Decryption Key Generation Using Split Storage
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing decryption devices store part of the decryption key information within the device, making it vulnerable to unauthorized acquisition and access.
Innovation Solution
An information processing device that reads first key information from a detachable external medium and second key information from firmware stored on a second recording medium, generating a decryption key at startup to decrypt encrypted data, with the key information divided into two parts to enhance security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If decryption key information is stored within the decryption device, then the device can perform decryption function, but the key information becomes vulnerable to unauthorized acquisition
Solution Approach 1:
The decryption key is divided into two separate key information components: first key information stored on a detachable external recording medium and second key information stored in the decryption device. This segmentation ensures that neither component alone can be used to generate the full decryption key, thereby preventing unauthorized acquisition while maintaining the decryption function.
2Reliability
If key information is stored on detachable external medium, then unauthorized acquisition is prevented, but device complexity increases
Solution Approach 1:
The detachable external recording medium serves multiple functions: it stores first key information for decryption, acts as a security measure against unauthorized acquisition, and provides a removable storage interface. This multi-functionality reduces the need for separate dedicated components, thereby limiting the increase in device complexity while maintaining enhanced security.
Data Source
AI summary
An information processing device includes: a medium connection unit that reads first key information from a detachable first recording medium; and a second recording medium storing firmware. The firmware is a program to be executed at a time of start-up of the information processing device and contains second key information. The information processing device includes: a third recording medium storing encrypted data; and a control unit that reads the encrypted data from the third recording medium and decrypts the encrypted data. At the time of start-up of the information processing device, the control unit operates in accordance with the firmware to generate a decryption key for decrypting the encrypted data, from the first key information and the second key information.


