Memory Device Key Management via ECC Parity Data

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

There is a need for enhanced security measures in memory devices, particularly in systems that store sensitive information, to protect against unauthorized access and ensure authentication between memory devices and controllers, especially in the context of internet and network transactions.

Innovation Solution

A method and system for a memory device that uses Error Check and Correction (ECC) encoding to generate and store parity data corresponding to an original key, allowing for secure key management, including deletion and reproduction of the original key, to ensure secure access and authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If the original key is stored in the memory device for authentication, then authentication between controller and memory device can be performed, but the security is compromised because the key can be extracted by unauthorized access

Engineering Contradiction:
Improveauthentication reliabilityVSAvoidunauthorized key acquisition
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent extracts the key data from secure storage and transforms it into parity data through ECC encoding. The original key is removed from the memory device, and only its encoded representation (parity data) remains, making it impossible to extract the original key while preserving authentication functionality

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The patent changes the parameter representation of the key from its original form to an encoded form using ECC parity data. This parameter transformation allows the system to maintain authentication reliability while eliminating the security vulnerability of storing the original key

Inventive Principle:
Principle #35Parameter changes

2Object-affected harmful factors

If the original key is deleted for security, then unauthorized key acquisition is prevented, but the system cannot perform authentication operations

Engineering Contradiction:
Improveunauthorized key acquisition preventionVSAvoidauthentication function
Core Design Contradiction:
Object-affected harmful factorsVSReliability

Solution Approach 1:

The patent creates a functional copy of the key's authentication capability through parity data. The parity data serves as a surrogate that can be processed to perform authentication operations without revealing the original key, thus maintaining both security and functionality

Inventive Principle:
Principle #26Copying

Solution Approach 2:

The patent introduces parity data as an intermediary between the deleted original key and the authentication process. This intermediary allows authentication operations to proceed without requiring the original key to be present, resolving the contradiction between deletion and functionality

Inventive Principle:
Principle #24Intermediary (Mediator)

3Object-affected harmful factors

If parity data is generated and stored for key reproduction, then key security is enhanced through deletion of original key, but the device complexity increases

Engineering Contradiction:
Improvekey securityVSAvoidkey management process
Core Design Contradiction:
Object-affected harmful factorsVSDevice complexity

Solution Approach 1:

The patent makes the ECC encoding mechanism serve multiple functions: it provides error correction for data integrity and simultaneously transforms the key into a secure parity representation. This multi-functionality reduces the need for separate key management mechanisms, offsetting the added complexity

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS10438684B2Memory device, memory system, and method of operating the memory system
Publication Date: 2019.10.08 SAMSUNG ELECTRONICS CO LTD
  • US10438684B2 patent drawing
  • US10438684B2 patent drawing
  • US10438684B2 patent drawing

AI summary

A method of operating a memory system, having a non-volatile memory device, includes processing a response to a first request toward the memory device by using an original key, in response to the first request, generating and storing first parity data corresponding to the original key, and deleting the original key.