SOAP 訊息可遵循用於定義可用Web服務的Web服務定義語言 (web services definition language ; WSDL。WSDL可定義用 於存取Web服務的SOAP訊息、可用來交換SOAP訊息的協定 以及可存取Web服務的網際網路位置。WSDL描述項 (descriptor)可駐存在UDDI或其他目錄服務中,並且還可以 經由組態或其他途徑(例如,SOAP要求回覆的主體中)來提 供WSDL描述項。有一項SOAP規格(例如,w3 SOAP規格, 如需相關資訊,請造訪www· w3.org)提供要求及回應的標準 編碼方式。規格中使用XML結構描述(XML Schema)來描述 訊息内容(message payload)的結構及資料類型。可適用於 Web服務之訊息及回應的SOAP使用方式為: SOAP用戶端使用遵循SOAP規格且含有月艮務要求的XML 文件。 SOAP用戶端傳送該文件至一SOAP伺服器,並且該祠月艮 器上執行的SOAP servlet會使用(例如,HTTP或HTTPS)來處 理該文件。Lake City (SLC) is a single input parameter. A client application that is expected to call such services must be written so that the data in the application or the output data can be analyzed to extract city data. During execution, the appropriate symbols are used to pass the prepared symbols to the getCityWeather service site. However, suppose other application service providers provide similar services but do not require two input parameters, such as city name and postal code. Therefore, if a client application is expected to call their two services, it must consider the required service input parameters to properly analyze and retrieve their data. So 'if a single application is expected to call both services, you must use service-specific API information and procedures to hard-code the application. Additionally,' if a single application is expected to call many services, then 96372.doc 200523752 must Use the API information and procedures related to each and all services that the application is expected to call to hard-code the application. As mentioned above, various Web services can provide similar functions, but in different ways. The system and method described herein aims to improve such differences by providing a mobile device platform with a mobile device management server. The mobile device management server includes, among other items, a Web service translation module, the Web The service translation module operates to accept data from a Web service provider, and provides the Web service to a collaborative mobile device as a Web service model prototype. Overview of the Simple Object Access Protocol (SOAP): The Simple Object Access Protocol (SOAP) is a lightweight, XML-structured protocol for exchanging information in a decentraHzed, decentralized environment . SOAP supports different types of information exchange, including: Remote Procedure Call (RPC) style, which allows request-response processing, and one of the end points receives a procedure oriented message 'And reply to a correlated resPonse message ° Message-oriented information exchange, which supports organizations and applications that need to exchange business or other types of documents, which will send a message, but send The person will not expect or wait for an immediate response. Generally speaking, a SOAP message is composed of a SOAP envelope (which encloses two data structures, the SOAP header and the SOAP body) and information about the named 96372.doc -15- 200523752 space (used to define the SOAP message). . The header is optional; if a header is present, the header carries information about the requirements defined in the SOAP body. For example, the header may contain transaction, security, content, or user profile information. The subject contains a web service request or a response to the request in XML format. The following diagram shows the high-level structure of a SOAP message. When SOAP messages are used to carry Web service requests and responses, SOAP messages can follow the web services definition language (WSDL) that defines the available web services. WSDL can define the SOAP messages used to access web services, Protocols that can be used to exchange SOAP messages and Internet locations that can access Web services. WSDL descriptors can reside in UDDI or other directory services, and can also be configured or otherwise (for example, a SOAP request response) To provide WSDL description items. There is a SOAP specification (for example, w3 SOAP specification, for more information, please visit www · w3.org) to provide standard encoding methods for requests and responses. The specification uses XML structure description ( XML Schema) to describe the structure and data type of the message payload. The SOAP usage methods applicable to the messages and responses of Web services are: SOAP clients use XML files that follow the SOAP specification and contain monthly service requirements. SOAP The client sends the file to a SOAP server, and the SOAP servlet running on the server will use (for example, HTTP Or HTTPS) to process the file.
Web服務接收該SOAP訊息’並且將當做一訊息引動過程 (service invocation)的該訊息分派(dispatch)至用於提供所 96372.doc -16- 200523752 要求之服務的應用程式。 再次使用該SOAP協定,將一來自該服務的回應傳回至該 SOAP伺服器,並且將該訊息傳回至該原始s〇Ap用戶端。 顯而易見,雖然本文描述SOAP作為適用於本文描述之裝 置及方法的通信協定,但是此說明内容僅僅是例證,本文 描述之裝置及方法可採用各種通信協定及訊息發送標準。 例證性電腦環境 圖1繪示根據本文描述之系統及方法的示例性電腦系統 100。電腦系統100能夠執行各種作業系統18〇及可在作業系 統180上運作的電腦應用程式ι8〇,(例如,Web瀏覽器及行動 桌面環境)。示例性電腦系統100主要受控於可能是軟體形 式的電腦可讀型指令、何處及如何儲存及存取此類軟體的 方式。此類軟體可在中央處理單元(CPU) u〇内執行,藉此 促使資料處理系統100運作。在許多已知的電腦伺服器中, 會運用稱為微處理器的微電子晶片CPU來實作工作站及個 人電腦中央處理單元110。副處理器115是一種不同於主 CPU 110的選用之處理器,用於執行額外功能或輔助CPU 110。可透過互連112將CPU 110連接至副處理器115。一種 通用類型副處理器是浮點運算副處理器,也稱為數值或數 學副處理器,其被設計成以比一般用途CPU110更快速地執 行數值計算。 顯而易見,雖然圖中所示之例證性電腦環境包含單一 CPU 11 0,但是此說明内容僅僅是例證,電腦環境i⑼可包 含數個CPU 110。另外,電腦環境100還可以透過通信網路 96372.doc -17- 200523752 160或其他資料通信構件(圖中未繪示)來利用遠端(圖 中未顯示)的資源。 在運作過程中,CPU 110擷取、解碼及執行指令,並且經 由電腦的主要資料傳輸路徑(系統匯流排105)來傳出及傳入 資源的資訊。此一系統匯流排連接電腦環境1〇〇中的各組 件,並且定義資料交換媒體。系統匯流排1〇5通常包括用於 傳送資料的資料線、用於傳送位址的位址線以及用於傳送 中斷和用於操作該系統匯流排的控制線。此一系統匯流排 的實例是PCI (周邊組件互連)匯流排。某些現今的進階匯流 排提供一種稱為匯流排仲裁的功能,用於管理擴充卡、控 制器及CPU 110對匯流排之存取。附接至彼等匯流排且仲裁 接‘匯ML排的裝置稱為匯流排主控(bus master)。支援匯流 排主控還允許藉由附加含有處理器及支援晶片的匯流排主 控卡來建立彼等匯流排的多處理器組態。 耦合至系統匯流排1 〇 5的記憶體裝置包括隨機存取記憶 體(RAM) 125及唯讀記憶體(R〇M) 13〇。此類記憶體包含允 許儲存及擷取資訊的電路。R〇M 13〇通常包含無法被修改 的儲存之資料。CPU110或其他硬體裝置可讀取或變更ram 125中所儲存的資料。可由記憶體控制器120來控制RAM 125及/或ROM 130之存取。記憶體控制器12〇可提供位址轉 澤功能,用於轉譯虛擬位址成為指令所執行的實體位址。 記憶體控制器120還可提供記憶體保護功能,用於隔離系統 内的處理序及隔離系統處理序(system pr〇cess)與使用者處 理序(user process)。因此,在執行模式中執行程式通常僅 96372.doc -18- 200523752 能存取自已處理序虛擬位址空間所 J τ呀射的記憶體;而無法 存取其他處理序虛擬位址空間内的 』門叼七憶體,除非已設定處 理序之間的記憶體共用。 此外,電腦系統100可包括周邊裝置控制器135,周邊裝 置控制器135負責將指令從cpu u轉達至周邊裝置,例 如,印表機14〇、鍵盤145、滑鼠15〇及資料儲存機155。 /顯示器165 (受控於顯示器控制器163)的用途是顯示電腦 系統100所產生的可見輸出。此類可見輸出可包括文字、圖 形、動畫及視訊。可使用CRT型視訊顯示器、LCD型平面顯 不器、氣體電漿型平面顯示H、觸控式面板或其他顯示器 形式來實作顯示器165。顯示器控制器163包括用以產生要 傳送至顯示器16 5之視訊訊號所需的電子組件。 另外,電腦系統100還可包含網路卡17〇,網路卡17〇的用 途是將電腦系統100連接至外部通信網路16〇。通信網路16〇 可提供電腦使用者以電子方式傳達及傳送軟體和資訊的途 徑。另外,通信網路160還可提供分散式處理,分散式處理 涉及數台電腦,並且會在執行工作過程中分擔工作負載或 協作。應明白,如圖所示的網路連接是示範性的網路連接, 並且可使用其他的裝置來建立電腦之間的通訊連結。 應明白,示例性電腦系統100僅僅是適合本文描述之裝置 及方法運作的例證性電腦環境,而不是限制本文描述之裝 置及方法在具有不同組件及組態之電腦環境中的實施,在 具有各種組件及組態的各種電腦環境中皆可實施本文描述 之本發明觀念。 96372.doc -19- 200523752 例證性電腦網路環境·· 如上文所述之電腦系統丨〇〇可佈署為電腦網路之部八 般而言,前文關於電腦環境的說明内容 。刀。一 卢这山U 项用於佈署於網路 展i兄中的伺服器電腦及用戶端電腦。圖2输 、3不一種可採用本 文描述之裝置及方法的示例性網路連線電腦環境如0直且 有經由通信網路與用戶端電腦通訊的伺服器。 ° 如圖2所示, 伺服器205可經由通訊網路16〇 (可能是固線或無線、 WAN、内部網路、外部網路、對等式網路、網際網路或其 他通信網路)而互連於數個用戶端電腦環境,例如,平板式 個人電腦210、行動電話215、電話22〇、個人電腦刚及個 人數位助理225。另外,本文描述之裝置及方法可經由通信 網路160與汽車電腦環境(圖中未繪示)、消費性電子裝置電 腦環境(圖中未繪示)及建築物自動化控制電腦環境(圖中未 繪示)協合。