Semiconductor memory card and data reading apparatus, and data reading/reproducing apparatus
    94.
    发明申请
    Semiconductor memory card and data reading apparatus, and data reading/reproducing apparatus 有权
    半导体存储卡和数据读取装置以及数据读取/重放装置

    公开(公告)号:US20060129819A1

    公开(公告)日:2006-06-15

    申请号:US11350092

    申请日:2006-02-09

    IPC分类号: H04L9/00

    摘要: A semiconductor memory card comprising a control IC 302, a flash memory 303, and a ROM 304. The ROM 304 holds information such as a medium ID 341 unique to the semiconductor memory card. The flash memory 303 includes an authentication memory 332 and a non-authentication memory 331. The authentication memory 332 can be accessed only by external devices which have been affirmatively authenticated. The non-authentication memory 331 can be accessed by external devices whether the external devices have been affirmatively authenticated or not. The control IC 302 includes control units 325 and 326, an authentication unit 321 and the like. The control units 325 and 326 control accesses to the authentication memory 332 and the non-authentication memory 331, respectively. The authentication unit 321 executes a mutual authentication with an external device.

    摘要翻译: 包括控制IC302,闪速存储器303和ROM304的半导体存储卡.ROM 304保存诸如半导体存储卡唯一的介质ID 341之类的信息。 闪速存储器303包括认证存储器332和非验证存储器331.认证存储器332可以仅被已被肯定认证的外部设备访问。 外部设备可以访问非认证存储器331,无论外部设备是否被肯定认证。 控制IC302包括控制单元325和326,认证单元321等。 控制单元325和326分别控制对认证存储器332和非验证存储器331的访问。 认证单元321执行与外部设备的相互认证。

    Production protection system dealing with contents that are digital production
    95.
    发明授权
    Production protection system dealing with contents that are digital production 有权
    处理数字化生产的内容的生产保护体系

    公开(公告)号:US06862582B2

    公开(公告)日:2005-03-01

    申请号:US10729186

    申请日:2003-12-05

    摘要: A data protection system obtains data having a first content on which a first encryption has been performed and a second content on which a second encryption has been performed, the second encryption more difficult to break than the first encryption. A first content decryption unit decrypts the first content, using a first encryption method corresponding to the first encryption of the first content. A second content decryption unit decrypts the second content using a second decryption method that corresponds to the second encryption. The decrypting contents can be executed by a software, and the second content decryption unit can include one of tamperproof hardware and an apparatus that executes tamperproof software.

    摘要翻译: 数据保护系统获得具有已经执行了第一加密的第一内容和已经执行了第二加密的第二内容的数据,第二加密比第一加密更难打破。 第一内容解密单元使用与第一内容的第一加密相对应的第一加密方法来解密第一内容。 第二内容解密单元使用对应于第二加密的第二解密方法来解密第二内容。 解密内容可以由软件执行,第二内容解密单元可以包括防篡改硬件之一和执行防篡改软件的装置。

    Device authentication and encrypted communication system offering increased security
    96.
    发明授权
    Device authentication and encrypted communication system offering increased security 失效
    设备认证和加密通信系统提供更高的安全性

    公开(公告)号:US06654883B1

    公开(公告)日:2003-11-25

    申请号:US09257319

    申请日:1999-02-25

    IPC分类号: H04L900

    摘要: A system composed of a plurality of user devices, each storing unique secret information, a system device and a control unit. The control unit produces key capsule data by performing a digital signature conversion with message recovery on the unique secret information for each user device and distributes the unique secret information to the user devices. When device authentication and encrypted communication is performed, each user device transmits the key capsule data distributed by the control unit to the system device. The system device receives the data and recovers the unique secret information from the key capsule data by a digital signature verification conversion with message recovery, which uses the verification key distributed in advance by the control unit. Thus, the user device and the system device can share unique secret information and, using it as a key, perform device authentication and encrypted communication by performing encryption and decryption based on a secret key encryption algorithm.

    摘要翻译: 一种由多个用户设备组成的系统,每个用户设备存储唯一的秘密信息,系统设备和控制单元。 控制单元通过对每个用户设备的唯一秘密信息执行具有消息恢复的数字签名转换来生成密钥盒数据,并将唯一的秘密信息分发给用户设备。 当进行设备认证和加密通信时,每个用户设备将由控制单元分发的密钥盒数据发送到系统设备。 系统设备接收数据并通过具有消息恢复的数字签名验证转换从密钥胶囊数据中恢复唯一的秘密信息,其使用由控制单元预先分发的验证密钥。 因此,用户设备和系统设备可以共享唯一的秘密信息,并且使用它作为密钥,通过基于秘密密钥加密算法执行加密和解密来执行设备认证和加密通信。

