Timed Access Control for Partial Nonvolatile Memory Areas
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing memory systems with self-encrypting functions face risks of data leakage and tampering due to incorrect or forgotten commands that fail to disable access authorities for users whose access should be terminated, particularly in cases where access periods are not accurately managed.
Innovation Solution
A memory system with a controller that enables first access authority to a storage area for a user ID and sets a time limit for this authority, automatically disabling it when the time exceeds the limit, thereby reducing the risk of unauthorized access by managing access rights through a temporary authority table.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If access authority is manually managed for users, then access control can be implemented, but data leakage and tampering risks increase due to incorrect or forgotten commands to disable access
Solution Approach 1:
The system performs preliminary actions by automatically disabling access authority when the time limit expires, eliminating the need for manual disable commands that may be forgotten or executed incorrectly. The time limit is set in advance when enabling access, ensuring automatic revocation occurs without human intervention.
Solution Approach 2:
The memory system performs self-service by automatically managing the disabling of access authority based on time limits. The system monitors its own access control state and autonomously revokes permissions when the designated time expires, without requiring external manual commands.
2Ease of operation
If access authority is enabled without time limits, then ease of operation is improved, but security is compromised due to unintended prolonged access
Solution Approach 1:
The system changes the parameter of access authority from permanent to time-limited by introducing a time limit parameter. This modification maintains operational simplicity while enhancing security, as the time limit parameter is automatically enforced without adding complex manual management steps.
3Device complexity
If manual commands are used to disable access authority, then device complexity is reduced, but loss of time occurs due to manual intervention requirements
Solution Approach 1:
The memory system performs self-service by automatically managing the disabling of access authority based on time limits. The system monitors its own access control state and autonomously revokes permissions when the designated time expires, without requiring external manual commands.
4Ease of operation
If access authority is not automatically revoked, then ease of operation is maintained, but harmful factors increase due to forgotten disable commands
Solution Approach 1:
The system performs preliminary actions by automatically disabling access authority when the time limit expires, eliminating the need for manual disable commands that may be forgotten or executed incorrectly. The time limit is set in advance when enabling access, ensuring automatic revocation occurs without human intervention.
Data Source
AI summary
According to one embodiment, a memory system includes a nonvolatile memory and a controller. The controller enables a first access authority to a first storage area which is at least a partial storage area of the nonvolatile memory and sets a first time limit at which the first access authority becomes disabled. The first access authority is assigned to first user identification information. The controller disables the first access authority in a case where current time exceeds the first time limit.