例如,在通訊網路160是網際網路的網路環境 中,伺服器205可能是專用電腦環境伺服器,其可運作以處 理Web服務,並且經由任何數目的已知通訊協定(例如,超 文字傳輸通訊協定(Hypertext Transfer Protocol; HTTP)、 槽案傳輸通訊協定(file transfer protocol ; FTP)、簡單物件 存取通 協定(Simple Object Access Protocol ; SOAP)或無 線應用通"fg 協定(wireless application protocol ; WAP)),將 Web服務傳入及傳出用戶端電腦環境1〇〇、210、215、220 和225。每個用戶端電腦環境loo、21〇、215、220和225還 可配備瀏覽器作業系統180(其可運作以支援如Web瀏覽器 (圖中未繪示)等一或多個電腦應用程式),或配備行動桌面 96372.doc -20- 200523752 環境(用以獲得存取伺服器電腦環境205)。 在運作過程中,使用者(圖中未繪示)可互動於用戶端電 腦環境上執行的電腦應用程式,藉此獲得所要的資料及/或 電腦應用程式。資料及/或電腦應用程式可儲存在伺服器電 腦環境205上,並且透過示例性通信網路160傳達至透過用 戶端電腦環境100、210、215、220和225合作的使用者。參 與方使用者會使用Web服務交易來要求存取司服器電腦環 境205上完整或部分裝載的特定資料及應用程式。可在用戶 端電腦環境100、210、215、220和225與伺服器電腦環境之 間傳達這些Web服務交易,以進行處理及儲存。伺服器電 月向環*兄205可裝載電腦應用程式、處理序(pr〇cess)及程式項 (applet),用以產生、鑑認及傳達Web服務,並且可與其他 伺服器電腦環境(圖中未緣示)、第三方服務提供者(圖中未 繪示)、網路附接式儲存裝置(netw〇rk attached storage ; NAS)和儲存區域網路(stOΓageaΓeanetwork;SAN)協作,以 便實現彼等Web服務交易。 因此’在具有用來存取網路或互動於網路的用戶端電腦 環境及用來互動於用戶端電腦環境的伺服器電腦環境的電 腦網路環境中,可利用本文描述之裝置及方法。但是,可 運用各種網路架構來實施用於提供行動裝置平臺的裝置及 方法,因此,不應限定於所示之實例。現在將引用本例證 性實施來詳細說明本文描述之裝置及方法。 行動裝置平臺組件: 圖3繪不介於示例性行動裝置與例證性行動裝置平臺之 96372.doc 21 200523752 間的示例性互動。一般而言,如圖3所示,示例性行動裝置 平臺300 (簡言之)可包括示例性行動裝置31〇,其使用依據 一所選用之通信協定(圖中未繪示)運作的通信介面3〇5來< 與 用戶端電腦環境100協作。另外,示例性行動裝置平臺3〇〇 可進一步包括通信網路160 (如圖1所示)及伺服器電腦環境 205 。 < 兄 在運作過程中,該行動裝置可透過通信介面來與用戶端 電腦環境100協作,以便執行源自於行動裝置3 1 〇的一戋夕 個電腦應用程式180,,並且可顯示在該用戶端電腦環境1〇^ 上以供使用者互動。電腦應用程式18〇,可包括(但不限於) 用於提供習知作業系統外觀和操作的瀏覽器應用程式、文 書處理應用程式、試算表、資料庫應用程式、Web服務應 用程式及使用者管理/偏好設定應用程式。另外,行動裝置 310可使用用戶端電腦環境100,經由通信網路16〇來與伺服 器電腦環境205協作,以便獲得Web服務形式的資料及/或電 腦應用程式。 圖4繪示介於示例性行動裝置4〇5與例證性行動裝置平臺 400之間的互動。如圖4所示,示例性行動裝置平臺4〇〇包括 行動裝置(MD) 405、電腦環境415、通信網路435、行動裝 置管理伺服器(MDMS) 420及第三方Web服務提供者44〇。另 外,如MD分解圖進一步所示,MD 4〇5進一步包括處理單 元(PU)、作業系統(〇S)、儲存記憶體(RAM/R〇M)及一 MD ^ 通信介面。而且,MDMS 420進一步包括轉譯引擎425、Web " 服務430及加密引擎445。 96372.doc -22- 200523752 在運作過程中,MD 405使用一或多個MD組件PU、OS、 RAM/R0M和MD通信介面,透過MD/電腦環境通信介面410 來與電腦環境415通信。當與電腦環境415通信時,MD 405 可啟動一或多個電腦應用程式(圖中未繪示),其可包括(但 不限於)作為組態部分的行動桌面環境、使用者自訂及鑑認 管理員及Web服務應用程式。已設定組態後,MD 405可進 一步與電腦環境415協作,以便處理一或多個Web服務(例 如,Web服務資料及/或電腦應用程式)。在此背景下,MD 405 可使用通信網路435來向合作的MDMS 420要求Web服務資 料及/或電腦應用程式,以便處理彼等Web服務。在此案例 中,MDMS 420可運作以鑑認MD,藉此確保參與方使用者 (圖中未繪示)及行動裝置405具有所要求之資料及/或電腦 應用程式的正確權限。 如果已經過適當鑑認,MDMS 420可進一步運作以在 MDMS 420本機尋找所要求之資料及/或電腦應用程式,並 且透過通信網路435將彼等所要求之資料及/或電腦應用程 式(例如,Web服務)提供給該經鑑認之MD 405,或者,MDMS 420可運作以與第三方服務提供者440協作,以便獲得要傳 達給該經鑑認之MD 405的Web服務。當與第三方Web服務 提供者440協作時,MDMS 420可運作以使用轉譯引擎425 ’ 將源自於第三方Web服務提供者440的Web服務430轉譯成 MD原生(native)格式。 另外,MDMS 420可運作以在滿足來自於經鑑認之MD 405的Web服務要求時,使用加密引擎445來加密所要求的 96372.doc -23- 200523752The Web service receives the SOAP message 'and dispatches the message as a service invocation to an application program that provides the service requested by 96372.doc -16- 200523752. Using the SOAP protocol again, a response from the service is returned to the SOAP server, and the message is returned to the original SOAp client. Obviously, although SOAP is described herein as a communication protocol applicable to the devices and methods described herein, this description is merely illustrative, and the devices and methods described herein may use various communication protocols and messaging standards. Exemplary Computer Environment FIG. 1 illustrates an exemplary computer system 100 in accordance with the systems and methods described herein. The computer system 100 is capable of executing various operating systems 180 and computer applications 280 that can operate on the operating system 180 (for example, a web browser and a mobile desktop environment). The exemplary computer system 100 is primarily controlled by computer-readable instructions, which may be in the form of software, where and how to store and access such software. Such software may be executed in a central processing unit (CPU) u0, thereby causing the data processing system 100 to operate. In many known computer servers, a microelectronic chip CPU called a microprocessor is used to implement a workstation and a personal computer central processing unit 110. The sub processor 115 is an optional processor different from the main CPU 110, and is used to perform additional functions or assist the CPU 110. The CPU 110 may be connected to the sub processor 115 through the interconnect 112. One general-type sub-processor is a floating-point arithmetic sub-processor, also called a numerical or mathematical sub-processor, which is designed to perform numerical calculations faster than a general-purpose CPU 110. Obviously, although the exemplary computer environment shown in the figure includes a single CPU 110, this description is merely an example, and the computer environment i may include several CPUs 110. In addition, the computer environment 100 can also utilize remote resources (not shown) through the communication network 96372.doc -17- 200523752 160 or other data communication components (not shown). During operation, the CPU 110 fetches, decodes, and executes instructions, and sends and receives information about resources through the computer's main data transmission path (system bus 105). This system bus connects the components in the computer environment 100 and defines the data exchange medium. The system bus 105 usually includes a data line for transmitting data, an address line for transmitting addresses, and a control line for transmitting interrupts and for operating the system bus. An example of such a system bus is a PCI (Peripheral Component Interconnect) bus. Some of today's advanced buses provide a feature called bus arbitration for managing expansion card, controller, and CPU 110 access to the bus. Devices attached to and arbitrated to their buses are called bus masters. Supporting bus masters also allows multi-processor configurations of their buses to be created by adding a bus master card containing a processor and supporting chips. The memory devices coupled to the system bus 105 include a random access memory (RAM) 125 and a read-only memory (ROM) 13. This type of memory contains circuitry that allows storage and retrieval of information. ROM 13〇 usually contains stored data that cannot be modified. The CPU 110 or other hardware device can read or change the data stored in the ram 125. Access to the RAM 125 and / or ROM 130 may be controlled by the memory controller 120. The memory controller 12 can provide an address translation function for translating a virtual address into a physical address executed by a command. The memory controller 120 may also provide a memory protection function for isolating the processing sequence in the system, and isolating the system process and the user process. Therefore, in the execution mode, the program is usually only 96372.doc -18- 200523752 can access the memory of J τ from the virtual address space of the process; it cannot access the virtual address space of other processes. " Door VII memory, unless memory sharing between processes has been set. In addition, the computer system 100 may include a peripheral device controller 135. The peripheral device controller 135 is responsible for transferring instructions from the CPU to the peripheral devices, such as the printer 14o, the keyboard 145, the mouse 15o, and the data storage machine 155. The purpose of the / display 165 (controlled by the display controller 163) is to display the visible output produced by the computer system 