MFP Security Key Generation for Unauthorized Scan Prevention
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Multi-function print devices (MFPs) face a security loophole where physical documents scanned can be left insecure, allowing unauthorized re-scans or copies, as users may forget physical pages after scanning, enabling others to create unauthorized scans or copies.
Innovation Solution
The MFP generates a security key based on document and user characteristics, requiring authentication and authorization for subsequent scans or copies, preventing unauthorized access by requesting the security key before proceeding with the operation.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If network access to scanning functions is enabled for convenience, then ease of operation is improved, but security vulnerability increases allowing unauthorized re-scans and copies
Solution Approach 1:
The system generates a security key and provides it to the authorized user before the scanning operation is completed. This preliminary action ensures that the user receives the security key associated with their scanned document before any potential unauthorized attempts can occur, enabling them to prevent subsequent unauthorized access or re-scanning of the physical document.
Solution Approach 2:
A security key acts as an intermediary mechanism between the scanning system and the digital file. The security key is generated based on characteristics of the physical document and the scanning operation, and must be provided by the authorized user to allow subsequent access or re-scanning operations. This intermediary prevents unauthorized access while maintaining network functionality.
2Reliability
If security keys are generated and required for authentication, then document security is improved, but device complexity increases
Solution Approach 1:
Instead of implementing complex hardware security mechanisms, the system creates a digital copy or representation of the physical document's characteristics (fingerprint) and uses this to generate a security key. This approach maintains security while avoiding the need for complex additional hardware, as the security mechanism is implemented through software-based document characterization and key generation.
Data Source
AI summary
Examples disclosed herein relate to receiving an authentication credential from a user, generating a security key associated with a physical document selected for an image capture operation, receiving a request for a captured image file of the physical document, and providing the captured image file of the physical document upon determining that the request comprises the security key.


