Network Device Memory Erasure Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
There is a need for a reliable method to erase the memory of network devices such as routers, switches, and modems, due to security risks associated with stored data, but existing methods lack universality and standardization.
Innovation Solution
A method involving a data erasure procedure that includes requesting and comparing responses from the network device to determine the success of the erasure, using a system that can select appropriate erasure procedures and expected responses based on the device's information, and recording the outcome for audit trails.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If proprietary erase commands or optional protocol methods are used, then data erasure can be performed on specific devices, but universality and reliability of erasure across different network devices cannot be ensured
Solution Approach 1:
The patent implements a universal data erasure system that works across multiple network device types and manufacturers by defining a standardized erasure command format that can be executed on diverse devices including routers, switches, and modems, eliminating the need for device-specific proprietary commands
Solution Approach 2:
The patent employs a verification mechanism where the system sends test commands to the network device after erasure and checks the response to confirm whether data has been successfully erased, providing feedback to ensure reliable erasure outcomes across different device implementations
2Ease of operation
If default passwords are used for access, then ease of operation is improved, but security is compromised due to generic credentials being easily accessible
Solution Approach 1:
The patent performs data erasure as a preliminary action before the network device is deployed or before access credentials are compromised, ensuring that even if default passwords remain on the device, the sensitive data they protect has already been removed
Solution Approach 2:
The patent converts the potential harm of default passwords being easily accessible into a benefit by using the accessible default credentials to execute the erasure command, then the same default credentials become irrelevant since the protected data has been removed
3Ease of operation
If invasive memory reading methods are used, then access to stored data is achieved, but security protection is bypassed
Solution Approach 1:
The patent erases data from the network device memory as a preliminary action before any invasive reading methods could be applied, ensuring that even if physical access to the memory is obtained later, no sensitive data remains to be extracted
Solution Approach 2:
The patent rushes through the data erasure process quickly and comprehensively across all memory locations, preventing any opportunity for invasive reading methods to access sensitive information before erasure occurs
Data Source
AI summary
A method for erasing data stored from memory of a network device comprises erasing stored data from the memory of the network device and requesting data from the memory of the network device after completion of the data erasure procedure or accessing the memory of the network device after completion of the data erasure procedure. The method further comprises determining the outcome of the data erasure procedure based at least in part on: the results of a comparison between a response received from the network device and an expected response which indicates a successful erasure of the memory of the network device; or a comparison between any contents of the memory of the network device after completion of the data erasure procedure and expected contents of the memory after the data erasure procedure which are indicative of a successful erasure of the memory of the network device.