100. Such visible output can include text, graphics, animation, and video. The display 165 may be implemented using a CRT type video display, an LCD type flat display, a gas plasma type flat display H, a touch panel, or other display forms. The display controller 163 includes electronic components required to generate a video signal to be transmitted to the display 165. In addition, the computer system 100 may further include a network card 170, which is used to connect the computer system 100 to an external communication network 160. The communication network 16 provides a way for computer users to communicate and transfer software and information electronically. In addition, the communication network 160 can also provide decentralized processing, which involves several computers, and will share the workload or collaboration during the execution of the work. It should be understood that the network connection shown in the figure is an exemplary network connection, and other devices may be used to establish a communication link between the computers. It should be understood that the exemplary computer system 100 is merely an exemplary computer environment suitable for the operation of the devices and methods described herein, and is not intended to limit the implementation of the devices and methods described herein in a computer environment with different components and configurations. The inventive concepts described herein can be implemented in a variety of computer environments of components and configurations. 96372.doc -19- 200523752 Illustrative computer network environment · The computer system described above can be deployed as the computer network department. Generally speaking, the content of the computer environment described above. Knife. One item of this mountain is used for server computers and client computers deployed in the Internet exhibition. Fig. 2 and Fig. 3 are not exemplary network connection computer environments that can adopt the devices and methods described herein, such as a server that communicates with a client computer via a communication network. ° As shown in FIG. 2, the server 205 may be connected via a communication network 16 (may be a fixed line or wireless, WAN, internal network, external network, peer-to-peer network, Internet or other communication network). Connected to several client computer environments, such as tablet personal computer 210, mobile phone 215, phone 22, personal computer and personal digital assistant 225. In addition, the devices and methods described herein may be connected to a car computer environment (not shown), a consumer electronics device computer environment (not shown), and a building automation control computer environment (not shown in the figure) via the communication network 160. Drawing) Concord. For example, in a network environment where the communication network 160 is the Internet, the server 205 may be a dedicated computer environment server that operates to process Web services and communicates via any number of known communication protocols (eg, Hypertext Transfer). Hypertext Transfer Protocol (HTTP), file transfer protocol (FTP), Simple Object Access Protocol (SOAP), or wireless application protocol (fg protocol) WAP)) to transfer Web services to and from client computer environments 100, 210, 215, 220, and 225. Each client computer environment loo, 21, 215, 220, and 225 can also be equipped with a browser operating system 180 (which can operate to support one or more computer applications such as a web browser (not shown)) , Or equipped with a mobile desktop 96372.doc -20- 200523752 environment (to get access to the server computer environment 205). During operation, the user (not shown in the figure) can interact with the computer application running on the client computer environment to obtain the required data and / or computer application. The data and / or computer applications may be stored on the server computer environment 205 and communicated through the exemplary communication network 160 to users cooperating through the client computer environments 100, 210, 215, 220, and 225. Participant users use Web services transactions to request access to specific data and applications that are fully or partially loaded on the server computer environment 205. These Web service transactions can be communicated between the client computer environment 100, 210, 215, 220, and 225 and the server computer environment for processing and storage. The server's electronic moon ring * brother 205 can be loaded with computer applications, processes and applets to generate, identify, and communicate Web services, and can be used with other server computer environments (Figure Not shown in the figure), third-party service providers (not shown), network attached storage (NAS) and storage area network (stOΓageaΓeanetwork; SAN) in collaboration to achieve Wait for web service transactions. Therefore, in a computer network environment having a client computer environment for accessing or interacting with the network and a server computer environment for interacting with the client computer environment, the devices and methods described herein can be utilized. However, various network architectures can be used to implement devices and methods for providing a mobile device platform, and therefore should not be limited to the examples shown. Reference will now be made to this illustrative implementation to explain the apparatus and methods described herein in detail. Mobile device platform components: Figure 3 depicts an exemplary interaction between the exemplary mobile device and the exemplary mobile device platform 96372.doc 21 200523752. Generally, as shown in FIG. 3, the exemplary mobile device platform 300 (in short) may include an exemplary mobile device 31, which uses a communication interface that operates in accordance with a selected communication protocol (not shown) 305 < Collaborate with client computer environment 100. In addition, the exemplary mobile device platform 300 may further include a communication network 160 (as shown in FIG. 1) and a server computer environment 205. < In the operation process, the mobile device can cooperate with the client computer environment 100 through a communication interface in order to execute a computer application 180 derived from the mobile device 3 1 0, and can be displayed in the The client computer environment 1〇 ^ for user interaction. Computer applications 18, which may include (but are not limited to) browser applications, word processing applications, spreadsheets, database applications, web services applications, and user management to provide the appearance and operation of a familiar operating system / Preferences application. In addition, the mobile device 310 may use the client computer environment 100 to cooperate with the server computer environment 205 via the communication network 160 to obtain data and / or computer applications in the form of Web services. FIG. 4 illustrates interaction between an exemplary mobile device 405 and an exemplary mobile device platform 400. As shown in FIG. 4, an exemplary mobile device platform 400 includes a mobile device (MD) 405, a computer environment 415, a communication network 435, a mobile device management server (MDMS) 420, and a third-party web service provider 44. In addition, as further shown in the MD exploded view, the MD 405 further includes a processing unit (PU), an operating system (OS), a storage memory (RAM / ROM), and an MD ^ communication interface. Furthermore, the MDMS 420 further includes a translation engine 425, a Web " service 430, and an encryption engine 445. 