Biometric Peripheral Encryption for Restricted Systems
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Restricted-access computer environments prevent users from installing necessary device drivers, limiting the functionality of plug-and-play devices, as users cannot install software required to interact with external devices like external hard drives, even if the drivers are available.
Innovation Solution
A computer peripheral device and associated software that includes an interface controller and biometric sensor, enabling communication with a restricted-access computer to identify compatible software already installed, allowing direct execution of code segments from the device without installing them on the computer, and providing transparent encryption and decryption of data using biometric authentication.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If users connect plug-and-play devices to restricted-access computers, then device connectivity is enabled, but device functionality is limited due to inability to install required drivers
Solution Approach 1:
The peripheral device performs self-service by automatically executing code segments from its own storage medium without requiring installation on the host computer. The device controller directly runs encryption/decryption code and device drivers from the portable storage medium, making the device self-sufficient and eliminating the need for user installation actions on restricted systems.
Solution Approach 2:
The invention moves the software execution environment from the host computer dimension to the peripheral device dimension. Instead of installing code on the restricted host system, the code resides and executes on the peripheral device's storage medium, creating a new operational dimension that bypasses host system restrictions.
2Adaptability or versatility
If code segments are executed directly from peripheral device without installation, then compatibility with restricted-access computers is improved, but software installation capability is bypassed
Solution Approach 1:
The invention extracts the software installation step entirely from the deployment process. Code segments are taken out from the traditional installation pathway and executed directly from the peripheral device's storage medium, eliminating the need for host system installation mechanisms and administrative privileges.
Solution Approach 2:
All necessary code segments, device drivers, and encryption software are prepared and stored on the peripheral device's storage medium in advance. This preliminary preparation ensures that when the device connects to any computer (including restricted-access systems), everything needed for immediate operation is already in place, requiring no on-site installation or configuration.
3Reliability
If biometric authentication is implemented for encryption/decryption, then data security is enhanced, but authentication process complexity increases
Solution Approach 1:
The invention merges the biometric authentication function with the existing encryption/decryption process. The biometric sensor and authentication logic are integrated into the peripheral device controller, combining security verification with data access operations in a unified workflow that appears seamless to the user.
Solution Approach 2:
The peripheral device controller acts as an intermediary between the biometric sensor and the encryption/decryption operations. It mediates the authentication process by capturing biometric data, verifying it against stored templates, and automatically granting or denying access to decryption functions, thereby managing complexity internally while presenting a simple user interface.
Data Source
AI summary
A computer program for enabling secured, transparent encryption and decryption provides a user interface that allows a user to drag and drop files into and out of a secure repository and automatically encrypts files transferred into the repository and automatically decrypts files transferred out of the repository. The user can transfer file folders into the repository, wherein the program encrypts all of the files within the folder and retains the original file/folder structure, such that individual files can be moved within the repository, moved out of the repository, and opened or executed directly from the repository. The program requires the user to submit biometric data and grants access to the secure repository only if the biometric data is authenticated. The program generates an encryption key based at least in part on biometric data received from the user. Additionally, the program destroys the key after termination of each encryption/decryption session.