    Revocation information updating method, revocation information updating apparatus and storage medium
    97.
    发明授权
    Revocation information updating method, revocation information updating apparatus and storage medium 有权
    撤销信息更新方法,撤销信息更新装置和存储介质

    公开(公告)号:US06581160B1

    公开(公告)日:2003-06-17

    申请号:US09692800

    申请日:2000-10-20

    IPC分类号: H04L900

    摘要: A storage medium (PM) 13 includes a controller 130 and two types of storage regions, the concealed region 134 and the open region 131. The open region 131 includes an open RW 133 storing a digital content, an open ROM-W region 132a storing, as revocation information, identification information of an electronic appliance that is prohibited from accessing the digital content, and an open ROM region 132 storing, as master revocation information, identification information of an electronic appliance that is prohibited from updating the revocation information. When the storage medium is loaded into an electronic appliance that has identification information which is registered in the open ROM region 132, the controller 130 prohibits the electronic appliance from updating the revocation information.

    摘要翻译: 存储介质(PM)13包括控制器130和两种类型的存储区域,隐藏区域134和开放区域131.开放区域131包括存储数字内容的打开的RW133,存储有数字内容的开放ROM-W区域132a 作为撤销信息,禁止访问数字内容的电子设备的识别信息,以及作为主撤销信息存储被禁止更新撤销信息的电子设备的识别信息的开放ROM区域132。 当存储介质被装载到具有登记在开放ROM区域132中的识别信息的电子设备中时,控制器130禁止电子设备更新撤销信息。

    Encryption system capable of specifying a type of an encrytion device that produced a distribution medium
    98.
    发明授权
    Encryption system capable of specifying a type of an encrytion device that produced a distribution medium 失效
    加密系统能够指定生成分发介质的加密设备的类型

    公开(公告)号:US06359986B1

    公开(公告)日:2002-03-19

    申请号:US09129307

    申请日:1998-08-05

    IPC分类号: H04L900

    CPC分类号: H04L9/083 H04L9/0822 H04L9/14

    摘要: A decryption selection control unit controls a ciphertext read unit, a decryption key set read unit, and a decryption selection unit to respectively repeat an encrypted scramble key reading, a decryption key set reading, and an encrypted scramble key decryption until N encrypted scramble keys are read from a distribution medium. As a result, N decryption keys that correctly decrypt the respective N encrypted scramble keys are selected. A key pattern detection unit detects an encryption key set, from M encryption key sets stored in an encryption key table, that matches the selected N decryption keys. A type of an encryption device that produced the distribution medium is specified using this encryption key set.

    摘要翻译: 解密选择控制单元控制密文读取单元,解密密钥集读取单元和解密选择单元,以分别重复加密的加扰密钥读取,解密密钥集读取和加密的加扰密钥解密,直到N个加密的加扰密钥为 从分发媒体读取。 结果,选择正确解密各自的N个加密密钥的N个解密密钥。 密钥模式检测单元从存储在加密密钥表中的M个加密密钥集合检测与所选择的N个解密密钥相匹配的加密密钥集。 使用该加密密钥集来指定生成分发介质的加密装置的类型。

    Device authentication system which allows the authentication function to
be changed
    100.
    发明授权
    Device authentication system which allows the authentication function to be changed 失效
    允许更改认证功能的设备认证系统

    公开(公告)号:US6034618A

    公开(公告)日:2000-03-07

    申请号:US940076

    申请日:1997-09-29

    IPC分类号: H04L9/32 G06F11/00

    CPC分类号: H04L9/3271

    摘要: The decoder apparatus 90 generates a random number R1 for authenticating the optical disc drive apparatus 70 and sends it to the optical disc drive apparatus 70 as the challenge data CHA1. The optical disc drive apparatus 70 selects one out of the sixteen claimant functions stored in the claimant function unit 722 and calculates the function value fi(CHA1) which it sends to the decoder apparatus 90 as the response data RES1. The decoder apparatus 90 compares the response data RES1 with sixteen function values f1(R1) to f16(R1) that are obtained using the sixteen verification functions stored in the verification function unit 922, and authenticates the optical disc drive apparatus 70 when at least one of the function values matches the response data RES1.

    摘要翻译: 解码器装置90生成用于认证光盘驱动装置70的随机数R1,并将其发送到作为挑战数据CHA1的光盘驱动装置70。 光盘驱动装置70选择存储在权利要求函数单元722中的十六个要求函数中的一个,并将作为响应数据RES1发送给解码装置90的函数值fi(CHA1)进行计算。 解码器装置90将响应数据RES1与使用存储在验证功能单元922中的十六个验证功能获得的十六个功能值f1(R1)至f16(R1)进行比较,并且当至少一个 的功能值与响应数据RES1匹配。