Digital File Access Control Using Removable Physical Key

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current cryptographic techniques and physical keys are inadequate for securely transmitting and controlling access to digital files, as they rely on the strength of cryptographic keys and lack integration with data files to limit access based on physical keys, leading to security compromises and unauthorized access.

Innovation Solution

A method and system that encrypt digital files with a header containing access identity data corresponding to a removable physical key, allowing decryption only if the key's identity matches the header's access identity, ensuring secure transmission and access control by using a key interface to decrypt and compare the physical key's identity data with the header's access identity.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If cryptographic techniques are used to secure digital files, then data can be reconstituted only with proper key information, but security is still compromised if key data is accessed or copied

Engineering Contradiction:
ImprovesecurityVSAvoidunauthorized access
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The system segments the access control mechanism into two distinct parts: a physical key device that cannot be copied and cryptographic key data stored in read-only memory. This segmentation ensures that even if the cryptographic keys are exposed, the physical key device remains the ultimate gatekeeper for access, thereby maintaining security without relying solely on the strength of cryptographic keys

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a physical key device as an intermediary between the user and the digital file access. This physical device serves as a mediator that must be present and authenticated before any cryptographic decryption can occur, adding an intermediate security layer that prevents direct access even if cryptographic vulnerabilities exist

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If physical keys are used for computer access, then unique identification is provided, but they are not adapted to limit access to secure data files

Engineering Contradiction:
Improveaccess controlVSAvoidfile access limitation
Core Design Contradiction:
Ease of operationVSAdaptability or versatility

Solution Approach 1:

The physical key device is designed with multi-functionality, serving both as a general computer access authentication mechanism and as a specific gatekeeper for encrypted digital files. The device contains cryptographic capabilities that enable it to directly authenticate against file encryption schemes, making it adaptable to file access control without requiring separate mechanisms

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Reliability

If proxy video files are used for multimedia transmission, then security is somewhat improved through watermarks and compression, but files can still be easily disseminated and pirated

Engineering Contradiction:
ImprovesecurityVSAvoidpiracy
Core Design Contradiction:
ReliabilityVSObject-generated harmful factors

Solution Approach 1:

The system performs preliminary encryption of the digital file using the physical key device's cryptographic capabilities before transmission. This preliminary security measure ensures that even if the file is intercepted or copied during transmission, it remains inaccessible without the corresponding physical key device, preventing piracy at the source rather than relying on post-distribution watermarking

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS9047478B2Electronic file access control system and method
Publication Date: 2015.06.02 NBCUNIVERSAL MEDIA LLC
  • US9047478B2 patent drawing
  • US9047478B2 patent drawing
  • US9047478B2 patent drawing

AI summary

A method for controlling access to a digital file includes: associating digital content with a header, the header including data identifying a permitted access identity corresponding to a physical key removable from a reading computer. The method also includes encrypting the header and the digital content, the header being susceptible to decryption separate from the content by a key interface.