Trusted Environment Proxy for Secure Device Binding

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing computer systems face challenges in securely limiting access to physical devices, as the host processor environment may not be trusted to provide accurate identification information, and network-based authentication protocols are vulnerable to man-in-the-middle attacks.

Innovation Solution

Implementing a secure management system with a trusted environment that uses client-side and server-side authentication protocols, such as SSL/TLS, to bind authorized computer systems to devices, ensuring only authenticated systems can access protected device portions through a proxy-based authentication procedure.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If network-based authentication protocols (SSL/TLS) are used to authenticate computer systems over a network, then authentication capability is improved, but the system becomes vulnerable to man-in-the-middle attacks

Engineering Contradiction:
Improveauthentication capabilityVSAvoidman-in-the-middle attack vulnerability
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces a trusted environment as an intermediary component that mediates authentication between the device and computer system. This trusted environment verifies certificates and authentication credentials, preventing man-in-the-middle attacks by ensuring that authentication occurs through a trusted party rather than directly over the vulnerable network channel.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent segments the computer system into two distinct environments: a host processor environment and a trusted environment. The trusted environment is isolated from direct network access and handles authentication securely, while the host processor environment handles normal operations. This segmentation prevents network-based attacks from compromising the authentication process.

Inventive Principle:
Principle #1Segmentation

2Ease of operation

If the host processor environment is used to provide identification information for authentication, then authentication process is simplified, but the reliability of identification information cannot be guaranteed

Engineering Contradiction:
Improveauthentication process simplicityVSAvoididentification information accuracy
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The trusted environment acts as an intermediary that provides identification information to the authentication process. Since the trusted environment is protected from direct network access and attacks, the identification information it provides is reliable, yet the authentication process remains integrated and relatively simple.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent separates the provision of identification information from the host processor environment to the trusted environment. This segmentation ensures that the identification information comes from a protected source, guaranteeing its reliability while maintaining a clear and simple authentication workflow.

Inventive Principle:
Principle #1Segmentation

3Reliability

If a management system interface is used to communicate with the host processor environment for device access control, then device access management is improved, but the indirect communication path becomes vulnerable to attacks

Engineering Contradiction:
Improvedevice access control capabilityVSAvoidindirect path attack vulnerability
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The trusted environment serves as a secure intermediary that handles device access control decisions. It receives authentication credentials, verifies them against stored certificates, and makes access decisions without exposing the management system interface to direct network attacks, thus protecting the indirect communication path.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent performs authentication and verification actions in advance within the protected trusted environment before allowing any device access through the management system interface. This preliminary authentication ensures that even though the management interface communicates indirectly with the host processor, the access control decisions are already secured against attacks.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS8452954B2Methods and systems to bind a device to a computer system
Publication Date: 2013.05.28 SK HYNIX NAND PRODUCT SOLUTIONS CORP
  • US8452954B2 patent drawing
  • US8452954B2 patent drawing
  • US8452954B2 patent drawing

AI summary

Methods and systems to bind a computer device to one or more computer systems, such that only an authorized computer system may access a protected portion of the device. A processor within the computer system may provide a proxy environment to interface between the device and a trusted environment of the computer system, such as a management environment that is secure from the proxy environment. The device may be configured to authenticate the trusted environment through the proxy environment, and to verify integrity of messages exchanged with the trusted environment through the proxy environment. Authentication may include a SSL and/or TSL handshake protocol. The device may be configured to authenticate a certificate, such as an X.509 certificate, a certificate chain, and/or a hash thereof. The device may include computer memory, a printer, display, circuit board, keyboard, mouse, pointing device, and/or other physical device.