Memory Controller Digital Signature Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

As cloud data storage increases, users are concerned about data security and the lack of transparent management and verification of data operations in cloud services, making it difficult to ensure that data operations such as erasure and disposal are performed correctly and securely.

Innovation Solution

A memory system with a management information generating unit that creates command information and digital signatures for each operation, using a secret key to ensure the integrity of data operations, allowing users and third parties to verify if operations were performed correctly by generating and storing operation logs with digital signatures.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If cloud services store and manage data without user control, then data storage efficiency and service scalability are improved, but data security and user verification capability deteriorate

Engineering Contradiction:
Improvedata storage efficiencyVSAvoiddata security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent implements a feedback mechanism where the memory system generates operation logs with digital signatures that are returned to the host (user). This allows users to verify data operations performed in the cloud, creating a closed-loop verification system that maintains security while enabling scalable cloud storage services.

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The patent introduces digital signatures as an intermediary mechanism between the memory system and the host. These cryptographic signatures serve as a trusted mediator that proves data operations were performed correctly without requiring the host to directly control or monitor every operation in the cloud, thus maintaining security while enabling service scalability.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Measurement precision

If the memory system generates detailed operation logs with digital signatures for every command, then data operation verification capability is improved, but system complexity and processing overhead increase

Engineering Contradiction:
Improvedata operation verification capabilityVSAvoidsystem complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent extracts only the essential verification information (digital signatures and key operation details) from the complete operation process and returns it to the host. This selective extraction provides sufficient verification capability without requiring the host to manage or process the entire complex operation log, thus reducing system complexity while maintaining verification precision.

Inventive Principle:
Principle #2Taking out (Extraction)

3Reliability

If digital signatures are generated for every command using a secret key, then operation log integrity and forgery prevention are improved, but processing time and computational resources increase

Engineering Contradiction:
Improveoperation log integrityVSAvoidprocessing time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent performs preliminary actions by generating digital signatures at the point of operation execution within the memory system, rather than requiring post-processing verification. This preliminary signature generation ensures integrity upfront, reducing the need for repeated verification computations and thereby reducing overall processing time despite the initial computational cost.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS9450761B2Memory system and method of generating management information
Publication Date: 2016.09.20 KIOXIA CORP
  • US9450761B2 patent drawing
  • US9450761B2 patent drawing
  • US9450761B2 patent drawing

AI summary

According to one embodiment, a memory system includes a host interface, a first storage unit which stores data in a nonvolatile manner, and a memory controller. The memory controller includes a management information generating unit which generates command information for every command received from a host through the host interface and a digital signature calculating unit which generates a digital signature from the command information using a secret key. The management information generating unit generates management information which contains the command information and the digital signature for the every command.