BIOS Firmware Portable Storage Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current computer security methods rely on easily crackable passwords for user authentication, require device driver installation for portable storage devices, and necessitate additional chips or devices for secure access, leading to increased costs and compromised security.

Innovation Solution

A method that detects a portable storage device, reads and stores its information in BIOS firmware, generates and manages random passwords, and authenticates the device before loading the operating system, eliminating the need for remembered passwords, device drivers, and additional hardware.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If passwords are used for user authentication, then user identity can be confirmed, but security is weakened because passwords can be cracked easily

Engineering Contradiction:
ImprovesecurityVSAvoidpassword authentication
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent introduces a portable storage device as an intermediary authentication medium. Instead of directly using passwords, the system uses the portable device to store and verify authentication information, with the BIOS serving as the verification intermediary that compares device information against stored credentials, thereby strengthening security while maintaining ease of use

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If a portable storage device is used for security protection, then encrypted secure storage can confirm user identity, but device drivers must be pre-installed

Engineering Contradiction:
Improvesecurity protectionVSAvoiddriver installation
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The portable storage device is designed to be self-sufficient with built-in encryption capabilities and authentication mechanisms. The device automatically provides security functions without requiring external driver support, as the BIOS can directly communicate with the device's native authentication interface, eliminating the need for driver installation

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent makes the portable storage device universally compatible by implementing standard authentication protocols that work across different systems. The device serves multiple functions including storage, encryption, and authentication, while maintaining compatibility with standard BIOS interfaces, thus eliminating the need for device-specific drivers

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Reliability

If TPM technology is used to improve computer security, then cryptographic keys can be integrated, but user identity cannot be confirmed

Engineering Contradiction:
Improvecomputer securityVSAvoiduser identity confirmation
Core Design Contradiction:
ReliabilityVSMeasurement precision

Solution Approach 1:

The patent combines the cryptographic security of TPM technology with the identity confirmation capabilities of portable storage devices. The system integrates both functions into a unified authentication mechanism where the portable device provides both security key storage and user identity verification, eliminating the limitation of TPM alone

Inventive Principle:
Principle #5Merging (Combining)

4Reliability

If BIOS electromagnetic lock is used to control computer access, then internal locking can be achieved, but additional chips and devices are required

Engineering Contradiction:
Improvecomputer securityVSAvoidadditional hardware
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the authentication and control functions from separate hardware components and consolidates them into the portable storage device. The device contains embedded authentication logic and communication interfaces that directly interact with the BIOS, eliminating the need for separate electromagnetic locks and additional control chips

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS9230093B1Protection method and system for computer security
Publication Date: 2016.01.05 CELESTICA TECH CONSULTANCY SHANGHAI
  • US9230093B1 patent drawing
  • US9230093B1 patent drawing
  • US9230093B1 patent drawing

AI summary

Provided is a protection method and system for computer security. The protection method for computer security includes the steps of storing portable storage device information in the portable storage device as a first password; storing the first password in BIOS firmware; generating a second password and storing the second password in the portable storage device and the BIOS firmware; and comparing the first password and second password of the portable storage device with those of the BIOS firmware. Accordingly, protection for computer security can be achieved. According to the present invention, a password is not required to remember. It is unnecessary to install any device drivers. Computer security and a user's identity can be protected simultaneously, and no additional chip or device is required to achieve password authentication. Therefore, the present invention can simplify the protection steps, reduce costs, and enhance the performance of computer security protection.