-
公开(公告)号:US20150074406A1
公开(公告)日:2015-03-12
申请号:US13520051
申请日:2012-05-25
CPC分类号: G06F21/44 , G06F2221/2129 , H04L9/0869 , H04L9/0877 , H04L9/32 , H04L9/3234
摘要: For authentication of the host device, the memory device is configured to output the encrypted second key information (FKB) to the host device, output the encrypted identification information (E-SecretID) to the host device, generate third third key information (Hkey) using information (HC) received from the host device and the first key information, generate a session key (Skey) using a random number (RN) received from the host device, and the third key information, generate authentication information (Oneway-ID) by performing a one-way conversion process on the identification information, using the session key, and output the authentication information (Oneway-ID) to the host device.
摘要翻译: 为了对主机进行认证,存储装置被配置为将加密的第二密钥信息(FKB)输出到主机装置,将加密的识别信息(E-SecretID)输出到主机装置,生成第三密钥信息(Hkey) 使用从主机设备接收的信息(HC)和第一密钥信息,使用从主机设备接收的随机数(RN)和第三密钥信息生成会话密钥(Skey),生成认证信息(Oneway-ID) 通过使用会话密钥对识别信息进行单向转换处理,并将该认证信息(Oneway-ID)输出到主机装置。
-
公开(公告)号:US08762717B2
公开(公告)日:2014-06-24
申请号:US13524805
申请日:2012-06-15
申请人: Yuji Nagai , Taku Kato , Tatsuyuki Matsushita
发明人: Yuji Nagai , Taku Kato , Tatsuyuki Matsushita
IPC分类号: H04L9/32
CPC分类号: G06F21/602 , G06F21/10 , G06F21/74 , G06F2221/0711 , G06F2221/0748 , G06F2221/0771 , G06Q20/35765 , G07F7/1016 , H04L9/3234
摘要: According to one embodiment, a device includes a cell array including an ordinary area, a hidden area, and an identification information record area in which identification information which defines a condition for accessing the hidden area is recorded. An authentication circuit performs authentication. A sensing circuit recognizes information recorded in the identification information storage area, determines the information recorded in the identification information record area when an access request selects the hidden area, validates an access to the hidden area when determined that the identification information is recorded, and invalidates an access to the hidden area when determined that the identification information is not recorded.
摘要翻译: 根据一个实施例,一种装置包括一个单元阵列,包括普通区域,隐藏区域和识别信息记录区域,其中记录了定义用于访问隐藏区域的条件的识别信息。 认证电路执行认证。 感测电路识别记录在识别信息存储区域中的信息,当访问请求选择隐藏区域时,确定记录在识别信息记录区域中的信息,当确定识别信息被记录时验证对隐藏区域的访问,并且无效 当确定没有记录识别信息时对隐藏区域的访问。
-
公开(公告)号:US08726024B2
公开(公告)日:2014-05-13
申请号:US13523128
申请日:2012-06-14
申请人: Yuji Nagai , Taku Kato , Tatsuyuki Matsushita
发明人: Yuji Nagai , Taku Kato , Tatsuyuki Matsushita
IPC分类号: H04L9/32
CPC分类号: G06F12/1408 , G06F2212/1052 , H04L9/0861 , H04L9/3273
摘要: According to one embodiment, a authentication method comprising: generating a second key by the first key, the first key being stored in a memory and being prohibited from being read from outside; generating a session key by the second key; generating first authentication information, the secret identification information stored in a memory and being prohibited from being read from outside; transmitting encrypted secret identification information to an external device and receiving second authentication information from the external device, the encrypted secret identification information stored in a memory and readable, the second authentication information generated based on the encrypted secret identification information; and determining whether the first authentication information and the second authentication information match.
摘要翻译: 根据一个实施例,一种认证方法,包括:通过第一密钥生成第二密钥,第一密钥存储在存储器中并被禁止从外部读取; 通过第二个密钥生成会话密钥; 生成第一认证信息,存储在存储器中并被禁止从外部读取的秘密识别信息; 向外部设备发送加密的秘密识别信息并从外部设备接收第二认证信息,所述加密的秘密识别信息存储在存储器中并且可读,所述第二认证信息是基于所述加密的秘密识别信息生成的; 以及确定所述第一认证信息和所述第二认证信息是否匹配。
-
公开(公告)号:US20140047239A1
公开(公告)日:2014-02-13
申请号:US14001437
申请日:2011-09-26
申请人: Yuji Nagai , Taku Kato , Hiroyuki Sakamoto
发明人: Yuji Nagai , Taku Kato , Hiroyuki Sakamoto
IPC分类号: H04L9/32
CPC分类号: H04L9/32 , H04L9/3273 , H04L2209/30 , H04L2209/34 , H04L2209/60 , H04L2209/805
摘要: According to one embodiment, an authenticatee includes a memory configured to store a plurality of pieces of secret information XY and a plurality of pieces of secret information XYE which are created by encrypting the plurality of pieces of secret information XY, a generation module configured to generate a random number A, a generation module configured to generate a random number D which is composed of at least a part of the generated random number A and a random number B which is received, a calculating module configured to generate data C by executing a compression operation with respect to at least the random number D and the secret information XY loaded from the memory, a generation module configured to generate data ν, and a bit-by-bit addition module configured to calculate an result Z from the data ν to the data C.
