Information Carrier Authentication With a Physical One-Way Function
    22.
    发明申请
    Information Carrier Authentication With a Physical One-Way Function 有权
    具有物理单向功能的信息载体认证

    公开(公告)号:US20080229119A1

    公开(公告)日:2008-09-18

    申请号:US12064089

    申请日:2006-08-16

    IPC分类号: G06F21/00

    摘要: The present invention relates to a method of enabling authentication of an information carrier (105), the information carrier (105) comprising a writeable part (155) and a physical token (125) arranged to supply a response upon receiving a challenge, the method comprising the following steps; applying a first challenge (165) to the physical token (125) resulting in a first response (170), and detecting the first response (170) of the physical token (125) resulting in a detected first response data (175), the method being characterized in that it further comprises the following steps; forming a first authentication data (180) based on information derived from the detected first response data (175), signing the first authentication data (180), and writing the signed authentication data (185) in the writeable part (155) of the information carrier (105). The invention further relates to a method of authentication of an information carrier (105), as well as to devices for both enabling authentication as well as authentication of an information carrier (105).

    摘要翻译: 本发明涉及一种能够认证信息载体(105)的方法,所述信息载体(105)包括布置成在接收到挑战时提供响应的可写入部分(155)和物理令牌(125),所述方法 包括以下步骤: 将第一挑战(165)应用于所述物理令牌(125),从而产生第一响应(170),并且检测所述物理令牌(125)的第一响应(170),从而产生检测到的第一响应数据(175) 其特征在于还包括以下步骤: 基于从检测到的第一响应数据(175)导出的信息,形成第一认证数据(180),对第一认证数据(180)进行签名,并将签名认证数据(185)写入信息的可写入部分(155) 载体(105)。 本发明还涉及信息载体(105)的认证方法,以及用于启用认证以及信息载体(105)的认证的设备。

    Method of and device for generating authorization status list
    23.
    发明申请
    Method of and device for generating authorization status list 审中-公开
    生成授权状态列表的方法和设备

    公开(公告)号:US20070199075A1

    公开(公告)日:2007-08-23

    申请号:US10598936

    申请日:2005-03-02

    摘要: A method of generating an authorization status list, comprising generating a run-length encoded representation of an authorization status of a number of devices and storing the representation in the authorization status list. Preferably comprises generating the representation by indicating, for each of a number of ranges of devices, the devices in a particular range having a same authorization status, the number of devices in each of said ranges, together with for each of said ranges the authorization status shared by the devices in each of said ranges. A range may then be omitted if it is of a predetermined length.

    摘要翻译: 一种产生授权状态列表的方法,包括生成许多设备的授权状态的游程编码表示,并将该表示存储在授权状态列表中。 优选地,包括通过针对具有相同授权状态的特定范围中的每个设备指示每个设备的数量范围来产生所述表示,每个所述范围中的设备的数量以及所述范围中的每一个的授权状态 由每个所述范围中的设备共享。 如果预定的长度可以省略一个范围。

    Picture display device with reduced deflection power
    24.
    发明申请
    Picture display device with reduced deflection power 审中-公开
    具有降低偏转功率的图像显示装置

    公开(公告)号:US20050174031A1

    公开(公告)日:2005-08-11

    申请号:US10516989

    申请日:2003-05-22

    申请人: Boris Skoric

    发明人: Boris Skoric

    IPC分类号: H01J29/86 H01J29/00

    CPC分类号: H01J29/861

    摘要: A picture display device comprises a cathode ray tube (1) with an elongated display screen (8) and a deflection system (9) for deflecting electron beams. The display screen is substantially rectangular with a long and a short axis. The line scanning direction is parallel to the long axis of the display screen. The cathode ray tube comprises a neck portion and between the screen and the neck portion a cone portion (3, 3a). This cone portion has an aspect ratio (ratio of x and y dimension, x/y ratio), which is near the neck below unity and changes to above unity closer to the screen as a function of z.

