-
公开(公告)号:US20160028728A1
公开(公告)日:2016-01-28
申请号:US14811473
申请日:2015-07-28
Applicant: CRYPTOGRAPHY RESEARCH, INC.
Inventor: Craig E. Hampel , Jean-Michel Cioranesco , Rodrigo Portella do Canto , Guilherme Ozari de Almeida , Christopher Gori
CPC classification number: H04L63/0876 , G06F12/1408 , G06F21/6209 , G06F21/71 , G06F2212/1052 , G06F2221/2105 , G06F2221/2141 , G06F2221/2145 , H04L9/3234 , H04L9/3242 , H04L9/3247 , H04L63/10
Abstract: Systems and methods for implementing access control by systems-on-chip (SoCs). An example SoC may comprise an access control unit employed to: receive a message comprising an access control data item; validate the message using a value of a message digest function of contents of the message and a value of a state variable reflecting a state of communications between the access control unit and a programming agent that has initiated the message, wherein the value of the state variable is derived from a previous value of the message digest function calculated within a current communication session between the access control unit and the programming agent; update the state variable using the value of the message digest function of the contents of the message; and control, using the access control data item, access by an initiator device to a target device.
Abstract translation: 通过片上系统(SoC)实现访问控制的系统和方法。 示例SoC可以包括访问控制单元,其用于:接收包括访问控制数据项的消息; 使用所述消息的内容的消息摘要功能的值和反映所述访问控制单元与已经发起所述消息的编程代理之间的通信状态的状态变量的值来验证所述消息,其中,所述状态变量的值 从在访问控制单元和编程代理之间的当前通信会话中计算的消息摘要功能的先前值导出; 使用消息内容的消息摘要功能的值更新状态变量; 并且使用访问控制数据项来控制由发起者设备到目标设备的访问。
-
公开(公告)号:US10482275B2
公开(公告)日:2019-11-19
申请号:US15111972
申请日:2015-01-27
Applicant: Cryptography Research, Inc.
Inventor: Craig E. Hampel , Jean-Michel Cioranesco , Rodrigo Portella do Canto , Guilherme Ozari de Almeida
Abstract: Systems and methods for implementing access control by systems-on-chip (SoCs). An example SoC may comprise: an access control unit comprising a secure memory for storing access control data, the access control unit to: receive a message comprising an access control data item; store the access control data item in the secure memory; perform at least one of: authenticating the message using a message digest function, or validating contents of the secure memory by comparing a stored reference value with a calculated value of a message digest function of the contents of the secure memory; and control, in view of the access control data item, access by an initiator device to a target device.
-
公开(公告)号:US09853974B2
公开(公告)日:2017-12-26
申请号:US14811473
申请日:2015-07-28
Applicant: CRYPTOGRAPHY RESEARCH, INC.
Inventor: Craig E. Hampel , Jean-Michel Cioranesco , Rodrigo Portella do Canto , Guilherme Ozari de Almeida , Christopher Gori
CPC classification number: H04L63/0876 , G06F12/1408 , G06F21/6209 , G06F21/71 , G06F2212/1052 , G06F2221/2105 , G06F2221/2141 , G06F2221/2145 , H04L9/3234 , H04L9/3242 , H04L9/3247 , H04L63/10
Abstract: Systems and methods for implementing access control by systems-on-chip (SoCs). An example SoC may comprise an access control unit employed to: receive a message comprising an access control data item; validate the message using a value of a message digest function of contents of the message and a value of a state variable reflecting a state of communications between the access control unit and a programming agent that has initiated the message, wherein the value of the state variable is derived from a previous value of the message digest function calculated within a current communication session between the access control unit and the programming agent; update the state variable using the value of the message digest function of the contents of the message; and control, using the access control data item, access by an initiator device to a target device.
-
公开(公告)号:US11463236B2
公开(公告)日:2022-10-04
申请号:US16466983
申请日:2017-12-04
Applicant: CRYPTOGRAPHY RESEARCH, INC.
Inventor: Rodrigo Portella do Canto , Elke De Mulder , Pankaj Rohatgi , Matthew Pond Baker
IPC: H04L9/06
Abstract: An indication of a mode of operation to be performed with a block cipher may be received. Logic associated with the block cipher may be configured based on the indicated mode of operation to be performed with the block cipher. Furthermore, an input data and a mask data may be received. The input data may be combined with the mask data to generate a masked input data based on the configured logic. The masked input data may be provided to the block cipher based on the configured logic and an output data may be generated with the block cipher based on the provided masked input data.
-
公开(公告)号:US20160350549A1
公开(公告)日:2016-12-01
申请号:US15111972
申请日:2015-01-27
Applicant: CRYPTOGRAPHY RESEARCH, INC.
Inventor: Craig E. Hampel , Jean-Michel Cioranesco , Rodrigo Portella do Canto , Guilherme Ozari de Almeida
CPC classification number: G06F21/6218 , G06F21/44 , G06F21/57 , G06F21/755 , G06F21/85 , H04L63/0227 , H04L63/06 , H04L63/08 , H04L63/0876 , H04L63/101 , H04L63/123
Abstract: Systems and methods for implementing access control by systems-on-chip (SoCs). An example SoC may comprise: an access control unit comprising a secure memory for storing access control data, the access control unit to: receive a message comprising an access control data item; store the access control data item in the secure memory; perform at least one of: authenticating the message using a message digest function, or validating contents of the secure memory by comparing a stored reference value with a calculated value of a message digest function of the contents of the secure memory; and control, in view of the access control data item, access by an initiator device to a target device.
Abstract translation: 通过片上系统(SoC)实现访问控制的系统和方法。 示例SoC可以包括:访问控制单元,包括用于存储访问控制数据的安全存储器,所述访问控制单元用于:接收包括访问控制数据项的消息; 将访问控制数据项存储在安全存储器中; 执行以下至少之一:使用消息摘要功能认证所述消息,或者通过将所存储的参考值与所述安全存储器的内容的消息摘要功能的计算值进行比较来验证所述安全存储器的内容; 并且鉴于访问控制数据项,控制启动器设备到目标设备的访问。
-
-
-
-