摘要翻译: 根据一个实施例,认证者包括被配置为存储通过加密多个秘密信息XY而创建的多个秘密信息XY和多个秘密信息XYE的存储器,生成模块被配置为生成 随机数A,生成模块,被配置为生成由生成的随机数A的至少一部分和接收的随机数B组成的随机数D;计算模块,被配置为通过执行压缩来生成数据C 关于至少从存储器加载的随机数D和秘密信息XY的操作,被配置为生成数据nu的生成模块以及被配置为从数据nu计算结果Z的逐位相加模块 数据C.
-
公开(公告)号:US08650398B2
公开(公告)日:2014-02-11
申请号:US13523208
申请日:2012-06-14
申请人: Yuji Nagai , Taku Kato , Tatsuyuki Matsushita
发明人: Yuji Nagai , Taku Kato , Tatsuyuki Matsushita
IPC分类号: G06F21/00
CPC分类号: G06F12/1408 , H04L9/0877 , H04L9/0897 , H04L9/3234 , H04L9/3271
摘要: A device includes a first memory area being used to store a first key and unique secret identification information, the first memory area being restricted from being read and written from outside; a second memory area being used to store encrypted secret identification information generated by encrypting the secret identification information, the second memory area being allowed to be read-only from outside; a third memory area being readable and writable from outside; a first data generator configured to generate a second key by using the first key; a second data generator configured to generate a session key by using the second key; and a one-way function processor configured to generate an authentication information by processing the secret identification information with the session key in one-way function operation, wherein the encrypted secret identification information and the authentication information are output to outside.
摘要翻译: 一种设备包括用于存储第一密钥的第一存储区域和唯一的秘密识别信息,所述第一存储区域被限制为从外部读取和写入; 第二存储区域用于存储通过加密秘密识别信息而生成的加密的秘密识别信息,第二存储区域被允许从外部只读; 第三存储区域可从外部读取和写入; 配置为通过使用所述第一密钥生成第二密钥的第一数据生成器; 第二数据生成器,被配置为通过使用所述第二密钥来产生会话密钥; 以及单向功能处理器,被配置为通过在单向功能操作中用会话密钥处理秘密识别信息来生成认证信息,其中将加密的秘密识别信息和认证信息输出到外部。
-
公开(公告)号:US20140032910A1
公开(公告)日:2014-01-30
申请号:US13623318
申请日:2012-09-20
CPC分类号: G06F21/445 , G06F21/10 , G06F21/78 , H04L9/0844 , H04L2209/60
摘要: According to one embodiment, a storage system includes a host device, a secure storing medium, and a non-secure storing medium. The secure storing medium includes a memory provided with a protected first storing region which stores secret information sent from the host device, and a second storing region which stores encoded contents, and a controller which carries out authentication processing for accessing the first storing region. The host device and the secure storing medium produce a bus key which is shared only by the host device and the secure storing medium by authentication processing, and which is used for encoding processing when information of the first storing region is sent and received between the host device and the secure storing medium. The host device has the capability to request the secure storing medium to send a status.
摘要翻译: 根据一个实施例,存储系统包括主机设备,安全存储介质和非安全存储介质。 安全存储介质包括存储器,该存储器设置有存储从主机设备发送的秘密信息的受保护的第一存储区域和存储已编码内容的第二存储区域,以及执行用于访问第一存储区域的认证处理的控制器。 主机设备和安全存储介质产生总线密钥,该总线密钥仅由主机设备和安全存储介质通过认证处理共享,并且用于在主机之间发送和接收第一存储区域的信息时的编码处理 设备和安全存储介质。 主机设备具有请求安全存储介质发送状态的能力。
-
公开(公告)号:US20140032868A1
公开(公告)日:2014-01-30
申请号:US13633369
申请日:2012-10-02
IPC分类号: G06F12/14
CPC分类号: G06F12/14 , G06F12/1466 , G06F21/85 , G06F21/87 , Y02D10/13
摘要: According to one embodiment, a storage system includes a host device, 2 storing medium. The secure storing medium includes: a memory provided with a protected first storing region which stores secret information sent from the host device, and a second storing region which stores encoded contents; and a controller which carries out authentication processing for accessing the first storing region. The host device and the secure storing medium produce a bus key which is shared only by the host device and the secure storing medium by authentication processing, and which is used for encoding processing when information of the first storing region is sent and received between the host device and the secure storing medium. The host device has the capability to request the secure storing medium to send a status.