    摘要翻译: 图像显示装置包括具有细长显示屏(8)的阴极射线管(1)和用于偏转电子束的偏转系统(9)。 显示屏幕具有长轴和短轴的大致矩形。 线扫描方向平行于显示屏的长轴。 阴极射线管包括颈部部分和屏幕与颈部之间的锥形部分(3,3a)。 该锥形部分具有纵深比(x和y尺寸的比例x / y比),其接近颈部低于单位,并且作为z的函数改变为更靠近屏幕的单位。

    Method and apparatus for encrypting/decrypting data
    25.
    发明授权
    Method and apparatus for encrypting/decrypting data 有权
    用于加密/解密数据的方法和装置

    公开(公告)号:US09276739B2

    公开(公告)日:2016-03-01

    申请号:US12305063

    申请日:2007-06-29

    IPC分类号: H04L9/08 H04L29/06 H04L9/00

    摘要: A method of encrypting data using a first key and multiple encryption keys at least in part based on the first key. The method includes encoding the data into a redundant representation by distributing the information content of the data among a number of groups, each group being associated with a respective encryption key of the multiple encryption keys, each encryption key being associated with at least one group, the redundant representation allowing recovery of the data in the absence of the groups associated with the at least one of the multiple encryption keys, and encrypting each group by the respective associated encryption key.

    摘要翻译: 至少部分地基于第一密钥使用第一密钥和多个加密密钥加密数据的方法。 该方法包括通过在多个组中分配数据的信息内容来将数据编码为冗余表示,每个组与多个加密密钥的相应加密密钥相关联,每个加密密钥与至少一个组相关联, 所述冗余表示允许在不存在与所述多个加密密钥中的所述至少一个加密密钥相关联的组的情况下恢复数据,以及通过各自相关联的加密密钥加密每个组。

    Semiconductor device identifier generation method and semiconductor device
    26.
    发明授权
    Semiconductor device identifier generation method and semiconductor device 有权
    半导体器件标识符生成方法和半导体器件

    公开(公告)号:US09129671B2

    公开(公告)日:2015-09-08

    申请号:US12296875

    申请日:2007-04-04

    摘要: A method (100) is disclosed of generating an identifier from a semiconductor device (600) comprising a volatile memory (610) having a plurality of memory cells. The method comprises causing (110) the memory cells to assume a plurality of pseudo-random bit values inherent to variations in the microstructure of the memory cells; retrieving (120) the bit values from at least a subset of the plurality of memory cells; and generating the identifier from the retrieved bit values. The method (100) is based on the realization that a substantial amount of the cells of a volatile memory can assume a bit value that is governed by underlying variations in manufacturing process parameters; this for instance occurs at power-up for an SRAM or after a time period without refresh for a DRAM. This can be used for several identification purposes, such as identifying a semiconductor device (600) comprising the volatile memory (610), or for secure key generation by mapping error-correcting code words onto the identifier bit locations. The present invention further includes a semiconductor device (600, 1000) configured to be subjectable to the method (100) of the present invention.

    摘要翻译: 公开了一种从包括具有多个存储单元的易失性存储器(610)的半导体器件(600)生成标识符的方法(100)。 该方法包括使(110)存储器单元呈现存储器单元的微结构变化所固有的多个伪随机位值; 从所述多个存储器单元的至少一个子集中检索(120)所述位值; 以及从所检索的位值生成所述标识符。 方法(100)基于以下认识:易失性存储器的大量单元可以采用受制造工艺参数的潜在变化控制的位值; 这例如在SRAM的上电时或者在不刷新DRAM的时间段之后发生。 这可以用于多个识别目的,例如识别包括易失性存储器(610)的半导体器件(600),或者通过将纠错码字映射到标识符位置上来进行安全密钥生成。 本发明还包括被配置为可受本发明的方法(100)的半导体器件(600,1000)。

    On-chip estimation of key-extraction parameters for physical tokens
    28.
    发明授权
    On-chip estimation of key-extraction parameters for physical tokens 有权
    物理标记的关键提取参数的片上估计

    公开(公告)号:US08176106B2

    公开(公告)日:2012-05-08

    申请号:US12097584

    申请日:2006-12-12

    IPC分类号: G06F1/02 G06F7/04 H04L9/32

    摘要: The present invention relates to a method and a device (11) using a physical token (14), which provides measurable parameters, to derive at least one data set. A plurality of values of one or more of the parameters are measured. From these measured values, a measure of variance is calculated. Quantization intervals into which a measured value is to be quantized are then determined. A possible value of a data set, which subsequently can be derived from a measured value provided by the physical token, is associated with each quantization interval. Further, information which subsequently enables determination of these quantization intervals is stored. Hence, an enrolling phase has been completed. When the preparing phase has been completed, a deriving phase may commence. When a data set is to be derived, for example to be used as a cryptographic key, a value of any one of the parameters provided by the PUF is measured. This measured value is quantized into a determined quantization interval, and a data set may be derived from the quantization interval into which the measured value is quantized.

