Computer Password Reset via Encrypted Hardware Key
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current access control methods for computers are inadequate, as they lack effective validation of the recipient's identity during initial setup and do not provide a secure way to reset hardware passwords, leading to potential misuse of stolen or misplaced devices.
Innovation Solution
A system that generates a random hardware password and a unique system identifier, which is encrypted and stored on the device, allowing access only when the correct key pair is provided, enabling secure password reset through user authentication.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If a separate power-on password is dispatched outside the computerized device, then access control is provided, but the password can be intercepted and validation is not fail proof
Solution Approach 1:
The patent merges the password storage and verification functions into the computerized device itself. The password is not dispatched separately but is stored within the device's memory, and the verification process is integrated into the device's boot sequence, eliminating the vulnerability of separate password transmission.
Solution Approach 2:
The patent introduces a verification mechanism that acts as an intermediary between the user and the system. This intermediary validates the user's identity through a challenge-response protocol where the device generates a challenge, the user responds, and the device verifies the response against stored data, providing secure authentication without exposing the password.
2Reliability
If a hard drive password is implemented, then access to the drive is controlled, but the system becomes inaccessible if the password is forgotten and the drive cannot be reset
Solution Approach 1:
The patent implements a self-service password reset mechanism. When the correct identification code is entered, the system automatically generates a new password and provides instructions for setting it, allowing the user to reset the password without external intervention. This eliminates the need for complex manual reset procedures.
Solution Approach 2:
The patent stores identification codes and password reset capabilities in advance within the device's memory during manufacturing. This preliminary setup enables the device to autonomously perform password reset operations when needed, without requiring external tools or complex procedures.
3Ease of operation
If no startup password is set, then the computer is easy to use initially, but the recipient's identity is not validated and theft is allowed
Solution Approach 1:
The patent performs the password setup action in advance during the device's initial configuration phase. The device automatically generates a default password and stores it in memory before being delivered to the user. This preliminary action ensures that identity validation is already in place without complicating the user's initial experience.
Solution Approach 2:
The patent implements a self-service password setting mechanism where the device automatically generates and stores the initial password without requiring user intervention. The user can later reset the password through a simple process involving identification code entry, maintaining ease of use while ensuring security.
Data Source
AI summary
The present invention relates to a method for method or system which is able to control access to a new computer user password reset. The system is preloaded with a random password that does not needed to be known by anyone. There are two main situations in which this method will be used. The first situation involves a locally managed password and account where the user does not log in to a domain. The second situation involves remote management, where the user logs in to a domain.


