Trusted Environment Proxy for Secure Device Binding
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing computer systems face challenges in securely limiting access to physical devices, as the host processor environment may not be trusted to provide accurate identification information, and network-based authentication protocols are vulnerable to man-in-the-middle attacks.
Innovation Solution
Implementing a secure management system with a trusted environment that uses client-side and server-side authentication protocols, such as SSL/TLS, to bind authorized computer systems to devices, ensuring only authenticated systems can access protected device portions through a proxy-based authentication procedure.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If network-based authentication protocols (SSL/TLS) are used to authenticate computer systems over a network, then authentication capability is improved, but the system becomes vulnerable to man-in-the-middle attacks
Solution Approach 1:
The patent introduces a trusted environment as an intermediary component that mediates authentication between the device and computer system. This trusted environment verifies certificates and authentication credentials, preventing man-in-the-middle attacks by ensuring that authentication occurs through a trusted party rather than directly over the vulnerable network channel.
Solution Approach 2:
The patent segments the computer system into two distinct environments: a host processor environment and a trusted environment. The trusted environment is isolated from direct network access and handles authentication securely, while the host processor environment handles normal operations. This segmentation prevents network-based attacks from compromising the authentication process.
2Ease of operation
If the host processor environment is used to provide identification information for authentication, then authentication process is simplified, but the reliability of identification information cannot be guaranteed
Solution Approach 1:
The trusted environment acts as an intermediary that provides identification information to the authentication process. Since the trusted environment is protected from direct network access and attacks, the identification information it provides is reliable, yet the authentication process remains integrated and relatively simple.
Solution Approach 2:
The patent separates the provision of identification information from the host processor environment to the trusted environment. This segmentation ensures that the identification information comes from a protected source, guaranteeing its reliability while maintaining a clear and simple authentication workflow.
3Reliability
If a management system interface is used to communicate with the host processor environment for device access control, then device access management is improved, but the indirect communication path becomes vulnerable to attacks
Solution Approach 1:
The trusted environment serves as a secure intermediary that handles device access control decisions. It receives authentication credentials, verifies them against stored certificates, and makes access decisions without exposing the management system interface to direct network attacks, thus protecting the indirect communication path.
Solution Approach 2:
The patent performs authentication and verification actions in advance within the protected trusted environment before allowing any device access through the management system interface. This preliminary authentication ensures that even though the management interface communicates indirectly with the host processor, the access control decisions are already secured against attacks.
Data Source
AI summary
Methods and systems to bind a computer device to one or more computer systems, such that only an authorized computer system may access a protected portion of the device. A processor within the computer system may provide a proxy environment to interface between the device and a trusted environment of the computer system, such as a management environment that is secure from the proxy environment. The device may be configured to authenticate the trusted environment through the proxy environment, and to verify integrity of messages exchanged with the trusted environment through the proxy environment. Authentication may include a SSL and/or TSL handshake protocol. The device may be configured to authenticate a certificate, such as an X.509 certificate, a certificate chain, and/or a hash thereof. The device may include computer memory, a printer, display, circuit board, keyboard, mouse, pointing device, and/or other physical device.