96372.doc -22- 200523752 During operation, MD 405 uses one or more MD components PU, OS, RAM / ROM and MD communication interface to communicate with computer environment 415 through MD / computer environment communication interface 410. When communicating with the computer environment 415, the MD 405 can launch one or more computer applications (not shown in the figure), which may include (but is not limited to) a mobile desktop environment as a configuration part, user customization and authentication Recognized administrator and web services applications. Once the configuration has been set, the MD 405 can further collaborate with the computer environment 415 to process one or more web services (e.g., web service data and / or computer applications). In this context, the communication network 435 may be used by the MD 405 to request the cooperating MDMS 420 for web service information and / or computer applications in order to process their web services. In this case, the MDMS 420 can operate to authenticate the MD, thereby ensuring that the participant user (not shown) and the mobile device 405 have the correct permissions for the requested data and / or computer applications. If properly authenticated, the MDMS 420 may further operate to find the requested data and / or computer applications locally on the MDMS 420 and to communicate their requested data and / or computer applications via the communication network 435 ( For example, a web service) is provided to the authenticated MD 405, or the MDMS 420 may operate to cooperate with a third-party service provider 440 to obtain a web service to be communicated to the authenticated MD 405. When cooperating with a third-party web service provider 440, the MDMS 420 is operable to use a translation engine 425 'to translate the web service 430 originating from the third-party web service provider 440 into an MD native format. In addition, MDMS 420 is operable to use the encryption engine 445 to encrypt the required 96372.doc -23- 200523752 when meeting the web service requirements from the authenticated MD 405
Web服務。另外,MDMS 420可進一步運作以使用一所選的 加密協定(例如,PKI加密)來與檔案系統(圖中未繪示)協 作,以便獲得要傳達給MD 405的Web服務。合作的檔案系 統可包括(但不限於)檔案配置表(file allocation table ; FAT) 檔案系統及新技術檔案系統(new technology files system ; NTFS)。 圖5繪示在示例性行動裝置(MD) 500的示例性軟體組件 及其互動的方塊圖。如圖5所示,示例性行動裝置500包括 0 在電腦環境上展示行動裝置的模組505及行動裝置作業系 統模組510。MD展示模組及MD作業系統模組係經由HTTP 通信介面以運作方式而耦合。MD展示模組505進一步包括 應用程式架構子模組515、應用程式模組520、桌面環境525 及應用程式530。另外,應用程式555、面板(skin) 560及佈 景主題(theme) 565與MD展示模組協作,以便提供要用於在 合作的電腦環境(圖中未繪示)上建立一或多個展示(例如, 行動桌面環境)的資料。 _ MD作業系統模組510進一步包括java位元組程式碼載入 器535、超文字傳輸通訊協定(HTTP)伺服器540、簡單物件 存取通訊協定(SOAP)伺服器545及標準程式庫550。另外, SOAP月艮矛务5 70、java伺月艮器網頁(java server pages ; JSP)應 用程式和影像575及程式庫580也提供資料及功能給MD作 業系統510,藉此允許行動裝置處理及執行Web服務(圖中未 繪示)。 在運作過程中,行動裝置500採用MD展示模組505及行動 96372.doc -24- 200523752 裝置作業系統模組51 〇,藉以配入入 精以配口合作的電腦環境(圖中未 、、曰 建立展示和執行環境(例如,行動桌面環境)。庫用 ==515及應用程式模組520可運作以為透過行動裝置 乍δ作的電腦環境㈤中請示)上運作的應用程式提 ” 組態變數。桌面525提供詩允許執行Web服務及Web services. In addition, MDMS 420 may further operate to use a selected encryption protocol (e.g., PKI encryption) to cooperate with a file system (not shown) to obtain a Web service to be communicated to MD 405. The cooperative file system may include (but is not limited to) a file allocation table (FAT) file system and a new technology files system (NTFS). FIG. 5 illustrates a block diagram of exemplary software components and their interactions in an exemplary mobile device (MD) 500. FIG. As shown in FIG. 5, an exemplary mobile device 500 includes a module 505 and a mobile device operating system module 510 that display the mobile device on a computer environment. The MD display module and the MD operating system module are coupled in an operational manner via an HTTP communication interface. The MD display module 505 further includes an application program sub-module 515, an application program module 520, a desktop environment 525, and an application program 530. In addition, the application 555, skin 560, and theme 565 cooperate with the MD display module in order to provide one or more displays to be used on a collaborative computer environment (not shown) ( (E.g., mobile desktop environment). The MD operating system module 510 further includes a Java byte code loader 535, a Hypertext Transfer Protocol (HTTP) server 540, a Simple Object Access Protocol (SOAP) server 545, and a standard library 550. In addition, the SOAP server 5 70, java server pages (JSP) applications and images 575, and the library 580 also provide data and functions to the MD operating system 510, thereby allowing mobile devices to process and Execute web service (not shown in the figure). In the operation process, the mobile device 500 uses the MD display module 505 and mobile 96372.doc -24- 200523752 device operating system module 51 〇, so as to be incorporated into the computer environment to cooperate with the port (not shown in the figure, Create a display and execution environment (for example, a mobile desktop environment). The library uses == 515 and the application module 520 can operate to provide instructions for applications that operate on a computer environment created through a mobile device. .Desktop 525 provides poems that allow execution of web services and
=制程式的行動桌面環境。制程式530依據應用 私式木構及應用程式模組運作’以便提供要透過行動裝置 在合作的電腦環境(圖中未緣示)上運作的一或多個應用程 ^額外的資料應用程式555是透過行動裝置在合作的電腦 環境(圖中未緣示)上執行的額外資料應用程式。面板⑽… 560及佈景主題(theme)⑹提供外觀和顯示組態參數及設 定’用以允許參與方使用者能夠自訂行動裝置所執行之應 用程式及行動桌面環境的外觀及操作。 MD作業系統模組51〇運作以提供軟體架構,促使行動裝 置可依據軟體架構來執行電腦應用程式及Web服務。扛π= Programmed mobile desktop environment. The program 530 operates according to the application private wood structure and the application module 'so as to provide one or more applications to be operated on a cooperative computer environment (not shown in the figure) through a mobile device ^ additional data application 555 Is an additional data application that runs on a cooperating computer environment (not shown) via a mobile device. Panel ⑽ ... 560 and theme ⑹ provide appearance and display configuration parameters and settings' to allow participant users to customize the appearance and operation of applications executed by mobile devices and mobile desktop environments. The MD operating system module 51 operates to provide a software architecture, enabling mobile devices to execute computer applications and Web services based on the software architecture. Carry π
