Flash Memory Read Access Control via Integrated Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Flash memory systems lack effective read access control mechanisms to securely manage and isolate sensitive information across various applications and partitions, particularly in portable electronic devices, which can lead to unauthorized access and data protection issues.

Innovation Solution

A read access control system is implemented within a flash device, utilizing an integrated controller, random number generator, secure hash generator, and signature verifier to authenticate operations and control read access through static or dynamic modes, ensuring that only authenticated requests are granted access to memory ranges, thereby isolating sensitive information.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If read access control mechanisms are implemented in flash memory systems, then data security and protection of sensitive information are improved, but device complexity increases due to additional authentication components and control logic

Engineering Contradiction:
Improvedata securityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent combines multiple authentication functions (random number generation, secure hash generation, signature verification) into a single integrated controller within the flash memory device. This merging approach provides comprehensive read access control and data security while minimizing the increase in device complexity by consolidating security features into one unified component rather than adding separate discrete security modules.

Inventive Principle:
Principle #5Merging (Combining)

2Reliability

If static or dynamic read access control modes are implemented, then isolation of sensitive information across applications and partitions is improved, but ease of operation deteriorates due to authentication requirements

Engineering Contradiction:
Improveinformation isolationVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent implements both static and dynamic read access control modes that can be selected based on the security requirements of different applications and data partitions. The dynamic mode allows the controller to adjust access control behavior in real-time based on authentication results and security policies, providing flexible information isolation while managing operational complexity through automated control logic rather than manual configuration.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The integrated controller automatically performs authentication operations and access control decisions without requiring manual intervention from the host system or user. The controller self-manages the authentication process, verifies signatures, and enforces read access policies, thereby improving information isolation while minimizing the burden on system operators and maintaining ease of operation at the application level.

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS7613891B2Methods and apparatus for providing a read access control system associated with a flash device
Publication Date: 2009.11.03 INTEL NDTM US LLC
  • US7613891B2 patent drawing
  • US7613891B2 patent drawing
  • US7613891B2 patent drawing

AI summary

A flash memory based processing apparatus including, among other things, an integrated controller to authenticate various operations, such as read, write, patch, and key operations, and directly control read access to partitions of the memory array of the flash device via operations in various read access modes. Other embodiments may be described and claimed herein.