EP3090378A1 - Dispositif mobile pour le stockage de données numériques - Google Patents
Dispositif mobile pour le stockage de données numériquesInfo
- Publication number
- EP3090378A1 EP3090378A1 EP14816272.0A EP14816272A EP3090378A1 EP 3090378 A1 EP3090378 A1 EP 3090378A1 EP 14816272 A EP14816272 A EP 14816272A EP 3090378 A1 EP3090378 A1 EP 3090378A1
- Authority
- EP
- European Patent Office
- Prior art keywords
- digital data
- storage space
- storing digital
- bus
- data according
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Withdrawn
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F13/00—Interconnection of, or transfer of information or other signals between, memories, input/output devices or central processing units
- G06F13/38—Information transfer, e.g. on bus
- G06F13/42—Bus transfer protocol, e.g. handshake; Synchronisation
- G06F13/4282—Bus transfer protocol, e.g. handshake; Synchronisation on a serial bus, e.g. I2C bus, SPI bus
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/60—Protecting data
- G06F21/62—Protecting access to data via a platform, e.g. using keys or access control rules
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/60—Protecting data
- G06F21/62—Protecting access to data via a platform, e.g. using keys or access control rules
- G06F21/6218—Protecting access to data via a platform, e.g. using keys or access control rules to a system of files or objects, e.g. local or distributed file system or database
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F3/00—Input arrangements for transferring data to be processed into a form capable of being handled by the computer; Output arrangements for transferring data from processing unit to output unit, e.g. interface arrangements
- G06F3/06—Digital input from, or digital output to, record carriers, e.g. RAID, emulated record carriers or networked record carriers
- G06F3/0601—Interfaces specially adapted for storage systems
- G06F3/0602—Interfaces specially adapted for storage systems specifically adapted to achieve a particular effect
- G06F3/0604—Improving or facilitating administration, e.g. storage management
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F3/00—Input arrangements for transferring data to be processed into a form capable of being handled by the computer; Output arrangements for transferring data from processing unit to output unit, e.g. interface arrangements
- G06F3/06—Digital input from, or digital output to, record carriers, e.g. RAID, emulated record carriers or networked record carriers
- G06F3/0601—Interfaces specially adapted for storage systems
- G06F3/0628—Interfaces specially adapted for storage systems making use of a particular technique
- G06F3/0653—Monitoring storage devices or systems
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F3/00—Input arrangements for transferring data to be processed into a form capable of being handled by the computer; Output arrangements for transferring data from processing unit to output unit, e.g. interface arrangements
- G06F3/06—Digital input from, or digital output to, record carriers, e.g. RAID, emulated record carriers or networked record carriers
- G06F3/0601—Interfaces specially adapted for storage systems
- G06F3/0668—Interfaces specially adapted for storage systems adopting a particular infrastructure
- G06F3/067—Distributed or networked storage systems, e.g. storage area networks [SAN], network attached storage [NAS]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0853—Network architectures or network communication protocols for network security for authentication of entities using an additional device, e.g. smartcard, SIM or a different communication terminal
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0861—Network architectures or network communication protocols for network security for authentication of entities using biometrical features, e.g. fingerprint, retina-scan
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F2221/00—Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/21—Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/2129—Authenticate client device independently of the user
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F2221/00—Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/21—Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/2143—Clearing memory, e.g. to prevent the data from being stolen
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F2221/00—Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/21—Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/2149—Restricted operating environment
Definitions
- the present invention relates to the field of information technology, and particularly to the field of digital data storage devices.
- USB key Universal Serial Bus
- external hard disk for example: USB key (“Universal Serial Bus” in English terminology
- mobile phone for example: USB key (“Universal Serial Bus” in English terminology
- storage media players for example: digital data
- USB key that is shared between "source people” and "destination people”.
- USB keys The most stringent people on the subject use a multitude of USB keys, for each use and level of sensitivity.
- the present invention intends to overcome the disadvantages of the prior art by providing a device for providing different views of the storage space according to the user of the device.
- the present invention relates, in its most general sense, to a mobile device capable of storing digital data, comprising a storage space, characterized in that it comprises means for:
- said device comprises a host storage space, an embedded subsystem capable of simulating a storage space on a bus from said host storage space, and authentication means.
- said host storage space is included in the following group: flash memory, hard disk and mobile phone.
- said bus is a bus type USB ("Universal Serial Bus” in English terminology), “Firewire” (compliant with the IEEE 1394 standard) or “Thunderbolt”.
- said authentication means are comprised in the following group: keypad, fingerprint reader, communication on said bus, identification of the computer, and application using the user interface (keyboard / screen) of a mobile phone.
- said device further comprises configuration means in order to be able to make configuration adjustments.
- said configuration means take the form of in-band communication on said bus.
- said configuration means take the form of out-of-band communication on said bus.
- the data stored in said device are encrypted by means of encryption means.
- FIG. 1 illustrates the device according to the present invention in one embodiment
- FIG. 2a represents an overall view of the storage space in the sense of the present invention
- Figure 2b shows a partial view of the storage space within the meaning of the present invention.
