Hardware-Generated Dynamic Identifier for Secure Device Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing electronic devices rely on static device identifiers, which are not dynamic, secure, or persistent, making them vulnerable to tampering and authentication issues in secure environments.

Innovation Solution

A hardware-generated dynamic identifier (HGDI) system that uses a hardware-encoded internal private key and a key generation engine to produce a globally unique, pseudo-unique identifier, which is persistent across reboots and system changes, ensuring secure and tamper-proof identification.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If static device identifiers are used, then device identification is simple, but security and tamper resistance are weak

Engineering Contradiction:
ImprovesecurityVSAvoididentification system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements nested cryptographic key structures where a root key is embedded in hardware, derivative keys are generated from the root key, and device identifiers are generated from derivative keys. This nested structure provides multiple layers of security while maintaining manageable complexity through hierarchical organization.

Inventive Principle:
Principle #7Nested doll (Nesting)

Solution Approach 2:

The patent introduces derivative keys as intermediaries between the embedded root key and the device identifiers. These intermediary keys enable secure identifier generation without exposing the root key, thus enhancing security while keeping the system architecture organized and manageable.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If dynamic identifiers are generated, then security and persistence are improved, but device complexity increases

Engineering Contradiction:
Improveidentifier persistenceVSAvoidkey generation system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent performs preliminary actions by embedding the root key in hardware during manufacturing and pre-establishing the key derivation relationships. This preliminary setup enables persistent identifier generation without requiring complex runtime decisions, reducing operational complexity while ensuring reliability.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements self-service through automated key derivation and identifier generation processes. The system automatically generates derivative keys and device identifiers based on the embedded root key without requiring manual intervention, maintaining persistence and security while minimizing operational complexity.

Inventive Principle:
Principle #25Self-service

3Reliability

If hardware-encoded keys are used, then tamper resistance is improved, but manufacturing complexity increases

Engineering Contradiction:
Improvetamper resistanceVSAvoidhardware encoding complexity
Core Design Contradiction:
ReliabilityVSEase of manufacture

Solution Approach 1:

The patent uses disposable or single-use cryptographic key embedding during manufacturing. The root key is embedded in a use-once manner in the hardware, ensuring tamper resistance without requiring complex reusable key management mechanisms, thus balancing security with manufacturing feasibility.

Inventive Principle:
Principle #27Cheap short-living objects (Disposable)

4Measurement precision

If globally unique identifiers are generated, then authentication accuracy is improved, but system complexity increases

Engineering Contradiction:
Improveidentifier uniquenessVSAvoididentifier generation system complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent achieves globally unique identifiers by changing cryptographic parameters through key derivation. Different derivative keys are generated from the same root key using cryptographic transformations, producing unique identifiers without requiring complex coordination or centralized management, thus balancing uniqueness with system simplicity.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS10567170B2Hardware-generated dynamic identifier
Publication Date: 2020.02.18 MCAFEE LLC
  • US10567170B2 patent drawing
  • US10567170B2 patent drawing
  • US10567170B2 patent drawing

AI summary

In an example, there is disclosed an electronic apparatus, comprising: a hardware-encoded internal private key; and one or more logic elements comprising a key generation engine to: receive an third-party key; and operate on the third-party key and the internal private key to generate a hardware-generated dynamic identifier (HGDI). There is also disclosed a method of providing an HGDI engine, and one or more computer-readable mediums having stored thereon executable instructions for providing an HGDI.