Storage Device Geographical Position Authentication

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current storage devices lack effective security measures to prevent unauthorized access and data disposal in case of geographical location changes, particularly when stolen, as they primarily rely on user-based authentication without geographical constraints.

Innovation Solution

Incorporating a position information generator to provide geographical position data, which is used by the access controller to authenticate and authorize access, allowing data disposal if the device is moved outside a designated area, thereby enhancing security through geographical position-based access control.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If user-based authentication is used, then ease of operation is improved, but security against stolen devices is worsened

Engineering Contradiction:
Improveauthentication convenienceVSAvoidsecurity against unauthorized access
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent adds a geographical dimension to the authentication process. Instead of relying solely on user credentials (one dimension), the system now requires both user authentication and location verification (two dimensions). The access controller checks whether the device's current geographical position matches the pre-registered position information, creating a multi-dimensional security barrier that maintains ease of operation for authorized users while significantly improving security against stolen devices.

Inventive Principle:
Principle #17Another dimension (Dimensionality change)

2Reliability

If geographical position-based access control is implemented, then security is improved, but device complexity is worsened

Engineering Contradiction:
Improvedata securityVSAvoidsystem structure
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent makes the existing position information generator serve multiple functions. Originally designed for other purposes, it is now also used to provide location data for security authentication. This multi-functionality approach allows the system to implement geographical-based access control without adding dedicated hardware components, thereby improving security while minimizing the increase in device complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The system utilizes the device's own position information generator to provide the location data needed for authentication, rather than requiring external positioning systems or additional sensors. The nonvolatile memory device itself generates and provides the position information, making the system self-sufficient and avoiding the need for complex external infrastructure.

Inventive Principle:
Principle #25Self-service

3Reliability

If position information is generated for each authentication request, then security is improved, but loss of time is worsened

Engineering Contradiction:
Improveauthentication securityVSAvoidauthentication processing time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent performs position information generation as a preliminary action that occurs when the device is first used or when position data is cached, rather than generating it fresh for every single authentication request. The access controller stores this pre-generated position information and uses it for subsequent authentication checks, significantly reducing the time required for each authentication process while maintaining security.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11556252B2Storage device and method of operating the same
Publication Date: 2023.01.17 SK HYNIX INC
  • US11556252B2 patent drawing
  • US11556252B2 patent drawing
  • US11556252B2 patent drawing

AI summary

A storage device for providing an improved security function may include a nonvolatile memory device, a position information generator generating first position information indicating a first geographical position of the nonvolatile memory device when an authentication request is input, a user information storage storing user information for accessing the nonvolatile memory device, the user information including second position information, and an access controller obtaining, in response to an authentication request provided from an external host, the first position information from the position information generator, and disposing of data stored in the nonvolatile memory device depending on whether the second position information included in the user information matches the first position information.