Peripheral Storage for Confidential Data Security
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Confidential data stored on portable electronic devices is vulnerable to unauthorized access when lost or stolen, as it can be accessed by other users or devices without proper security measures.
Innovation Solution
Implementing a peripheral device that communicatively couples with the electronic device to store confidential data in an encrypted format, disabling local storage and providing a token for network access security, ensuring data is inaccessible without the peripheral device key.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If confidential data is stored locally on the electronic device, then data accessibility is improved, but security against unauthorized access deteriorates
Solution Approach 1:
The patent extracts confidential data from the electronic device's local storage and relocates it to a secure element or separate secure storage module. This physical and logical separation removes the vulnerable data from the general-purpose storage system while maintaining controlled access through the electronic device, thus preserving accessibility while eliminating unauthorized access risks.
Solution Approach 2:
The patent introduces a secure element or trusted execution environment as an intermediary between the electronic device and confidential data. This intermediary layer acts as a mediator that allows the electronic device to access and process confidential data when needed, while preventing direct access to the raw data, thereby maintaining both accessibility and security.
2Adaptability or versatility
If confidential data is stored on a removable storage device, then data portability is improved, but security control deteriorates
Solution Approach 1:
The patent implements a nested storage architecture where confidential data is stored within a secure container or encrypted volume that resides on the removable storage device. This nested structure allows the data to be portable with the device while requiring authentication and authorization mechanisms to access the inner confidential data layer, thus maintaining both portability and access control.
Solution Approach 2:
The patent changes the security parameters of the removable storage device by implementing full-disk encryption, file-level encryption, or secure boot mechanisms. These parameter changes transform the storage device from a simple passive storage medium into an actively secured storage system that maintains access control policies even when detached from the electronic device, enabling portability without sacrificing security.
Data Source
AI summary
A system is described for managing storage and access of confidential data downloaded from a server (e.g., an enterprise data server) onto a mobile device. The confidential data may be received over a network directly or be embedded as part of an email or other application. Instead of storing the data item locally, the data item may be communicated to a peripheral device that is communicatively coupled to the mobile device via a peripheral interface. The data item is encrypted and stored on the peripheral device.


