Information Processing Apparatus Hibernation Data Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing information processing apparatuses with hibernation functions do not adequately differentiate between confidential and non-confidential data during the hibernation process, potentially compromising the security of sensitive information when stored on nonvolatile storage devices.

Innovation Solution

Incorporating a classification unit that distinguishes between confidential and non-confidential information by using a second secure nonvolatile storage device with encryption or password locking functions, while a first storage unit handles less sensitive data, ensuring secure storage and retrieval during hibernation and startup processes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If all information from memory is stored on a single nonvolatile storage device during hibernation, then the hibernation function operates simply and quickly, but confidential information may be accessed unauthorizedly if the storage device is removed

Engineering Contradiction:
Improvedata securityVSAvoidstorage system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The nonvolatile storage device is divided into two distinct storage units: a first storage unit for confidential information and a second storage unit for other information. This segmentation allows confidential data to be isolated and protected with additional security measures while maintaining separate access paths, thereby improving data security without requiring a completely new storage architecture

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The classification unit acts as an intermediary between the memory and the storage units, determining which information belongs in the first storage unit and which belongs in the second. This intermediary component enables automated classification and routing of data based on confidentiality criteria, resolving the complexity of manual classification while enhancing security

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If confidential information is separated and stored on a secure storage device with encryption or password locking, then unauthorized access is prevented, but the storage system becomes more complex and requires additional security mechanisms

Engineering Contradiction:
Improveconfidential data protectionVSAvoidsecurity mechanism complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

Different security qualities are applied to different storage units: the first storage unit implements encryption or password locking mechanisms specifically for confidential information, while the second storage unit stores other information with standard access controls. This localized application of security measures protects sensitive data without unnecessarily complicating the storage of non-sensitive information

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The classification unit performs preliminary classification of information before storage, identifying confidential information and routing it to the secure first storage unit before the hibernation process completes. This preliminary action ensures that security measures are applied only where needed, reducing overall system complexity while maintaining protection

Inventive Principle:
Principle #10Preliminary action

3Reliability

If a classification unit is introduced to distinguish between confidential and non-confidential information, then data security is improved, but the system complexity and processing time increase

Engineering Contradiction:
Improveinformation securityVSAvoidhibernation process time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The classification unit utilizes existing metadata or attributes already associated with files and data structures in the memory to automatically classify information as confidential or non-confidential. By leveraging existing data characteristics rather than requiring deep content analysis, the system achieves security classification with minimal additional processing time

Inventive Principle:
Principle #25Self-service

Data Source

PatentUS10216457B2Information processing apparatus and method for preserving data
Publication Date: 2019.02.26 FUJIFILM BUSINESS INNOVATION CORP
  • US10216457B2 patent drawing
  • US10216457B2 patent drawing

AI summary

An information processing apparatus includes a controller, a first storage unit, a second storage unit, and a classification unit. The controller stores pieces of information retained in a memory on a nonvolatile storage device and, upon startup, makes the information processing apparatus return to a state before power-down. The first storage unit is part of the nonvolatile storage device and stores some pieces of information among the pieces of information retained in the memory. The second storage unit is part of the nonvolatile storage device and stores pieces of information different from those stored on the first storage unit among the pieces of information retained in the memory. The classification unit classifies the pieces of information retained in the memory. The controller stores the pieces of information retained in the memory on the first storage unit or the second storage unit in accordance with classification performed by the classification unit.