Hardware Token Unlocking Private Storage Partition

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing data security methods, particularly in storage devices, are vulnerable to hacking and password compromise, making it difficult to protect private data from unauthorized access.

Innovation Solution

A system that uses a hardware token to store a private key, which is detected and used to unlock a private partition on a storage device, keeping the partition invisible to the operating system when locked, thereby enhancing data security by providing an additional layer of protection beyond traditional software-based solutions.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If software-based password protection is used, then ease of operation is improved, but security reliability deteriorates due to hacking and password compromise

Engineering Contradiction:
Improveease of operationVSAvoidsecurity reliability
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

A hardware token serves as an intermediary device that stores cryptographic keys and mediates access to the encrypted partition. The token reader detects the hardware token and obtains cryptographic keys from it, acting as a secure intermediary between the user and the private data, preventing direct software-based password attacks

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If hardware token with private key is used, then security reliability is improved, but device complexity increases

Engineering Contradiction:
Improvesecurity reliabilityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system segments security functions into separate components: the hardware token stores cryptographic keys, the token reader detects and obtains keys from the token, and the partition controller manages encryption and decryption. This segmentation allows each component to be optimized independently while maintaining overall system security

Inventive Principle:
Principle #1Segmentation

3Reliability

If private partition is kept invisible when locked, then security reliability is improved, but ease of operation worsens due to additional unlocking steps

Engineering Contradiction:
Improvesecurity reliabilityVSAvoidease of operation
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The hardware token automatically provides cryptographic keys when detected by the token reader, eliminating the need for manual password entry. The system performs self-service authentication through hardware-based key provision, reducing operational complexity while maintaining security

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS10037286B2Private partition with hardware unlocking
Publication Date: 2018.07.31 RED HAT INC
  • US10037286B2 patent drawing
  • US10037286B2 patent drawing
  • US10037286B2 patent drawing

AI summary

Systems and methods for controlling access to a private partition on a storage device are disclosed for. An example system includes a token reader that detects a hardware token storing a private key and obtains the private key stored on the hardware token. The system also includes a partition controller that determines whether the private key unlocks a private partition on a storage device. In response to determining that the private key unlocks the private partition, the partition controller unlocks the private partition on the storage device. The private partition is invisible to an operating system executing in the computer system when the private partition is locked.