Flash Memory Access Control via Device Certificate Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current content protection systems, such as AACS, inadequately address copyright and usage control for content stored on flash memory devices like USB memory cards, lacking specifications for secure usage and access management.

Innovation Solution

An information processing device and method that includes a memory with a protected area for data recording, where access is restricted through a data processing unit verifying device certificates and access control information, ensuring controlled writing and reading based on access permissions.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If content is stored on flash memory devices without access control mechanisms, then ease of operation is improved, but copyright protection and usage control deteriorate

Engineering Contradiction:
Improveease of operationVSAvoidcopyright protection
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The storage medium is divided into a protected area and a non-protected area. The protected area stores content subject to access control, while the non-protected area stores other data. This segmentation allows differential access control policies to be applied, protecting copyrighted content while maintaining ease of operation for non-sensitive operations.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

A data processing unit acts as an intermediary between access requests and the protected content. This unit verifies device certificates and access control information before permitting access to the protected area, thereby enforcing copyright protection without requiring users to be aware of the complex security mechanisms.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If access control verification is implemented for protected areas, then copyright protection is improved, but device complexity increases

Engineering Contradiction:
Improvecopyright protectionVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system performs self-verification by automatically checking device certificates and access control information stored in the protected area against predefined criteria. This automated self-service approach reduces the need for complex external verification systems and manual intervention, thereby limiting the increase in device complexity.

Inventive Principle:
Principle #25Self-service

3Reliability

If a protected area with access restrictions is established, then copyright protection is improved, but ease of operation deteriorates

Engineering Contradiction:
Improvecopyright protectionVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The data processing unit serves as an intermediary that transparently handles access control verification. Users interact with the system as usual, while the intermediary automatically verifies device certificates and access control information in the background, thus maintaining ease of operation for authorized users without compromising copyright protection.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentEP2400491B1Information processing device, information processing method, and program
Publication Date: 2019.11.13 SONY GROUP CORP
  • EP2400491B1 patent drawingFigure 1A~1C
  • EP2400491B1 patent drawingFigure 2
  • EP2400491B1 patent drawingFigure 3

AI summary

An information processing device includes: a memory having a protected area which is a data recording area in which access restriction is set; and a data processing unit that determines accessibility in response to a request for accessing the protected area from an access requesting device, wherein the data processing unit verifies a device certificate received from the access requesting device and determines accessibility to the protected area based on access control information recorded in the device certificate.