位兀組程式碼載入器535運作以協定處理以”語言模組。 HTTP伺服器540運作以為行動裝置提供Ηττρ通信服務。 SOAP伺服器545運作以為行動裝置提供s〇Ap作業。標準程 式庫550提供在編譯和執行各種java程式碼過程中使用的程 式設計語言(即,java)程式庫。S0AP服務57〇將參數及組態 值k供給MD作業系統模組5 1 〇,以便處理soap交易(例 如,Web服務)。JSP應用程式和影像將額外的資料提供給 MD作業系統模組,以便處理java伺服器網頁。程式庫550 提供額外的程式設計語言程式庫,由MD作業系統模組5 10 96372.doc -25- 200523752 運用在支援執行電腦應用程式及處理Web服務。 顯而易見,圖中將MD展示模組505及MD作業系統模組 5 10的外形繪示成具有榫接排列,藉此圖解說明行動裝置能 夠接受複數個協作資料、功能及作業,藉此協助處理及執 行Web服務。另外,這些模組的外形被虛線框圍繞,藉此 圖解說明可在模組之間交換及移動資料、功能及作業。 另外,顯而易見,雖然圖中所示之行動裝置5〇〇具有例證 性組態及例證組件,但是此說明内容僅僅是示例,可透過 具有各種組態的各種組件來實現本文描述之裝置及方法。 圖6繪示例證性行動裝置之示例性硬體架構的方塊圖。如 圖所示,行動裝置600包括電腦環境通信連接器6〇5、通信 介面實體收發器610及行動裝置核心615。行動裝置核心615 進步包括通#介面核心620、處理單元處理器625、 RAM/ROM 630、周邊裝置介面635、反及快閃記憶體64〇以 及加密模組645。 在運作過程中,該行動裝置600透過電腦環境通信連接器 來與一合作的電腦環境(圖中未繪示)通信。已實際連接後, 行動裝置600可與該合作的電腦環境(圖中未繪示)通信,以 便控制該合作的電腦環境(圖中未繪示)上的一或多個作 業。在此背景下,可透過通信介面實體收發器61〇在該行動 哀置600與该合作的電腦環境通信(圖中未繪示)之間交換資 料。另外,行動裝置還可透過行動裝置核心615的通信介面 核心620來處理資料、命令、服務及作業。一旦處於通信介 面核心,處理單元處理器625可與RAM/R〇M 63〇、周邊裝 96372.doc -26 - 200523752 置介面635、反及快閃記憶體640和加密模組645協作,以便 處理源自於合作的電腦環境通信(圖中未繪示)或源自於以 運作方式轉合至合作的電腦環境通信(圖中未繪示)的合作 之組件(例如,合作之行動裝置管理伺服器)(圖中未繪示) 的資料、服務、命令及作業。 在例證性實施中,周邊裝置介面635可運作以允許用於將 一或多個周邊裝置連接至行動裝置6〇〇的實體連接,包括 (但不限於)快閃記憶體、自動化控制、通信模組及輸入周邊 裝置(例如,滑鼠、鍵盤、安全性周邊裝置(可包括(但不限 於)生物測定安全性周邊裝置、視網膜掃描安全性周邊裝置 及女全性語音辨識周邊裝置)。加密模組645可運作以加密 及解毯=貝料、服務、命令及應用程式,以供行動裝置6〇〇 的處理單元處理器625使用。 顯而易見,雖然圖中所示之行動裝置6〇〇具有例證性組態 及例證組件,但是此說明内容僅僅是示例,可透過具有各 種組態的各種組件來實現本文描述之裝置及方法。 圖7繪示示例性行動裝置及包含允許多個工作環境作業 之鑑認堆疊的方塊圖。如圖所示,行動裝置7〇〇可包括工作 環境705、710、715、720、725和730。基於本例證說明之 用途,工作環境可被視為行動裝置内獨立的使用者環境, 用於處理獨立的使用者鑑認、行動裝置鑑認和確認資訊。 例如,行動裝置可支援多個工作環境,—為用於企業應用 程式和資料的工作環境、一為用於參與方使用者個人遊戲 應用程式和資料的工作環境以及一為用於參與方使用者購 96372.doc -27- 200523752 物應用程式和資料的工作環境。對於每項工作環境,行動 裝置可包括獨立的鑑認資訊,促使可使用為個別工作環境 提供服務和應用程式的合作之組件(例如,行動裝置管理伺 服裔)來鑑自忍該工作環境。Bitset code loader 535 operates to handle protocol processing in "language modules." HTTP server 540 operates to provide Ηττρ communication services for mobile devices. SOAP server 545 operates to provide soap operations for mobile devices. Standard library 550 Provides a programming language (ie, java) library used in the compilation and execution of various java code. The SOAP service 57 〇 provides the parameter and configuration value k to the MD operating system module 5 1 〇 in order to process soap transactions ( For example, web services). JSP applications and images provide additional data to the MD operating system module in order to process java server web pages. Library 550 provides additional programming language libraries by the MD operating system module 5 10 96372.doc -25- 200523752 Used to support the execution of computer applications and processing Web services. Obviously, the figure shows the appearance of the MD display module 505 and MD operating system module 5 10 with a tenon arrangement, which is used to illustrate Explain that mobile devices can accept multiple collaborative data, functions, and operations to help process and execute Web services. In addition, the appearance of these modules is Dotted boxes surround the diagram to illustrate that data, functions, and operations can be exchanged and moved between modules. In addition, it is obvious that although the mobile device 500 shown in the figure has an exemplary configuration and exemplary components, this description The content is only an example, and the devices and methods described herein can be implemented through various components with various configurations. Figure 6 illustrates a block diagram of an exemplary hardware architecture of an exemplary mobile device. As shown, the mobile device 600 includes Computer environment communication connector 605, communication interface physical transceiver 610, and mobile device core 615. Advances in mobile device core 615 include communication interface core 620, processing unit processor 625, RAM / ROM 630, peripheral device interface 635, and And flash memory 64 and encryption module 645. During operation, the mobile device 600 communicates with a cooperating computer environment (not shown in the figure) through a computer environment communication connector. After it is actually connected, it acts The device 600 can communicate with the cooperative computer environment (not shown) to control a computer environment (not shown) on the cooperative computer environment. Multiple operations. In this context, data can be exchanged between the mobile 600 and the cooperating computer environment communication (not shown) through the communication interface physical transceiver 61. In addition, the mobile device can also use The communication interface core 620 of the mobile device core 615 handles data, commands, services and operations. Once in the communication interface core, the processing unit processor 625 can be connected with RAM / ROM 63〇, peripheral equipment 96372.doc -26-200523752 The interface 635, the anti-flash memory 640, and the encryption module 645 cooperate to process communication from a computer environment (not shown in the figure) that originates from cooperation or communication from a computer environment that is transferred to a cooperative operation mode ( The data, services, commands, and operations of the cooperating components (for example, the cooperating mobile device management server) (not shown in the figure) (not shown in the figure). In an exemplary implementation, the peripheral device interface 635 is operable to allow a physical connection for connecting one or more peripheral devices to the mobile device 600, including (but not limited to) flash memory, automated control, communication modules And input peripherals (eg, mouse, keyboard, security peripherals (which may include (but are not limited to) biometric security peripherals, retinal scanning security peripherals, and female holistic speech recognition peripherals). Encryption mode Group 645 is operable to encrypt and decrypt carpets, services, commands, and applications for use by the processing unit processor 625 of the mobile device 600. Obviously, although the mobile device 600 shown in the figure has an example Configuration and illustration components, but this description is only an example, and the devices and methods described in this article can be implemented through various components with various configurations. Figure 7 illustrates an exemplary mobile device and includes devices that allow multiple work environments to operate. Block diagram of the authentication stack. As shown, the mobile device 700 may include working environments 705, 710, 715, 720, 725, and 730. Based on For the purpose of this illustration, the work environment can be considered as a separate user environment within the mobile device, which is used to handle independent user authentication, mobile device authentication, and confirmation information. For example, a mobile device can support multiple work environments, — A working environment for enterprise applications and data, a working environment for personal game applications and data for participant users, and a purchase of 96372.doc -27- 200523752 applications for participant users And data work environments. For each work environment, mobile devices can include independent authentication information, enabling collaboration components that provide services and applications for individual work environments (eg, mobile device management servers) to be authenticated from Endure the work environment.
