IP Library Granted Patent US 8,839,371
Granted Patent B2
US 8,839,371 · App. 12/868,724 · Granted Sep 16, 2014

Method and system for securing access to a storage device

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,839,371
App. No.
12/868,724
Granted
Sep 16, 2014
Kind
B2
Abstract

A method and system for securing access to a storage device including one or more locked logical sections. The method includes providing an interface device including a first port connected to a computing system and a second port connected to the storage device. Further, the method includes receiving a unique identifier from a wireless device, and deriving a key from the unique identifier. Based on the derived key, the method unlocks a logical section in the storage device. The method may further store access permission rights for the locked logical sections in the interface device and unlock the logical section based on the access permission rights. Moreover, the method may further authenticate the identity of a user of the wireless device for unlocking the storage device.

Claims (38)

1. An interface device for securing access to a storage device, the interface device comprising:

a first port configured to be operatively, physically coupled to a computing system;

a second port configured to be operatively, physically coupled to the storage device including a plurality of encrypted logical sections;

a wireless signal detector configured to receive a unique identifier from a wireless device; and

a controller operatively coupled to the first port, the second port, and the wireless signal detector, wherein the controller is configured to store access permission rights for accessing the plurality of logical sections and wherein the controller is further configured to decrypt the plurality of logical sections based on the access permission rights corresponding to a plurality of derived cryptographic keys and wherein the controller is configured to:

derive a cryptographic key from the unique identifier;

decrypt a logical section of the plurality of encrypted logical sections in the storage device using the derived cryptographic key; and

disable access to the decrypted logical section in the storage device if the wireless device is not in range of the wireless signal detector.

2. The interface device of claim 1 , wherein the controller includes a memory configured to store the access permission rights.

3. The interface device of claim 1 , wherein the controller is further configured to authenticate the identity of a user of the wireless device.

4. The interface device of claim 3 , wherein the controller authenticates the identity of the user using one or more of biometric identification, or a login procedure.

5. The interface device of claim 1 , wherein the encrypted logical sections are encrypted using one or more of AES encryption, hardware encryption, or software encryption.

6. The interface device of claim 1 , wherein the first port and the second port employ a communication interface including at least one of a universal serial bus, a Fire Wire, a serial advanced technology attachment, a parallel advanced technology attachment, or a peripheral component interconnect express.

7. The interface device of claim 1 , wherein the storage device lies within the computing system.

8. The interface device of claim 1 , wherein the storage device is external to the computing system.

9. The interface device of claim 1 , wherein the wireless device includes at least one of a radio frequency device, a Bluetooth device, an infra-red device, a near-field communication device, a Wi-Fi device, or a cellular phone.

10. A method for securing access to a storage device including a plurality of encrypted logical sections, method comprising:

providing an interface device including a first port physically connected to a computing system and a second port physically connected to the storage device;

storing access permission rights for the plurality of encrypted logical sections in the interface device;

receiving a unique identifier from a wireless device wherein the unique identifier is received by a wireless signal detector coupled to the interface device;

deriving a cryptographic key from the unique identifier;

decrypting a logical section of the plurality of encrypted logic sections in the storage device based on the derived cryptographic key and based on the access permission rights corresponding to the derived cryptographic key; and

disabling the decrypted logical section in the storage device if the wireless device is not in range of the wireless signal detector.

11. The method of claim 10 further comprising authenticating the identity of a user of the wireless device.

12. The method of claim 11 , wherein the identity of the user is authenticated using one or more of biometric identification, or a login procedure.

13. The method of claim 10 , wherein the locked logical sections are encrypted using one or more of AES encryption, hardware encryption, or software encryption.

14. The method of claim 10 , wherein the storage device lies within the computing system.

15. The method of claim 10 , wherein the storage device is external to the computing system.

16. The method of claim 10 , wherein the wireless device includes at least one of a radio frequency device, a Bluetooth device, an infra-red device, a near-field communication device, a Wi-Fi device, or a cellular phone.

17. The method of claim 10 further comprising disabling the computing system, upon a determination that one or more of the encrypted logical sections cannot be decrypted.