- the mobile device capable of storing digital data according to the present invention comprises a storage space 1 1, and comprises means for:
- the device 10 according to the present invention comprises:
- a space 1 1 of host storage flash memory, hard disk
- an on-board subsystem 12 capable of simulating a space 1 1 'of storage on a bus 14 (USB, Firewire or IEEE 1394, Thunderbolt, etc.) from the space 1 1 of host storage; and
- the device 10 comprises configuration means 15 for making configuration adjustments, for example setting the size of the invited spaces or the model to be used for these spaces.
- These configuration means may take the form of in-band or out-of-band communications on the bus.
- Figure 1 illustrates the device according to the present invention in one embodiment: we see in Figure 1 the device 10 having a space 1 1 host storage and a space 1 1 'simulated storage. Another simulated storage space 11 "is shown in FIG.
- FIG. 1 also represents the on-board subsystem 12 capable of simulating a space 1 1 'of storage on a bus 14 (USB, Firewire or IEEE 1394, Thunderbolt, etc.) from the space 1 1 of host storage .
- a bus 14 USB, Firewire or IEEE 1394, Thunderbolt, etc.
- FIG 1 also shows the authentication means 13, the bus 14 and the configuration means 15.
- Figure 1 also shows the second device 20 to which the device 10 is connected.
- Figure 2a shows an overall view of the storage space 1 1 in the sense of the present invention
- Figure 2b shows a partial view of the storage space 1 1 within the meaning of the present invention.
- Figure 2a shows a file system tree with three directories A, B and C.
- Directory A has an A1 subdirectory and two A2 and A3 files.
- the subdirectory A1 itself has two files A1 .1 and A1 .2.
- Directory B has two files B1 and B2, and directory C has two files C1 and C2. This is an overall view of the storage space 1 1 within the meaning of the present invention.
- Figure 2b shows a file system tree with an A1 subdirectory, two A1.1 and A1.2 files in this subdirectory, and two other A2 and A3 files. Directories B and C and files corresponding do not appear on this view, which is a partial view of the storage space 1 1 within the meaning of the present invention.
- the owner of the device 10 according to the present invention plugs it on his computer, he is authenticated and thus accesses all guest storage spaces. He can consult them, erase them. It can also modify, delete or create a new model and choose which of the existing models will be used at future connections.
- the device 10 according to the present invention can take care of cleaning the host storage areas it intends to use to make it impossible to leak information from the reallocation of storage areas previously used then released. He could finally configure the generated name for each guest storage space created (for example, ⁇ template name ⁇ - ⁇ creation date ⁇ ), or decide whether unmodified guest spaces are kept or destroyed. The keeping of an event log is also envisaged.
- the data stored in said device 10 is encrypted by means of encryption means.
Landscapes
- Engineering & Computer Science (AREA)
- Theoretical Computer Science (AREA)
- General Engineering & Computer Science (AREA)
- Physics & Mathematics (AREA)
- General Physics & Mathematics (AREA)
- Computer Security & Cryptography (AREA)
- Computer Hardware Design (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Health & Medical Sciences (AREA)
- General Health & Medical Sciences (AREA)
- Human Computer Interaction (AREA)
- Software Systems (AREA)
- Bioethics (AREA)
- Computing Systems (AREA)
- Databases & Information Systems (AREA)
- Biomedical Technology (AREA)
- Storage Device Security (AREA)
Abstract
Description
Claims
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| FR1363668A FR3016067B1 (fr) | 2013-12-30 | 2013-12-30 | Dispositif mobile pour le stockage de donnees numeriques |
| PCT/EP2014/078871 WO2015101532A1 (fr) | 2013-12-30 | 2014-12-19 | Dispositif mobile pour le stockage de données numériques |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| EP3090378A1 true EP3090378A1 (fr) | 2016-11-09 |
Family
ID=50290082
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| EP14816272.0A Withdrawn EP3090378A1 (fr) | 2013-12-30 | 2014-12-19 | Dispositif mobile pour le stockage de données numériques |
Country Status (4)
| Country | Link |
|---|---|
| US (1) | US10448245B2 (fr) |
| EP (1) | EP3090378A1 (fr) |
| FR (1) | FR3016067B1 (fr) |
| WO (1) | WO2015101532A1 (fr) |
Family Cites Families (8)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| JP4239950B2 (ja) * | 2004-10-29 | 2009-03-18 | コニカミノルタビジネステクノロジーズ株式会社 | デバイスとその管理方法及び管理プログラム |
| US8566599B2 (en) * | 2006-12-07 | 2013-10-22 | Kyocera Corporation | System and method for controlling access to a portable device |
| US9104618B2 (en) * | 2008-12-18 | 2015-08-11 | Sandisk Technologies Inc. | Managing access to an address range in a storage device |
