SECURE MEMORY CARD WITH LIFE CYCLE PHASES
    1.
    发明公开
    SECURE MEMORY CARD WITH LIFE CYCLE PHASES 审中-公开
    生命周期各阶段安全存储卡

    公开(公告)号:EP1846826A2

    公开(公告)日:2007-10-24

    申请号:EP06734304.6

    申请日:2006-02-01

    IPC分类号: G06F11/22

    CPC分类号: G06F11/2273

    摘要: A secure memory card with encryption capabilities comprises various life cycle states that allow for testing of the hardware and software of the card in certain of the states. The testing mechanisms are disabled in certain other of the states thus closing potential back doors to secure data and cryptographic keys. Controlled availability and generation of the keys required for encryption and decryption of data is such that even if back doors are accessed that previously encrypted data is impossible to decrypt and thus worthless even if a back door is found and maliciously pried open.

    SECURE YET FLEXIBLE SYSTEM ARCHITECTURE FOR SECURE DEVICES WITH FLASH MASS STORAGE MEMORY
    2.
    发明公开
    SECURE YET FLEXIBLE SYSTEM ARCHITECTURE FOR SECURE DEVICES WITH FLASH MASS STORAGE MEMORY 有权
    安全而又灵活的系统架构与Flash大容量存储器安全设备

    公开(公告)号:EP1934879A2

    公开(公告)日:2008-06-25

    申请号:EP06814654.7

    申请日:2006-09-13

    IPC分类号: G06F21/00 G06F9/445

    CPC分类号: G06F21/79 G06F21/572

    摘要: A device with mass storage capability that uses a readily available non secure memory for the mass storage but has firmware (and hardware) that provides security against unauthorized copying of data. This is true even though the firmware itself is stored in the non secure mass storage memory, and therefore potentially vulnerable to hacking. An indication of the authenticity of the firmware must be present before it will be executed by the device. This protects the device contents from unauthorized duplication or tampering. Additional functionality can be added to the device with additional firmware applications, and the authenticity of those additional applications will also be verified before they will be executed. This further prevents unauthorized copying or tampering of secure content through any mechanisms that may be unscrupulously introduced. Any data within the mass storage memory may also be encrypted.

    MEMORY SYSTEM WITH IN-STREAM DATA ENCRYPTION/DECRYPTION
    3.
    发明授权
    MEMORY SYSTEM WITH IN-STREAM DATA ENCRYPTION/DECRYPTION 有权
    在流加密/解密存储系统

    公开(公告)号:EP1828948B1

    公开(公告)日:2012-02-08

    申请号:EP05855187.0

    申请日:2005-12-21

    IPC分类号: G06F21/00

    CPC分类号: G06F21/78

    摘要: The throughput of the memory system is improved where data in a data stream is cryptographically processed by a circuit without involving intimately any controller. The data stream is preferably controlled so that it has a selected data source among a plurality of sources and a selected destination among a plurality of destinations, all without involving the controller. The cryptographic circuit may preferably be configured to enable the processing of multiple pages, selection of one or more cryptographic algorithms among a plurality of algorithms to encryption and/or decryption without involving a controller, and to process data cryptographically in multiple successive stages without involvement of the controller. For a memory system cryptographically processing data from multiple data streams in an interleaved manner, when a session is interrupted, security configuration information may be lost so that it may become impossible to continue the process when the session is resumed. To retain the security configuration information, the controller preferably causes the security configuration information for the session to be stored before the interruption so that it is retrievable after the interruption.

    MEMORY SYSTEM WITH IN-STREAM DATA ENCRYPTION/DECRYPTION
    4.
    发明公开
    MEMORY SYSTEM WITH IN-STREAM DATA ENCRYPTION/DECRYPTION 有权
    在流加密/解密存储系统

    公开(公告)号:EP1828948A2

    公开(公告)日:2007-09-05

    申请号:EP05855187.0

    申请日:2005-12-21

    IPC分类号: G06F21/00

    CPC分类号: G06F21/78

    摘要: The throughput of the memory system is improved where data in a data stream is cryptographically processed by a circuit without involving intimately any controller. The data stream is preferably controlled so that it has a selected data source among a plurality of sources and a selected destination among a plurality of destinations, all without involving the controller. The cryptographic circuit may preferably be configured to enable the processing of multiple pages, selection of one or more cryptographic algorithms among a plurality of algorithms to encryption and/or decryption without involving a controller, and to process data cryptographically in multiple successive stages without involvement of the controller. For a memory system cryptographically processing data from multiple data streams in an interleaved manner, when a session is interrupted, security configuration information may be lost so that it may become impossible to continue the process when the session is resumed. To retain the security configuration information, the controller preferably causes the security configuration information for the session to be stored before the interruption so that it is retrievable after the interruption.