Biometric USB Storage Secure Controller Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current USB mass storage devices lack robust authentication mechanisms, relying on the ISO 7816 protocol for smart card technology, which is limited, and do not provide adequate data integrity and user authentication.

Innovation Solution

A USB mass storage device incorporating a biometric circuit for user authentication and a secure controller that complies with the Trusted Computing Group (TCG) specification, using a serial communications interface such as RS232, I2C, or SPI, to provide secure data storage and authentication without relying on the ISO 7816-3 protocol.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If ISO 7816 protocol is used for smart card technology in USB mass storage devices, then basic authentication is provided, but data integrity and user authentication are inadequate

Engineering Contradiction:
Improveauthentication securityVSAvoidauthentication capability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent combines multiple authentication mechanisms (biometric circuit for fingerprint recognition, secure controller for cryptographic operations, and USB interface) into a single integrated device. This merging provides both strong authentication security through biometrics and versatile cryptographic functions, resolving the contradiction between reliability and adaptability in authentication capabilities.

Inventive Principle:
Principle #5Merging (Combining)

2Reliability

If biometric circuit and secure controller are integrated in USB mass storage device, then data integrity and secure authentication are enhanced, but device complexity increases

Engineering Contradiction:
Improvedata integrityVSAvoiddevice structure
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent integrates the biometric circuit, secure controller, and USB mass storage functionality into a single unified device. This consolidation enhances data integrity through hardware-based security while managing complexity by combining multiple functions into one device rather than using separate components.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The secure controller serves multiple functions including cryptographic operations, authentication verification, and data protection, making the device multi-functional. This universality allows the device to provide enhanced security capabilities without proportionally increasing complexity, as one component performs multiple security-related tasks.

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Adaptability or versatility

If multiple USB products are used for storage, authentication, and encryption, then functional requirements are met, but user convenience decreases

Engineering Contradiction:
Improvefunctional capabilityVSAvoiduser convenience
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The patent creates a universal USB mass storage device that incorporates biometric authentication, cryptographic encryption, and data storage functions in a single device. This multi-functionality eliminates the need for users to carry and manage multiple separate USB products for different purposes, significantly improving ease of operation while maintaining all required functional capabilities.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS9081946B2Secure mass storage device
Publication Date: 2015.07.14 STMICROELECTRONICS INT NV
  • US9081946B2 patent drawing
  • US9081946B2 patent drawing
  • US9081946B2 patent drawing

AI summary

A USB mass storage device includes a memory, USB interface and USB controller. A biometric circuit provides biometric authentication and a secure microcontroller is operatively connected to the biometric circuit and the USB controller and operative in accordance as a trusted platform and having a command set to access security functions and trust authentication of a user using the biometric circuit.