| JP2010211518A (ja) * | 2009-03-10 | 2010-09-24 | Sony Corp | 生体認証機能付き電子機器、及びデータ管理方法 |
| US20100241868A1 (en) * | 2009-03-19 | 2010-09-23 | Hani Nachef | Method and apparatus for storing, managing, and securing personal information |
| NL2004219C2 (en) * | 2010-02-10 | 2011-08-11 | C B E Daal Holding B V | Device for reproducing audiovisual data and circuit therefor. |
| US9607131B2 (en) * | 2010-09-16 | 2017-03-28 | Verance Corporation | Secure and efficient content screening in a networked environment |
| US20130314208A1 (en) * | 2012-05-08 | 2013-11-28 | Arkami, Inc. | Systems And Methods For Storing And Accessing Confidential Data |
-
2013
- 2013-12-30 FR FR1363668A patent/FR3016067B1/fr not_active Expired - Fee Related
-
2014
- 2014-12-19 WO PCT/EP2014/078871 patent/WO2015101532A1/fr not_active Ceased
- 2014-12-19 EP EP14816272.0A patent/EP3090378A1/fr not_active Withdrawn
- 2014-12-19 US US15/107,933 patent/US10448245B2/en not_active Expired - Fee Related
Non-Patent Citations (2)
| Title |
|---|
| None * |
| See also references of WO2015101532A1 * |
Also Published As
| Publication number | Publication date |
|---|---|
| WO2015101532A1 (fr) | 2015-07-09 |
| FR3016067B1 (fr) | 2017-03-24 |
| US10448245B2 (en) | 2019-10-15 |
| US20160330621A1 (en) | 2016-11-10 |
| FR3016067A1 (fr) | 2015-07-03 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| WO2019233951A1 (fr) | Une application logicielle et un serveur informatique pour authentifier l'identité d'un créateur de contenu numérique et l'intégrité du contenu du créateur publié | |
| FR3006082A1 (fr) | Procede de mise en œuvre d'un droit sur un contenu | |
| FR2829892A1 (fr) | Procede et systeme de distribution securisee de documents numeriques | |
| EP2569729A1 (fr) | Systeme permettant l'affichage d'un fichier informatique prive sur un ecran d'un terminal de telecommunications et procede correspondant | |
| CA3093385A1 (fr) | Traitement securise de donnees | |
| CA2888662A1 (fr) | Systeme et procede de securisation des echanges de donnees, objet portable utilisateur et dispositif distant de telechargement de donnees | |
| EP3586258B1 (fr) | Système d'authentification à clé segmentée | |
| FR3095707A1 (fr) | Procédé de sécurisation d’une communication et dispositif correspondant. | |
| FR3002670A1 (fr) | Procede et systeme de traitement cryptographique utilisant une donnee sensible | |
| FR3035248A1 (fr) | Systeme-sur-puce a fonctionnement securise et ses utilisations | |
| WO2015101532A1 (fr) | Dispositif mobile pour le stockage de données numériques | |
| EP2285042A1 (fr) | Module logiciel de sécurisation utilisant le chiffrement du haché d'un mot de passe concaténé avec une graine | |
| FR3002056A1 (fr) | Authentification de signature manuscrite numerisee. | |
| FR2985829A1 (fr) | Procede de communication entre au moins deux terminaux numeriques | |
| EP1544818A1 (fr) | Terminal sécurisé | |
| EP1883034A2 (fr) | Procédé de sécurisation pour appareil électronique utilisant une carte à puce | |
| FR2987711A1 (fr) | Delegation de calculs cryptographiques | |
| Fowler | An overview of small scale digital forensics | |
| FR3144465A1 (fr) | Procédé pour la sauvegarde et la restauration personnalisées d’un secret détenu par un portefeuille de cryptoactifs | |
| WO2009007578A2 (fr) | Procede de gestion d'acces | |
| WO2014135526A1 (fr) | Système et procédé de gestion d'au moins une application en ligne, objet portable utilisateur usb et dispositif distant du système | |
| WO2010133459A1 (fr) | Procede de chiffrement de parties particulieres d' un document pour les utilisateurs privileges | |
| FR2886748A1 (fr) | Dispositif de stockage de donnees securise | |
| FR2796232A1 (fr) | Procede et dispositif de securisation de l'acces et des transferts de donnees dans un systeme informatique | |
| FR3093572A1 (fr) | Micro serveur portatif, autonome et securisé de collaboration entre différents utilisateurs |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| PUAI | Public reference made under article 153(3) epc to a published international application that has entered the european phase |
Free format text: ORIGINAL CODE: 0009012 |
|
| 17P | Request for examination filed |
Effective date: 20160712 |
|
| AK | Designated contracting states |
Kind code of ref document: A1 Designated state(s): AL AT BE BG CH CY CZ DE DK EE ES FI FR GB GR HR HU IE IS IT LI LT LU LV MC MK MT NL NO PL PT RO RS SE SI SK SM TR |
|
| AX | Request for extension of the european patent |
Extension state: BA ME |
|
| DAX | Request for extension of the european patent (deleted) | ||
| RAP1 | Party data changed (applicant data changed or rights of an application transferred) |
Owner name: AIRBUS (SAS) |
|
| 17Q | First examination report despatched |
Effective date: 20191007 |
|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: THE APPLICATION HAS BEEN WITHDRAWN |
|
| 18W | Application withdrawn |
Effective date: 20200127 |