Decryption Key Generation Using Split Storage

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing decryption devices store part of the decryption key information within the device, making it vulnerable to unauthorized acquisition and access.

Innovation Solution

An information processing device that reads first key information from a detachable external medium and second key information from firmware stored on a second recording medium, generating a decryption key at startup to decrypt encrypted data, with the key information divided into two parts to enhance security.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If decryption key information is stored within the decryption device, then the device can perform decryption function, but the key information becomes vulnerable to unauthorized acquisition

Engineering Contradiction:
Improvesecurity of decryption keyVSAvoidunauthorized acquisition of key information
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The decryption key is divided into two separate key information components: first key information stored on a detachable external recording medium and second key information stored in the decryption device. This segmentation ensures that neither component alone can be used to generate the full decryption key, thereby preventing unauthorized acquisition while maintaining the decryption function.

Inventive Principle:
Principle #1Segmentation

2Reliability

If key information is stored on detachable external medium, then unauthorized acquisition is prevented, but device complexity increases

Engineering Contradiction:
Improvesecurity of decryption keyVSAvoidstructure of key storage system
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The detachable external recording medium serves multiple functions: it stores first key information for decryption, acts as a security measure against unauthorized acquisition, and provides a removable storage interface. This multi-functionality reduces the need for separate dedicated components, thereby limiting the increase in device complexity while maintaining enhanced security.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS10929566B2Information processing device and information processing system
Publication Date: 2021.02.23 PANASONIC INTELLECTUAL PROPERTY MANAGEMENT CO LTD
  • US10929566B2 patent drawing
  • US10929566B2 patent drawing
  • US10929566B2 patent drawing

AI summary

An information processing device includes: a medium connection unit that reads first key information from a detachable first recording medium; and a second recording medium storing firmware. The firmware is a program to be executed at a time of start-up of the information processing device and contains second key information. The information processing device includes: a third recording medium storing encrypted data; and a control unit that reads the encrypted data from the third recording medium and decrypts the encrypted data. At the time of start-up of the information processing device, the control unit operates in accordance with the firmware to generate a decryption key for decrypting the encrypted data, from the first key information and the second key information.