Management Device for Secure Key Duplication Between Terminals

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing authentication methods require users to manually manage and backup key information, which is cumbersome and insecure, especially when a terminal is lost or changed.

Innovation Solution

A management device that sets up a secure session between two devices, transfers authentication information from a first device to a second device upon successful authentication, and duplicates key information from the first device to the second device for secure backup.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If key information is manually backed up on paper or through manual input, then backup capability is achieved, but user burden and security risk increase

Engineering Contradiction:
Improvebackup capabilityVSAvoiduser burden
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The system enables automatic key information backup through machine-to-machine communication between terminals. The backup process is initiated and executed automatically without requiring users to manually write down or input key information, thus eliminating user burden while maintaining reliable backup capability

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent replaces manual mechanical operations (writing on paper, manual input) with automated electronic communication protocols. The key information is transferred digitally between terminals through structured communication sessions, eliminating the need for physical paper handling and manual data entry

Inventive Principle:
Principle #28Mechanics substitution (Replace mechanical system)

2Ease of operation

If key information is transferred between terminals, then backup convenience is improved, but security risk increases

Engineering Contradiction:
Improvebackup convenienceVSAvoidsecurity risk
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The system performs preliminary authentication exchanges between terminals before any key information transfer. Mutual authentication protocols are executed in advance to verify terminal identities, ensuring that only authorized terminals can receive backup key information, thus maintaining security while enabling convenient backup

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces structured communication protocols and authentication mechanisms as intermediaries between the key information source and destination terminals. These intermediary layers verify credentials and control the transfer process, preventing unauthorized access while maintaining smooth backup operations

Inventive Principle:
Principle #24Intermediary (Mediator)

3Productivity

If authentication information is transferred to enable backup, then backup efficiency is improved, but authentication security may be compromised

Engineering Contradiction:
Improvebackup efficiencyVSAvoidauthentication security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The authentication process is segmented into distinct phases: initial authentication verification, authentication information transfer, and key information duplication. Each phase is independently controlled and verified, allowing efficient automation while maintaining security checks at each stage

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The system maintains continuous authenticated communication sessions between terminals during the backup process. Once authentication is established, the session remains active for the duration of the key transfer, eliminating repeated authentication overhead while ensuring security through persistent verified connection

Inventive Principle:
Principle #20Continuity of useful action

Data Source

PatentUS20250202709A1Management device, management method, and management program
Publication Date: 2025.06.19 SONY GROUP CORP
  • US20250202709A1 patent drawing
  • US20250202709A1 patent drawing
  • US20250202709A1 patent drawing

AI summary

A management device (100) according to an aspect of the present disclosure includes: a communication control unit (133) that sets up a session between a first device and a second device; a transfer unit (134) that, upon acquisition of a first authentication result indicating that authentication of an identity of a user has been executed in the first device, transfers, to the second device, authentication information used in authentication processing in the first device; and a duplication unit (135) that, upon acquisition of a second authentication result indicating that the authentication of the identity of the user has been executed by the second device using the transferred authentication information, duplicates key information corresponding to the first authentication result and stored in the first device to the second device.