在此背景下,圖7所示之行動裝置700的工作環境7〇5本身 包含該行動裝置的使用者鑑認和確認以及加密金鑰(用於 工作裱境1的公開金鑰及用於工作環境i的私密金鑰”同樣 地,工作環境710具有該行動裝置的使用者鑑認和確認資訊 以及用於工作環境2的公開金鑰和私密金鑰。如圖7所示 料化m 7 i 5、工作環境IV 72〇直到工作環境n 725和^ 730都具有相同的使用者鐘認和公開/私密金输架構。在; 作過程中,該行動裝置7〇〇可允許參與方使用者(圖中未名 不)選擇自己可登入且處理資料和職服務的工作環境。十 據使用者登人的卫作環境,將會使用—或多個使用者鑑認 公開/私密金鑰工作環境資訊。In this context, the working environment 705 of the mobile device 700 shown in FIG. 7 itself includes user authentication and confirmation of the mobile device and an encryption key (the public key used for work frame 1 and used for work Similarly, the "private key of environment i" similarly, the work environment 710 has user authentication and confirmation information of the mobile device, and a public key and a private key used in the work environment 2. As shown in FIG. 7, m 7 i 5. Work environment IV 72. Up to work environment n 725 and ^ 730 have the same user recognition and public / private gold loss architecture. In the process, the mobile device 700 can allow participants users ( (Unknown in the picture) Choose a working environment where you can log in and process data and professional services. According to the user's registered environment, you will use—or multiple users to identify public / private key working environment information. .
圖8緣示示例性行動裝置之工作環境實施的方塊圖。如撞 8所不’行動裝置8G5可支援作㈣統81(),該作業系統川 可運作以執行-或多個工作環境81〇和815。工作環境可祐 =在合作的電腦環境請、叫州,促使合作的電腦環 兄在顯不益835上顯示工作環境1 820。同樣地,合作的 電腦環境_可在顯示趣上顯示工作環境m817;合作 的電觸環境贿在顯示器825上顯示工作環境㈣5。如圖 行動裝㈣5以參財❹麵供(如麟所示)工 …的立方體圖形表示,可藉由旋轉立方體來調用一特 96372.doc •28- 200523752 定工^環境。在運作過程中,可藉由旋轉立方體至所要的 乍衣i兄來選取工作環境,並且藉中提供適當的鑑認資訊 (例如,使用者名稱及密碼)進行操作。 顯而易見’雖然所描述之行動裝置具有可以用一特定祖 態(例如,立方體)呈現的工作環境,但是此說明内容僅僅是 不例’可以用各種特定組態來為參與方使用者呈現行動裝 置的多個工作環境。 圖9繪示當示例性行動裝置_被組態成處理及執行Web 服務時所執打的程序。如圖所示,程序從步驟刚開始,並 且進行到步驟905,在步驟9〇5實行檢查以判定介於行動裝 置與合作的電腦環境之間是否已進行通信。如果在步驟905 的檢查結果指示出未進行通信,則程序返时驟_並繼續 程序。 立然而,如果在步驟905判定介於行動裝置與合作的電腦環 境之間已進行通信,則進行到步驟91〇以實行鑑認使用者之 檢查。如果在步驟910的檢查結果指示出未成功鑑認使用 者,則程序進行到步驟915以產生錯誤。接著在步驟917進 行檢查以查看疋否再次嘗試鑑認。如果在步驟91 7再次嘗 試鑑認,則程序返回步驟917並繼續程序。然而,如果在步 驟917判定未再次嘗試鑑認’則程序繼續進行到步驟92〇並 且終止。 然而,如果在步驟910的檢查結果指示出已鑑認使用者, 則程序進行到步驟9 2 5以起始要在合作之電腦環境上執行 的行動桌面環境。接著,在步驟93〇,使用使用者鑑認資訊 96372.doc -29- 200523752 來掏取整合至行動裝置行動桌面環境中的使用者自訂偏好 設定。接著,程序進行到步驟935,在步驟935實行檢查以 判定行動裝置行動桌面環境自訂設定是否有任何變更。如 果在步驟935的檢查結果指示出行動裝置桌面環境設定有 變更,則程序進行到步驟940以儲存所做的變更。接著,程 序進行到步驟945,在步驟945實行檢查以判定行動裝置是 否正在要求Web服務。如果在步驟945的檢查結果指示出要 執行Web服務,則程序進行到步驟96〇以處理貿吡服務要 求,並且在步驟965執行Web服務。接著,程序返回步驟945 並繼續程序。 然而,如果在步驟945判定沒有執行Web服務要求,則程 序進行到步驟950,在步驟950實行檢查以判定行動裝置是 否已停止與合作的電腦環境通信。如果在步驟945的檢查結 果指不出行動裝置已停止與合作的電腦環境通信,則程序 在步驟955終止。然而,如果在步驟95〇的檢查結果指示出 仃動裝置尚未停止通信,則程序返回步驟945並繼續程序。 而且,如果在步驟935的檢查結果指示出行動裝置桌面環境 设定無變更,則程序繼續進行到步驟945並繼續程序。 總言之,本文描述之裝置及方法提供一種行動裝置。然 而,應明白,本發明容許各種修改及替代建構。本發明不 限定於如本文所述的特定建構。反之,本發明預定涵蓋屬 於本發明精神與範疇内的所有修改案、替代建構及同等案。 月注思在各種電腦環境(包括非無線及無線電腦環 境)、局部電腦環境及真實環境中皆可實施本發明。本文中 96372.doc -30- 200523752 所說明的各種技術可運用硬體、軟體或軟硬體組合來實 施。較佳方式為,可在維護可程式化電腦的電腦環境中來 實施各項技術,其中電腦包括處理器、處理器可讀取的儲 存媒體(包括揮發性及非揮發性記憶體及/或儲存元件)、至 少-個輸入裝置及至少一個輸出裝置。配合各種指令集協 作之電腦硬體邏輯被套用至資料,以執行如上文所述之功 能並且產生輸出資訊。輸出資訊被供至至一或多個輸出裝 置。較佳方式為,可使用各種程式設計語言(包括高階程序 或物件導向式程式設計語言)來實施示例性電腦硬體所使 用的私式,以與電腦系統通信。作為例證,若希望,可使 用組合語言$電腦語言來實施本文描述之裝置及方法。在 任何it況下,语s可能是編譯或解譯語言。較佳方式為, 每個電腦程式係儲存在一般或特殊用途之可程式化電腦可 讀取的儲存媒體或裝置(例如’ R〇M或磁碟),用於當電腦 讀取儲存媒體或裝置時來組態及操作電腦,以便執行如上 文所述之矛王序。裝置也可建構為電腦可讀取的儲存媒體並 使用電腦程式設定其組態’其中儲存媒體被組態成促使電 腦以特定或預先定義的方式運作。 雖然前文中已詳細說明本發明t示例性實%,但是孰悉 此類技術者很容易明白示例性具體實施例有許多可實行= 額外修改案’而不會實質上脫離本發明的新賴講授内容與 優點。據此,這些及所有此類修改案預定涵蓋在本發明的 範缚内。下列示行性巾請專利範圍更適當地定義本發明。 【圖式簡單說明】 96372.doc -31 - 200523752 置平臺及使用方法 現在將參考附圖來詳細說明行動裝 圖中: 之實的不例性電 圖1繪不根據本文描述之裝置及方法 腦環境方塊圖; 環根據本文描述之㈣及方法㈣例性電猫網路 圖增示根據本文描述之裝置及方法的示例性電腦 組件間互動之方塊圖; 〃FIG. 8 illustrates a block diagram of a working environment implementation of an exemplary mobile device. For example, the 8G5 mobile device can support the operating system 81 (), and the operating system can be operated to execute-or multiple working environments 810 and 815. Work environment can be good = In the cooperative computer environment, please call the state, and promote the cooperative computer environment brother to display the working environment 1 820 on Xianbuyi 835. Similarly, the cooperative computer environment can display the working environment m817 on the display screen; the cooperative electric touch environment can display the working environment 显示器 5 on the display 825. As shown in the figure, the mobile device 5 is represented by a cube graphic provided by the financial institution (as shown by Lin). You can call a special 96372.doc • 28- 200523752 work environment by rotating the cube. In operation, you can select the working environment by rotating the cube to the desired brother, and provide appropriate authentication information (such as user name and password) for operation. It is obvious 'Although the described mobile device has a working environment that can be presented with a specific ancestor (eg, cube), this description is only an example' The various configurations can be used to present the mobile device to the participant user. Multiple work environments. FIG. 9 illustrates a program executed when an exemplary mobile device_ is configured to process and execute a Web service. As shown in the figure, the program starts from step and proceeds to step 905. At step 905, a check is performed to determine whether communication has occurred between the mobile device and the cooperating computer environment. If the result of the check in step 905 indicates that communication is not in progress, the program returns to step _ and continues the program. Immediately, however, if it is determined in step 905 that communication has occurred between the mobile device and the cooperating computer environment, then proceed to step 910 to perform a check to authenticate the user. If the check result at step 910 indicates that the user has not been successfully authenticated, the program proceeds to step 915 to generate an error. A check is then made in step 917 to see if authentication is attempted again. If authentication is attempted again at step 917, the program returns to step 917 and continues the program. However, if it is determined in step 917 that authentication is not attempted again, the process proceeds to step 92 and ends. However, if the result of the check at step 910 indicates that the user has been authenticated, the process proceeds to step 9 2 5 to initiate a mobile desktop environment to be executed on the cooperating computer environment. Next, at step 93, the user authentication information 96372.doc -29- 200523752 is used to extract user-defined preference settings integrated into the mobile desktop environment of the mobile device. The process then proceeds to step 935 where a check is performed to determine whether there are any changes to the mobile desktop environment customization settings of the mobile device. If the check result in step 935 indicates that the desktop environment settings of the mobile device have changed, the process proceeds to step 940 to save the changes. The program then proceeds to step 945 where a check is performed to determine if the mobile device is requesting a web service. If the check result at step 945 indicates that the Web service is to be executed, the program proceeds to step 96 to process the service request, and the Web service is executed at step 965. The program then returns to step 945 and continues the program. However, if it is determined in step 