Memory Controller Host Memory Data Encryption

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The security of data stored in semiconductor devices is compromised when nonvolatile memory devices are exposed, as they retain data even without a power supply, leading to potential unauthorized access.

Innovation Solution

A memory controller is introduced that includes a nonvolatile memory, a working memory, a central processing unit, and an encryption/decryption circuit, which allocates a free area in the host memory to store encrypted management data, allowing secure communication and bypassing encryption/decryption operations between the nonvolatile memory and the free area, thereby enhancing security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Duration of action of stationary object

If data is stored in nonvolatile memory device, then data retention without power supply is improved, but security against unauthorized access deteriorates

Engineering Contradiction:
Improvedata retentionVSAvoidunauthorized access
Core Design Contradiction:
Duration of action of stationary objectVSObject-affected harmful factors

Solution Approach 1:

The patent extracts the management data from the nonvolatile memory device and stores it in the host memory instead. This allows the nonvolatile memory to retain data while the management data (which contains security-critical information) is stored externally, preventing unauthorized access to the semiconductor device's internal memory structure.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent introduces an encryption/decryption circuit as an intermediary between the host memory and the nonvolatile memory device. This circuit encrypts management data before storing it in host memory and decrypts it when needed, providing security while maintaining data accessibility.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Object-affected harmful factors

If encryption/decryption operations are performed for all data transfers, then security is improved, but power consumption and transmission time increase

Engineering Contradiction:
Improvedata securityVSAvoidpower consumption
Core Design Contradiction:
Object-affected harmful factorsVSUse of energy by moving object

Solution Approach 1:

The patent applies encryption selectively rather than universally. Encryption is performed only for management data transfers between the nonvolatile memory device and host memory, while data transfers between host memory and the semiconductor device's internal memory can proceed without encryption. This localized approach maintains security where needed while reducing overall power consumption and transmission time.

Inventive Principle:
Principle #3Local quality

3Speed

If management data is stored in host memory, then access speed is improved, but security against external access deteriorates

Engineering Contradiction:
Improveaccess speedVSAvoidexternal access risk
Core Design Contradiction:
SpeedVSObject-affected harmful factors

Solution Approach 1:

The encryption/decryption circuit serves as a security intermediary between the host memory and the external environment. Management data is encrypted when stored in host memory and only decrypted when accessed through the controlled interface, allowing fast access while preventing unauthorized external access to the plaintext data.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS9864704B2Memory controller communicating with host, operating method thereof, and computing system including the same
Publication Date: 2018.01.09 SK HYNIX INC
  • US9864704B2 patent drawing
  • US9864704B2 patent drawing
  • US9864704B2 patent drawing

AI summary

A semiconductor device includes a nonvolatile memory storing encrypted management data, and a memory controller coupled between the nonvolatile memory and a host. The memory controller is allocated a free area in a host memory from the host and is suitable for storing the encrypted management data in the free area.