Dynamic Passcode Authentication for Data Storage Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Data storage devices using static passcodes for authentication are vulnerable to unauthorized access, especially when shared among multiple users, as the static passcode remains unchanged, increasing the risk of exposure and compromise.

Innovation Solution

A data storage device that automatically generates a dynamically changing unlock passcode, synchronized with a user device, providing access only when the input passcode matches the generated passcode, enhancing security through time-based one-time passcodes and optional use of a predetermined passcode for two-factor authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If a static passcode is used for authentication, then the ease of operation is improved, but the security reliability deteriorates due to vulnerability to unauthorized access

Engineering Contradiction:
Improveease of authenticationVSAvoidsecurity reliability
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent applies the dynamics principle by transitioning from a static passcode to a dynamic passcode that changes automatically over time. The access controller generates new passcodes periodically, making the authentication mechanism adaptive and time-dependent, thereby resolving the contradiction between ease of operation and security reliability

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The patent implements periodic action by establishing a timer that automatically generates new passcodes at predetermined time intervals. This periodic regeneration of passcodes ensures that the authentication mechanism maintains high security reliability while preserving ease of operation through automated updates

Inventive Principle:
Principle #19Periodic action

2Device complexity

If a static passcode is used, then the device complexity is reduced, but the vulnerability to unauthorized access increases

Engineering Contradiction:
Improveauthentication system complexityVSAvoidvulnerability to unauthorized access
Core Design Contradiction:
Device complexityVSObject-affected harmful factors

Solution Approach 1:

The patent applies the self-service principle by implementing an automated passcode generation system where the access controller independently manages the authentication mechanism. The timer and passcode generation functions operate autonomously without requiring manual intervention, reducing the burden on users while enhancing security

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent implements parameter changes by modifying the temporal parameter of the passcode from static to dynamic. The passcode validity period is changed from infinite to limited, with automatic regeneration at predetermined intervals, thereby reducing vulnerability while maintaining acceptable system complexity

Inventive Principle:
Principle #35Parameter changes

3Ease of operation

If the passcode validity period is extended, then the ease of operation is improved, but the security reliability deteriorates due to increased exposure time

Engineering Contradiction:
Improveaccess convenienceVSAvoidsecurity reliability
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent applies periodic action by implementing a timer that regenerates passcodes at predetermined time intervals. This creates a balance where the passcode remains valid long enough for normal operation but automatically updates to maintain security, resolving the contradiction between access convenience and security reliability

Inventive Principle:
Principle #19Periodic action

Solution Approach 2:

The patent implements feedback by using the timer to continuously monitor and update the passcode validity status. The system provides implicit feedback through automatic passcode regeneration, ensuring that the authentication mechanism adapts to time-based security requirements while maintaining user convenience

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS11741214B2Passcode authentication based data storage device
Publication Date: 2023.08.29 SANDISK TECHNOLOGIES LLC
  • US11741214B2 patent drawing
  • US11741214B2 patent drawing
  • US11741214B2 patent drawing

AI summary

Data storage devices, methods, and systems for passcode authentication based on automatically generated and dynamically changing unlock passcodes are described. An access controller of a data storage device is configured to receive a first passcode based on an externally generated input passcode that is synchronized with internal generation of an unlock passcode by the access controller. The access controller generates a second passcode based on the internally generated unlock passcode, and unlocking the data storage device is responsive to the first passcode matching the second passcode.