945 that the Web service request is not performed, the program proceeds to step 950 where a check is performed to determine whether the mobile device has stopped communicating with the cooperating computer environment. If the check at step 945 does not indicate that the mobile device has stopped communicating with the cooperating computer environment, the program terminates at step 955. However, if the check result at step 95 indicates that the automatic device has not stopped communication, the program returns to step 945 and continues the program. Moreover, if the check result in step 935 indicates that the mobile device desktop environment setting has not changed, the process proceeds to step 945 and the process continues. In summary, the devices and methods described herein provide a mobile device. However, it should be understood that the present invention allows various modifications and alternative constructions. The invention is not limited to a particular construction as described herein. On the contrary, the invention is intended to cover all modifications, alternative constructions, and equivalents falling within the spirit and scope of the invention. Moonnote thinks that the present invention can be implemented in various computer environments (including non-wireless and wireless computer environments), local computer environments, and real environments. The various techniques described in this article 96372.doc -30- 200523752 can be implemented using hardware, software, or a combination of hardware and software. Preferably, the various technologies can be implemented in a computer environment that maintains a programmable computer, where the computer includes a processor, a processor-readable storage medium (including volatile and non-volatile memory and / or storage) Components), at least one input device and at least one output device. Computer hardware logic coordinated with various instruction sets is applied to the data to perform the functions described above and generate output information. The output information is supplied to one or more output devices. Preferably, various programming languages (including high-level procedures or object-oriented programming languages) can be used to implement the private styles used by the exemplary computer hardware to communicate with the computer system. As an example, if desired, the combined language $ computer language can be used to implement the devices and methods described herein. In any case, the language s may be a compiled or interpreted language. Preferably, each computer program is stored in a general-purpose or special-purpose programmable computer-readable storage medium or device (such as a 'ROM or magnetic disk) for use when the computer reads the storage medium or device Configure and operate your computer from time to time to perform the Spear King sequence as described above. The device can also be constructed as a computer-readable storage medium and configured using a computer program ', where the storage medium is configured to cause the computer to operate in a specific or predefined manner. Although the exemplary embodiment of the present invention has been described in detail in the foregoing, those skilled in the art will readily understand that there are many possible implementations of the exemplary embodiments = additional modifications' without substantially departing from the new teachings of the present invention. Content and advantages. Accordingly, these and all such modifications are intended to be included within the scope of the present invention. The following exemplary towels request the scope of the patent to more appropriately define the invention. [Schematic illustration] 96372.doc -31-200523752 Platform and use method will now be described in detail with reference to the accompanying drawings: The actual example of the electrical diagram 1 is not based on the device and method described in this article Environment block diagram; an example electric cat network diagram based on the methods and methods described herein; an additional block diagram showing exemplary computer component interactions according to the devices and methods described herein;
圖4繪示根據本文描述之裝置及方法的行動裝置平臺之 例證實施方塊圖; 圖5緣不根據本文描述之裝置及方法的示例性行動 之例證性軟體架構方塊圖; 、 圖6繪示根據本文描述之裝置及方法的示例性行動 之例證性硬體架構方塊圖; 圖7繪示根據本文描述之裝置及方法的示例性行動裝置 之例證性使用者與裝置鑑認堆疊方塊圖; "FIG. 4 illustrates an exemplary implementation block diagram of a mobile device platform according to the devices and methods described herein; FIG. 5 illustrates an exemplary software architecture block diagram of an exemplary operation not based on the devices and methods described herein; Illustrative hardware architecture block diagram of an exemplary operation of the devices and methods described herein; FIG. 7 illustrates an exemplary user and device authentication stack block diagram of an exemplary mobile device in accordance with the devices and methods described herein; "
圖8繪示根據本文描述之裝置及方法的示例性行動裝置 所適用之多工作環境的例證實施方塊圖;以及 圖9緣示根據本文描述之裝置及方法在組態示例性行動 袭置過私中所執行之例證性程序流程圖。 【主要元件符號說明】 100 105 電腦系統(資料處理系統,電腦作業環境) 系統匯流排 中央處理單元(CPU) 96372.doc * 32 - 110 200523752 112 115 120 125 130 135 140 145 150 155 160 163 165 170 180 180, 200 210 215 220 225 300, 305 310, 互連 副處理器 記憶體控制器 隨機存取記憶體(RAM) 唯讀記憶體(ROM) 周邊裝置控制器 印表機 鍵盤 滑鼠 資料儲存機 通信網路 顯示器控制器 顯示器 網路卡 作業系統 電腦應用程式 網路連線電腦環境 平板式個人電腦 行動電話 電話 個人數位助理 400 行動裝置平臺 通信介面 405, 500,行動裝置(MD) 96372.doc -33- 200523752 600, 700, 805 410 MD/電腦環境通信介面 415 電腦環境 420 行動裝置管理伺服器(MDMS) 425 轉譯引擎 430 Web服務 435 通信網路 440 第三方Web服務提供者 445 加密引擎 505 行動裝置展示模組 510 行動裝置作業系統模組 515 應用程式架構子模組 520 應用程式模組 525 桌面環境 530 應用程式 535 java位元組程式碼載入器 540 超文字傳輸通訊協定(HTTP)伺服器 545 簡單物件存取通訊協定(SOAP)伺服器 550 標準程式庫 555 應用程式 560 面板(skin) 565 佈景主題(theme) 605 電腦環境通信連接器 610 通信介面實體收發器 96372.doc -34- 200523752 615 行動裝置核心 620 通信介面核心 625 處理單元處理器 630 RAM/ROM 635 周邊裝置介面 640 反及快閃記憶體 645 加密模組 705, 710, 715, 工作環境 720, 725, 730, 815, 817, 820 820, 830, 840 電腦環境 825, 835, 845 顯示器 96372.doc 35-FIG. 8 illustrates an exemplary implementation block diagram of multiple working environments applicable to an exemplary mobile device according to the devices and methods described herein; and FIG. 9 illustrates an exemplary mobile device configured to be compromised in accordance with the devices and methods described herein. Illustrative process flow chart executed in. [Description of main component symbols] 100 105 Computer system (data processing system, computer operating environment) System bus central processing unit (CPU) 96372.doc * 32-110 200523752 112 115 120 125 130 135 140 145 150 155 160 163 165 170 180 180, 200 210 215 220 225 300, 305 310, interconnected sub processor memory controller random access memory (RAM) read-only memory (ROM) peripheral device controller printer keyboard mouse data storage Communication network display controller display network card operating system computer application network connection computer environment tablet PC mobile phone personal digital assistant 400 mobile device platform communication interface 405, 500, mobile device (MD) 96372.doc- 33- 200523752 600, 700, 805 410 MD / Computer Environment Communication Interface 415 Computer Environment 420 Mobile Device Management Server (MDMS) 425 Translation Engine 430 Web Services 435 Communication Network 440 Third-Party Web Service Provider 445 Encryption Engine 505 Mobile Device Display module 510 Mobile device operating system module 515 Application framework submodule 520 Application Program Module 525 Desktop Environment 530 Application 535 Java Byte Code Loader 540 Hypertext Transfer Protocol (HTTP) Server 545 Simple Object Access Protocol (SOAP) Server 550 Standard Library 555 Application 560 Skin 565 Theme 605 Computer environment communication connector 610 Communication interface physical transceiver 96372.doc -34- 200523752 615 Mobile device core 620 Communication interface core 625 Processing unit processor 630 RAM / ROM 635 Peripheral device interface 640 anti-flash memory 645 encryption modules 705, 710, 715, working environment 720, 725, 730, 815, 817, 820 820, 830, 840 computer environment 825, 835, 845 monitor 96372.doc 35-