18. A method for securing access to a storage device including a plurality of logical sections, the method comprising:

providing an interface device including a first port physically connected to a computing system and a second port physically connected to the storage device wherein the storage device includes a plurality of logical sections that comprise the persistent storage and the volatile memory of the storage device;

storing access permission rights for the plurality of encrypted logical sections in the interface device:

encrypting a first logical section of the plurality of logical sections based on a first cryptographic key, wherein the first cryptographic key is derived from a first unique identifier received from a first wireless device;

receiving a second unique identifier from a wireless device wherein the second unique identifier is received by a wireless signal detector coupled to the interface device;

deriving a second cryptographic key from the second unique identifier;

decrypting the first logical section in the storage device upon a determination that the first cryptographic key is identical to the second cryptographic key and that the wireless device can access the encrypted logical sections based on the access permission rights; and

disabling the decrypted logical section in the storage device if the wireless device is not in range of the wireless signal detector.

Assignments (10)
RELEASE OF SECURITY INTEREST Recorded Mar 14, 2022
From: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
To: MICROCHIP TECHNOLOGY INCORPORATED; SILICON STORAGE TECHNOLOGY, INC.; ATMEL CORPORATION; MICROSEMI CORPORATION; MICROSEMI STORAGE SOLUTIONS, INC.
Reel/Frame 060894/0437 →
RELEASE OF SECURITY INTEREST Recorded Mar 11, 2022
From: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
To: MICROCHIP TECHNOLOGY INCORPORATED; SILICON STORAGE TECHNOLOGY, INC.; ATMEL CORPORATION; MICROSEMI CORPORATION; MICROSEMI STORAGE SOLUTIONS, INC.
Reel/Frame 059363/0001 →
RELEASE OF SECURITY INTEREST Recorded Mar 10, 2022
From: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
To: MICROCHIP TECHNOLOGY INCORPORATED; SILICON STORAGE TECHNOLOGY, INC.; ATMEL CORPORATION; MICROSEMI CORPORATION; MICROSEMI STORAGE SOLUTIONS, INC.
Reel/Frame 059863/0400 →
SECURITY INTEREST Recorded Jun 4, 2021
From: MICROCHIP TECHNOLOGY INCORPORATED; SILICON STORAGE TECHNOLOGY, INC.; ATMEL CORPORATION; MICROSEMI CORPORATION; MICROSEMI STORAGE SOLUTIONS, INC.
To: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 057935/0474 →
SECURITY INTEREST Recorded Dec 24, 2020
From: MICROCHIP TECHNOLOGY INCORPORATED; SILICON STORAGE TECHNOLOGY, INC.; ATMEL CORPORATION; MICROSEMI CORPORATION; MICROSEMI STORAGE SOLUTIONS, INC.
To: WELLS FARGO BANK, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 055671/0612 →
SECURITY INTEREST Recorded Jun 5, 2020
From: MICROCHIP TECHNOLOGY INC.; SILICON STORAGE TECHNOLOGY, INC.; ATMEL CORPORATION; MICROSEMI CORPORATION; MICROSEMI STORAGE SOLUTIONS, INC.
To: WELLS FARGO BANK, NATIONAL ASSOCIATION
Reel/Frame 053468/0705 →
RELEASE OF SECURITY INTEREST Recorded May 30, 2020
From: JPMORGAN CHASE BANK, N.A, AS ADMINISTRATIVE AGENT
To: MICROCHIP TECHNOLOGY INC.; SILICON STORAGE TECHNOLOGY, INC.; ATMEL CORPORATION; MICROSEMI CORPORATION; MICROSEMI STORAGE SOLUTIONS, INC.
Reel/Frame 053466/0011 →
SECURITY INTEREST Recorded Apr 24, 2020
From: MICROCHIP TECHNOLOGY INC.; SILICON STORAGE TECHNOLOGY, INC.; ATMEL CORPORATION; MICROSEMI CORPORATION; MICROSEMI STORAGE SOLUTIONS, INC.
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 053311/0305 →
MERGER Recorded Dec 13, 2017
From: STANDARD MICROSYSTEMS CORPORATION
To: MICROCHIP TECHNOLOGY INCORPORATED
Reel/Frame 044865/0164 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 26, 2010
From: GHOSH, ATISH; BOHM, MARK
To: STANDARD MICROSYSTEMS CORPORATION
Reel/Frame 024888/0279 →