Memory Controller Biometric Security Activation
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing storage devices cannot independently activate their security functions when connected to host devices that do not support the necessary security commands, leading to potential data security risks.
Innovation Solution
A memory controller that includes a security access control module to convert biometric authentication data into security configuration data, allowing for authority registration and authentication, and a data processing unit to encrypt or decrypt user data based on access permissions, enabling the storage device to operate securely even without support from the host device.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If the storage device relies on host device commands to activate security functions, then the security function can be controlled by the host, but the security function cannot be activated when the host does not support the necessary security commands
Solution Approach 1:
The storage device performs self-activation of security functions through an independent authentication module that can autonomously authenticate users and activate security features without requiring commands from the host device. This allows the storage device to maintain security functionality even when connected to host devices that do not support security commands.
2Reliability
If the storage device implements independent security activation, then security function reliability is improved, but the device complexity increases due to additional authentication modules
Solution Approach 1:
The authentication module is extracted as a separate, independent component within the storage device. This modular design allows the authentication functionality to be isolated and operated independently from the main storage controller, reducing the complexity impact on other system components while maintaining reliable security activation.
3Reliability
If biometric authentication data is converted into security configuration data, then the security access control is enhanced, but the data processing complexity increases
Solution Approach 1:
The system transforms biometric authentication data into security configuration data by changing the data format and parameters according to security standard protocols. This parameter transformation enables the storage device to maintain secure access control while managing data processing complexity through standardized conversion procedures.
Data Source
Figure 1
Figure 2A
Figure 2B
AI summary
A memory controller (110) and a storage device (100) including the same are disclosed. The memory controller is for controlling a nonvolatile memory (120), and includes a security access control module configured to convert biometric authentication data received from a biometric module (300) into security configuration data having a data format according to a security standard protocol. The security access module is further configured to perform, based on the security configuration data, at least one of authority registration and authority authentication of a user authority set for an access control of a secure area of the nonvolatile memory, where encrypted user data is stored in the secure area. The memory controller further includes a data processing unit configured to, based on an access to the secure area being permitted, encrypt user data received from a host device (200) or decrypt the encrypted user data read from the secure area.