    摘要翻译: 本发明涉及使用提供可测量参数的物理令牌(14)来导出至少一个数据集的方法和装置(11)。 测量一个或多个参数的多个值。 从这些测量值,计算方差的度量。 然后确定要量化测量值的量化间隔。 随后可以从物理令牌提供的测量值导出的数据集的可能值与每个量化间隔相关联。 此外,存储随后能够确定这些量化间隔的信息。 因此,入学阶段已经完成。 准备阶段完成后,可以开始推导阶段。 当要导出数据集时,例如要用作加密密钥,测量由PUF提供的任何一个参数的值。 该测量值被量化为确定的量化间隔,并且可以从量化测量值的量化间隔导出数据集。

    CUVETTE AND METHOD FOR AUTHENTICATING A CUVETTE
    29.
    发明申请
    CUVETTE AND METHOD FOR AUTHENTICATING A CUVETTE 有权
    CUVETTE和认证CUVETTE的方法

    公开(公告)号:US20110259091A1

    公开(公告)日:2011-10-27

    申请号:US13126329

    申请日:2009-11-02

    摘要: A cuvette (10) for storing a biological sample to be analyzed by means of a predefined detection technique is disclosed. The cuvette (10) is formed from a moldable material that contains particles (15a, 15b) at a concentration within a predefined range. The particles (15a, 15b) are randomly distributed, in order to form a unique pattern. Moreover, the particles (15a, 15b) have measurable physical properties, so that the unique pattern is detectable using the detection technique that is used to analyze the biological sample. The unique properties obtained by the randomly distributed particles (15a, 15b) render copying nearly impossible, since it is more complicated to distribute the particles in a predetermined pattern than to let them distribute randomly.

    摘要翻译: 公开了一种用于通过预定义的检测技术存储要分析的生物样品的比色皿(10)。 试管(10)由含有浓度在预定范围内的颗粒(15a,15b)的可模制材料形成。 颗粒(15a,15b)是随机分布的,以形成独特的图案。 此外,颗粒(15a,15b)具有可测量的物理性质,使得可以使用用于分析生物样品的检测技术检测独特的图案。 由于随机分布的颗粒(15a,15b)获得的独特性质使得复制几乎不可能,因为以预定模式分布颗粒比使其随机分布更复杂。

    METHOD, APPARATUS AND SYSTEM FOR VERIFYING AUTHENTICITY OF AN OBJECT
    30.
    发明申请
    METHOD, APPARATUS AND SYSTEM FOR VERIFYING AUTHENTICITY OF AN OBJECT 有权
    方法,装置和系统,用于验证对象的正确性

    公开(公告)号:US20100122093A1

    公开(公告)日:2010-05-13

    申请号:US11993724

    申请日:2006-07-04

    IPC分类号: H04L9/32 G06F21/20

    摘要: The invention relates to a method for proving authenticity of a prover PRV to a verifier VER, the method comprising generating a secret S using a physical token by the prover PRV. Obtaining a public value PV by the verifier, where the public value PV has been derived from the secret S using a function for which the inverse of said function is computationally expensive. The method further comprising a step for conducting a zero knowledge protocol between the prover PRV and the verifier VER in order to prove to the verifier VER, with a pre-determined probability, that the prover PRV has access to the physical token, where the prover PRV makes use of the secret S and the verifier VER makes use of the public value PV. The invention further relates to a system employing the method, and an object for proving authenticity.

    摘要翻译: 本发明涉及一种用于向验证者VER验证证明者PRV的真实性的方法,该方法包括使用证明者PRV使用物理令牌生成秘密S。 通过验证者获得公共价值PV,其中公共价值PV已经从秘密S导出,使用所述函数的倒数在计算上是昂贵的函数。 该方法还包括用于在证明者PRV和验证者VER之间进行零知识协议的步骤,以便以预先确定的概率向验证者VER证明证明者PRV可以访问物理令牌,其中证明者 PRV使用秘密S,验证者VER利用公共价值PV。 本发明还涉及采用该方法的系统和用于证明真实性的对象。