Postal Security Device Data Recovery via Emergency Read-Only Mode
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In postal security devices with single integrated circuits, data recovery from partially failed components is challenging due to the complexity and likelihood of failure in highly integrated Application Specific Integrated Circuits (ASICs), which prevents normal access to memory storing postal funds records.
Innovation Solution
A system with a primary single integrated circuit postal security device including a processor, non-volatile memory, and a special purpose state machine that provides an emergency read-only mode, using a secondary power circuit and clock to enable read-only access to non-volatile memory, and disabling write functions to ensure secure data retrieval.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Device complexity
If a single integrated circuit is used to implement postal security device functions, then device complexity is reduced and manufacturing is simplified, but the likelihood of component failure increases and data recovery becomes more difficult
Solution Approach 1:
The patent segments the single integrated circuit into functionally distinct regions: a processor section and a non-volatile memory section. This segmentation allows the memory section to be accessed independently through a secondary interface even when the processor section fails, thereby improving reliability and data recoverability while maintaining the benefits of a single integrated circuit package.
Solution Approach 2:
The patent introduces a secondary interface as an intermediary access path to the non-volatile memory. This secondary interface bypasses the processor section, allowing direct memory access when the primary processor-based interface fails. The intermediary provides an alternative communication channel that ensures data recovery capability independent of processor functionality.
2Ease of operation
If normal access methods are used to retrieve data from the integrated circuit, then data retrieval is straightforward under normal conditions, but access fails when the processor or control circuitry malfunctions
Solution Approach 1:
The patent implements a preliminary alternative access path during the design phase, not as a reactive measure. The secondary interface to the non-volatile memory is pre-configured and ready for use, allowing immediate data retrieval when processor failure occurs, without requiring complex diagnostic or recovery procedures.
Solution Approach 2:
The patent changes the access parameters by providing a different interface protocol and physical access path. The secondary interface uses distinct signal lines and communication protocols compared to the primary processor interface, allowing data retrieval under different operational conditions when the primary access parameters (processor-based control) fail.
3Reliability
If cryptographic keys are protected in secure memory locations, then security is maintained during normal operation, but access to funds data is blocked when security measures activate
Solution Approach 1:
The patent extracts the funds data from the secure memory locations where cryptographic keys are stored. The non-volatile memory section contains both the cryptographic keys and the funds data, but the secondary interface allows selective extraction of funds data without requiring cryptographic key access or processor authentication, thereby providing access under different security conditions.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
Systems and methods for recovering data such as postal funds records (332) from a partially disabled single integrated circuit (301) in a postal security device (300) are described.