Peripheral Device Use Management via Host Policy and Key

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing electronic systems face challenges in managing and controlling the use of peripheral devices, such as disc drives, to prevent illegal copying and access of electronic information, as current software and hardware solutions are inadequate in ensuring secure usage.

Innovation Solution

A use management method where a host apparatus sends policy and key information to a peripheral device, allowing it to determine the validity of access requests and restrict usage based on predefined policies, ensuring only authorized programs can access and use the device.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If copy management technique or access management technique is implemented using software or hardware, then security against illegal copying is improved, but the system complexity increases and cannot fully prevent determined circumvention attempts

Engineering Contradiction:
Improvesecurity against illegal copyingVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces a policy information medium as an intermediary carrier that transmits authorization rules from the host apparatus to the peripheral device. This medium acts as a mediator that enables secure access control without requiring complex embedded security systems in the peripheral device itself, thus improving security while maintaining system simplicity

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The security management function is segmented into two parts: the host apparatus that creates and manages policy information, and the peripheral device that executes and enforces it. This segmentation allows the complex security logic to reside in the host apparatus while the peripheral device remains relatively simple, resolving the contradiction between security reliability and device complexity

Inventive Principle:
Principle #1Segmentation

2Measurement precision

If the peripheral device performs access control determination, then usage control precision is improved, but the peripheral device complexity increases

Engineering Contradiction:
Improveaccess control determination precisionVSAvoidperipheral device complexity
Core Design Contradiction:
Measurement precisionVSDevice complexity

Solution Approach 1:

The patent applies preliminary action by pre-defining policy information that contains all necessary access control rules before they are transmitted to the peripheral device. The policy information medium carries these pre-prepared authorization rules, enabling the peripheral device to perform precise access control determination without requiring complex real-time decision-making capabilities, thus improving control precision while maintaining device simplicity

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS8146167B2Use management method for peripheral device, electronic system and component device thereof
Publication Date: 2012.03.27 SONY INTERACTIVE ENTERTAINMENT LLC
  • US8146167B2 patent drawing
  • US8146167B2 patent drawing
  • US8146167B2 patent drawing

AI summary

Managing the use of an optical disc drive by a program at high security. An OS of a host apparatus 100 sends one user certificate incorporating the policy information defining the use contents permissible for the optical disc drive 200 and a user key to the optical disc drive 200 under a secure environment (S3). On the other hand, the program running on the OS is authorized, and the user key is passed to the authorized program (S6). The optical disc drive 200 authorizes the program using the user key within the user certificate and the user key for the program and specifies the policy information corresponding to the user key (S7). Thereafter, the optical disc drive 200 permits the application program to gain access to the self-resource within the limits of the contents defined in the policy information (S8).