Peripheral Device Use Management via Host Policy and Key
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing electronic systems face challenges in managing and controlling the use of peripheral devices, such as disc drives, to prevent illegal copying and access of electronic information, as current software and hardware solutions are inadequate in ensuring secure usage.
Innovation Solution
A use management method where a host apparatus sends policy and key information to a peripheral device, allowing it to determine the validity of access requests and restrict usage based on predefined policies, ensuring only authorized programs can access and use the device.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If copy management technique or access management technique is implemented using software or hardware, then security against illegal copying is improved, but the system complexity increases and cannot fully prevent determined circumvention attempts
Solution Approach 1:
The patent introduces a policy information medium as an intermediary carrier that transmits authorization rules from the host apparatus to the peripheral device. This medium acts as a mediator that enables secure access control without requiring complex embedded security systems in the peripheral device itself, thus improving security while maintaining system simplicity
Solution Approach 2:
The security management function is segmented into two parts: the host apparatus that creates and manages policy information, and the peripheral device that executes and enforces it. This segmentation allows the complex security logic to reside in the host apparatus while the peripheral device remains relatively simple, resolving the contradiction between security reliability and device complexity
2Measurement precision
If the peripheral device performs access control determination, then usage control precision is improved, but the peripheral device complexity increases
Solution Approach 1:
The patent applies preliminary action by pre-defining policy information that contains all necessary access control rules before they are transmitted to the peripheral device. The policy information medium carries these pre-prepared authorization rules, enabling the peripheral device to perform precise access control determination without requiring complex real-time decision-making capabilities, thus improving control precision while maintaining device simplicity
Data Source
AI summary
Managing the use of an optical disc drive by a program at high security. An OS of a host apparatus 100 sends one user certificate incorporating the policy information defining the use contents permissible for the optical disc drive 200 and a user key to the optical disc drive 200 under a secure environment (S3). On the other hand, the program running on the OS is authorized, and the user key is passed to the authorized program (S6). The optical disc drive 200 authorizes the program using the user key within the user certificate and the user key for the program and specifies the policy information corresponding to the user key (S7). Thereafter, the optical disc drive 200 permits the application program to gain access to the self-resource within the limits of the contents defined in the policy information (S8).