-
公开(公告)号:US20140032867A1
公开(公告)日:2014-01-30
申请号:US13633361
申请日:2012-10-02
IPC分类号: G06F12/14
CPC分类号: G06F12/1408 , G06F12/1466 , G06F21/79 , Y02D10/13
摘要: According to one embodiment, a storage system includes a host device, 2 storing medium. The secure storing medium includes: a memory provided with a protected first storing region which stores secret information sent from the host device, and a second storing region which stores encoded contents; and a controller which carries out authentication processing for accessing the first storing region. The host device and the secure storing medium produce a bus key which is shared only by the host device and the secure storing medium by authentication processing, and which is used for encoding processing when information of the first storing region is sent and received between the host device and the secure storing medium. The host device has the capability to request the secure storing medium to send a status.
摘要翻译: 根据一个实施例,存储系统包括主机设备,2存储介质。 安全存储介质包括:存储器,其设置有存储从主机设备发送的秘密信息的受保护的第一存储区域和存储编码内容的第二存储区域; 以及执行用于访问第一存储区域的认证处理的控制器。 主机设备和安全存储介质产生总线密钥,该总线密钥仅由主机设备和安全存储介质通过认证处理共享,并且用于在主机之间发送和接收第一存储区域的信息时的编码处理 设备和安全存储介质。 主机设备具有请求安全存储介质发送状态的能力。
-
公开(公告)号:US20130339756A1
公开(公告)日:2013-12-19
申请号:US13523485
申请日:2012-06-14
申请人: Yuji NAGAI , Taku Kato , Tatsuyuki Matsushita
发明人: Yuji NAGAI , Taku Kato , Tatsuyuki Matsushita
IPC分类号: G06F12/14
CPC分类号: G06F12/1408 , G06F21/44 , G06F21/79 , H04L9/0816
摘要: According to one embodiment, a manufacturing method of a device to be authenticated, wherein the device includes a first memory area which is prohibited from data-reading and data-writing after shipping from a memory vendor; a second memory area which is allowed to data-read from outside after shipping from the memory vendor; and a third memory area which is allowed to data-read and data-write from outside after sipping from the memory vendor.
摘要翻译: 根据一个实施例,一种要认证的设备的制造方法,其中所述设备包括在从存储器供应商运送之后禁止数据读取和数据写入的第一存储区域; 第二存储器区域,其在从存储器供应商运送之后被允许从外部进行数据读取; 以及第三存储器区域,其在从存储器供应商处理之后被允许从外部进行数据读取和数据写入。
-
公开(公告)号:US20130339732A1
公开(公告)日:2013-12-19
申请号:US13524805
申请日:2012-06-15
申请人: Yuji NAGAI , Taku KATO , Tatsuyuki MATSUSHITA
发明人: Yuji NAGAI , Taku KATO , Tatsuyuki MATSUSHITA
CPC分类号: G06F21/602 , G06F21/10 , G06F21/74 , G06F2221/0711 , G06F2221/0748 , G06F2221/0771 , G06Q20/35765 , G07F7/1016 , H04L9/3234
摘要: According to one embodiment, a device includes a cell array including an ordinary area, a hidden area, and an identification information record area in which identification information which defines a condition for accessing the hidden area is recorded. An authentication circuit performs authentication. A sensing circuit recognizes information recorded in the identification information storage area, determines the information recorded in the identification information record area when an access request selects the hidden area, validates an access to the hidden area when determined that the identification information is recorded, and invalidates an access to the hidden area when determined that the identification information is not recorded.
摘要翻译: 根据一个实施例,一种装置包括一个单元阵列,包括普通区域,隐藏区域和识别信息记录区域,其中记录了定义用于访问隐藏区域的条件的识别信息。 认证电路执行认证。 感测电路识别记录在识别信息存储区域中的信息,当访问请求选择隐藏区域时,确定记录在识别信息记录区域中的信息,当确定识别信息被记录时验证对隐藏区域的访问,并且无效 当确定没有记录识别信息时对隐藏区域的访问。
-
-
-
-
-
-
-
-
-