Franking Machine Security Module Authorization Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Franking machines with complex security modules are underutilized, as existing solutions require direct connection to a specific data processing device for secured services, limiting the exploitation of security-related capacities and increasing certification costs.
Innovation Solution
A method where the security module verifies authorization for requested secured services before provision, allowing any data processing device to access secured services without a specific connection, enabling binding to users, groups, or procedural applications, and reducing storage needs by using customizable authorization criteria.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If the security module is connected to a specific data processing device for secured services, then the security module can provide secured services, but the utilization of security module capacities is limited and device complexity increases
Solution Approach 1:
The security module is designed to provide secured services to multiple different data processing devices through a standardized interface, rather than being tied to a single device. This universal design allows the same security module to serve various functions and devices, thereby increasing its utilization and reducing the need for multiple specialized connections.
2Reliability
If multiple different security modules are used for different certification requirements, then certification can be provided, but certification costs increase
Solution Approach 1:
A single security module design is created that can fulfill multiple certification requirements through configurable authorization criteria, eliminating the need to manufacture and certify multiple different security module variants. This reduces certification costs while maintaining reliability across different applications.
Solution Approach 2:
The security module uses configurable authorization criteria that can be adjusted to meet different certification requirements without changing the hardware or fundamental design. By changing parameters such as authorization rules and service types, the same module can be adapted for different purposes, reducing the need for multiple certified variants.
3Ease of operation
If the security module provides secured services without authorization verification, then service provision is simplified, but security and control are compromised
Solution Approach 1:
The system performs authorization verification before providing secured services, establishing control criteria in advance. This preliminary authorization check ensures that only authorized data processing devices can access secured services, maintaining security while keeping the service provision process simple through automated verification.
Data Source
AI summary
In a method and an arrangement for provision of at least one secured service via a security module of a franking machine for at least one procedure for data processing that is executed in a data processing device that can be connected with the franking machine, the procedure requests a secured first service from the security module in a request step; and the security module provides the first service in a provision step subsequent to the request step. The security module verifies an authorization to request the first service via the procedure in a verification step preceding the provision step.


