Location-Based Memory Access Control for Mobile Storage Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Mobile information terminals, such as POS systems, face challenges in ensuring data security and preventing unauthorized use as they perform multiple functions across different locations, leading to concerns about information leakage and malicious operations.

Innovation Solution

Implementing a memory system with first and second memory regions and a controller that restricts access based on positional information, allowing access to specific memory regions only when the device is in designated areas, thereby preventing unauthorized use and information leakage.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If mobile information terminals perform multiple functions across different locations, then the adaptability and versatility of the device is improved, but the risk of unauthorized use and information leakage increases

Engineering Contradiction:
Improvedevice functionality across locationsVSAvoiddata security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent divides the memory device into multiple memory regions (first memory region and second memory region) with different access permissions. The controller selectively enables or disables access to specific memory regions based on the host device's location, ensuring that sensitive data in the second memory region is only accessible when authorized conditions are met, while the first memory region remains accessible for normal operations.

Inventive Principle:
Principle #3Local quality

Solution Approach 2:

The patent introduces a location management system and GPS receiver as intermediary components that mediate between the host device and the memory device. The location management system receives location information, determines whether the host device is in an authorized location, and controls the controller's access permissions accordingly, acting as a security gatekeeper.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If access control based on location is implemented, then data security is improved, but the device complexity increases

Engineering Contradiction:
Improvedata securityVSAvoidmemory system structure
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The controller in the memory device performs multiple functions: it manages normal read/write operations to the memory device, controls access permissions to different memory regions, and responds to location-based access requests. This multi-functionality reduces the need for separate dedicated security hardware, thereby limiting the increase in device complexity while maintaining strong security controls.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS10621373B2Data security management based on device locations and connection states
Publication Date: 2020.04.14 KIOXIA CORP
  • US10621373B2 patent drawing
  • US10621373B2 patent drawing
  • US10621373B2 patent drawing

AI summary

A mobile storage device includes first and second memory regions in one or more semiconductor memory devices, a positioning system configured to generate positional information indicating a position of the mobile storage device, and a controller. The controller is configured to allow access to the first memory region and prohibit access to the second memory region when the positional information indicates that the position of the mobile storage device is within a first area, and prohibit access to the first memory region and allow access to the second memory region when the positional information indicates that the position of the memory storage device is within a second area, which is different from and does not overlap with the first area.