Authentication Session Invalidation During Deep Sleep Transitions
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The existing power save mode in information processing apparatuses does not adequately address security concerns when transitioning to a deep sleep state, as authentication sessions are retained, potentially leading users to distrust the system due to perceived security breaches.
Innovation Solution
Incorporating a transition unit that stores communication identification information as invalidation scheduled information during power saving, allowing the system to invalidate authentication identification information upon returning from deep sleep, ensuring security without requiring re-login.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If the apparatus enters deep sleep mode to achieve high-speed shutdown and startup, then productivity is improved, but security reliability deteriorates because authentication sessions are retained
Solution Approach 1:
The system performs preliminary invalidation of authentication sessions by storing communication identification information as invalidation-scheduled data before entering deep sleep mode. When the apparatus wakes up, it automatically invalidates these pre-marked sessions, ensuring security without requiring full re-authentication. This preliminary action resolves the contradiction by maintaining security protocols while enabling fast startup.
Solution Approach 2:
The system extracts and separates the authentication session invalidation process from the deep sleep transition itself. By identifying and isolating communication identification information that needs invalidation, the system can handle security requirements independently while maintaining the performance benefits of deep sleep mode. This extraction allows the apparatus to wake up quickly while still enforcing security measures.
2Ease of operation
If authentication sessions are retained during deep sleep, then ease of operation is improved as users don't need to re-login, but security reliability worsens due to potential security breaches
Solution Approach 1:
The system introduces an intermediary mechanism - the invalidation-scheduled communication identification information stored in the storage unit - that mediates between security requirements and user convenience. This intermediary allows the system to automatically manage session validity without requiring user awareness or action, resolving the contradiction by handling security transparently while maintaining ease of operation.
Solution Approach 2:
The system implements self-service security management by automatically invalidating authentication sessions upon waking from deep sleep without requiring user intervention. The apparatus serves itself by detecting the wake event and proactively invalidating appropriate sessions, eliminating the need for users to manually re-login while maintaining security. This self-service approach resolves the contradiction by making security management automatic and transparent.
Data Source
AI summary
There is provided a mechanism for invalidating, when an apparatus returns from a high-speed shutdown, authentication identification information issued before the apparatus enters the high-speed shutdown.