Claims (1)
Applications Claiming Priority (8)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
US50691903P | 2003-09-29 | 2003-09-29 | |
US50719703P | 2003-09-29 | 2003-09-29 | |
US50692503P | 2003-09-29 | 2003-09-29 | |
US50691803P | 2003-09-29 | 2003-09-29 | |
US53876704P | 2004-01-22 | 2004-01-22 | |
US54373504P | 2004-01-22 | 2004-01-22 | |
US53891504P | 2004-01-22 | 2004-01-22 | |
US53876304P | 2004-01-22 | 2004-01-22 |
Publications (2)
Publication Number | Publication Date |
---|---|
TW200523752A true TW200523752A (en) | 2005-07-16 |
TWI259377B TWI259377B (en) | 2006-08-01 |
Family
ID=37873400
Family Applications (3)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
TW93129443A TWI259377B (en) | 2003-09-29 | 2004-09-29 | Method for processing web services, mobility device and system relating to the same |
TW93129444A TWI259730B (en) | 2003-09-29 | 2004-09-29 | Mobility device server |
TW93129442A TWI255626B (en) | 2003-09-29 | 2004-09-29 | Mobility device platform system and method, and computer readable medium thereof |
Family Applications After (2)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
TW93129444A TWI259730B (en) | 2003-09-29 | 2004-09-29 | Mobility device server |
TW93129442A TWI255626B (en) | 2003-09-29 | 2004-09-29 | Mobility device platform system and method, and computer readable medium thereof |
Country Status (1)
Country | Link |
---|---|
TW (3) | TWI259377B (en) |
Cited By (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US8259621B2 (en) | 2007-09-05 | 2012-09-04 | Htc Corporation | Method and system for supporting network sharing and data synchronization simultaneously |
US8418252B2 (en) | 2006-08-31 | 2013-04-09 | Broadcom Corporation | Intelligent network interface controller |
Families Citing this family (10)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
TWI417788B (en) * | 2005-09-01 | 2013-12-01 | Koninkl Philips Electronics Nv | A data processing system and a method of operating a rendering platform |
US7917507B2 (en) * | 2007-02-12 | 2011-03-29 | Microsoft Corporation | Web data usage platform |
US8429185B2 (en) | 2007-02-12 | 2013-04-23 | Microsoft Corporation | Using structured data for online research |
CN102739606B (en) * | 2011-04-02 | 2016-01-13 | 深圳富泰宏精密工业有限公司 | Videophone application system and method |
US10129087B2 (en) | 2012-05-01 | 2018-11-13 | Intel Corporation | Application service location and management system |
US9571343B2 (en) * | 2012-05-01 | 2017-02-14 | Intel Corporation | Application service location and management system |
TWI665560B (en) * | 2016-07-18 | 2019-07-11 | 科智企業股份有限公司 | Mobile Manufacturing Management and Optimization Platform |
TWI788741B (en) * | 2020-12-10 | 2023-01-01 | 中華電信股份有限公司 | System and method for remote video assistance |
TWI811050B (en) * | 2022-08-03 | 2023-08-01 | 優式機器人股份有限公司 | Control method for the cooperation of multiple mobile robots |
TWI825896B (en) * | 2022-08-03 | 2023-12-11 | 優式機器人股份有限公司 | Environmental finishing control method |
-
2004
- 2004-09-29 TW TW93129443A patent/TWI259377B/en active
- 2004-09-29 TW TW93129444A patent/TWI259730B/en not_active IP Right Cessation
- 2004-09-29 TW TW93129442A patent/TWI255626B/en not_active IP Right Cessation
Cited By (5)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US8418252B2 (en) | 2006-08-31 | 2013-04-09 | Broadcom Corporation | Intelligent network interface controller |
TWI458308B (en) * | 2006-08-31 | 2014-10-21 | Broadcom Corp | Intelligent network interface controller |
US8259621B2 (en) | 2007-09-05 | 2012-09-04 | Htc Corporation | Method and system for supporting network sharing and data synchronization simultaneously |
US8312477B2 (en) | 2007-09-05 | 2012-11-13 | Htc Corporation | Mobile device with multiple operating systems and method for sharing a wireless communication module between operating systems thereof |
US8893154B2 (en) | 2007-09-05 | 2014-11-18 | Htc Corporation | Mobile device with two operating systems and method for sharing hardware device between two operating systems thereof |
Also Published As
Publication number | Publication date |
---|---|
TWI259730B (en) | 2006-08-01 |
TWI255626B (en) | 2006-05-21 |
TW200522631A (en) | 2005-07-01 |
TW200522744A (en) | 2005-07-01 |
TWI259377B (en) | 2006-08-01 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
EP1519539A2 (en) | Mobility device | |
WO2005036305A2 (en) | Mobility device | |
US20080301443A1 (en) | Mobility device platform | |
CN104255007B (en) | OAUTH frameworks | |
US7424543B2 (en) | System and method of permissive data flow and application transfer | |
US9244671B2 (en) | System and method for deploying preconfigured software | |
US11799841B2 (en) | Providing intercommunication within a system that uses disparate authentication technologies | |
US20080244265A1 (en) | Mobility device management server | |
US20040205772A1 (en) | Intelligent software agent system architecture | |
US20030061350A1 (en) | File transfer system for secure remote file accesses | |
US20030154413A1 (en) | Information processing device, information processing system, authentication method, storage medium and program | |
CN101410803A (en) | Methods and systems for providing access to a computing environment | |
EP1557737A2 (en) | Method, system and program procuct for electronically executing contracts within a secure computer infrastructure | |
RU2237275C2 (en) | Server and method (variants) for determining software surroundings of client node in a network having client/server architecture | |
TW200523752A (en) | Mobility device | |
US8271574B1 (en) | Content sharing and collaboration | |
GB2372413A (en) | Digital credential exchange | |
KR101047240B1 (en) | Real-time electronic subscription service method using virtual ORM card | |
US11650773B2 (en) | Systems, apparatus, and computer program products for management of certificates for third party applications accessing printing kiosks | |
JP7165373B1 (en) | Inter-enterprise data linkage system, information processing device and program | |
CN117240608B (en) | Login authorization method, login authorization device, computer equipment and storage medium | |
US20050246294A1 (en) | Method, system and program product for protecting electronic contracts created within a secure computer infrastructure | |
TW554275B (en) | Management device and method for managing a remote database | |
Fontana | Microsoft fills in details on course for evolution of identity platform | |
JP2002056193A (en) | System and method for asset information management and recording medium |