System for establishing a cryptographic key depending on a physical system
    1.
    发明授权
    System for establishing a cryptographic key depending on a physical system 有权
    用于根据物理系统建立加密密钥的系统

    公开(公告)号:US09252960B2

    公开(公告)日:2016-02-02

    申请号:US13254356

    申请日:2010-02-10

    摘要: In systems for establishing a cryptographic key depending on a physical uncloneable function (PUF) it may be a problem that internal information correlated with the cryptographic key is leaked to the outside of the system via a side-channel. To mitigate this problem a cryptographic system for reproducibly establishing a cryptographic key is presented. The system comprises a physical system comprising a physical, at least partially random, configuration of components from which an initial bit-string is derived. An error corrector corrects deviations occurring in the initial bit-string. Through the use of randomization the error corrector operates on a randomized data. Information leaking through a side channel is thereby reduced. After error correction a cryptographic key may be derived from the initial bit-string.

    摘要翻译: 在用于根据物理不可克隆功能(PUF)建立加密密钥的系统中,可能是与密码密钥相关的内部信息经由侧信道泄漏到系统外部的问题。 为了减轻这个问题,提出了一种用于可重复地建立加密密钥的加密系统。 该系统包括物理系统,其包括从其导出初始位串的部件的物理的,至少部分随机的配置。 错误校正器纠正在初始位串中发生的偏差。 通过使用随机化,误差校正器对随机数据进行操作。 因此,通过侧通道泄漏的信息被减少。 在纠错之后,可以从初始位串导出加密密钥。

    SYSTEM FOR ESTABLISHING A CRYPTOGRAPHIC KEY DEPENDING ON A PHYSICAL SYSTEM
    2.
    发明申请
    SYSTEM FOR ESTABLISHING A CRYPTOGRAPHIC KEY DEPENDING ON A PHYSICAL SYSTEM 有权
    建立依靠身体系统的关键词的系统

    公开(公告)号:US20120072737A1

    公开(公告)日:2012-03-22

    申请号:US13254356

    申请日:2010-02-10

    IPC分类号: G06F21/22 H03M13/05

    摘要: In systems for establishing a cryptographic key depending on a physical uncloneable function (PUF) it may be a problem that internal information correlated with the cryptographic key is leaked to the outside of the system via a side-channel. To mitigate this problem a cryptographic system for reproducibly establishing a cryptographic key is presented. The system comprises a physical system comprising a physical, at least partially random, configuration of components from which an initial bit-string is derived. An error corrector corrects deviations occurring in the initial bit-string. Through the use of randomization the error corrector operates on a randomized data. Information leaking through a side channel is thereby reduced. After error correction a cryptographic key may be derived from the initial bit-string.

    摘要翻译: 在用于根据物理不可克隆功能(PUF)建立加密密钥的系统中,可能是与密码密钥相关的内部信息经由侧信道泄漏到系统外部的问题。 为了减轻这个问题,提出了一种用于可重复地建立加密密钥的加密系统。 该系统包括物理系统,其包括从其导出初始位串的部件的物理的,至少部分随机的配置。 错误校正器纠正在初始位串中发生的偏差。 通过使用随机化,误差校正器对随机数据进行操作。 因此,通过侧通道泄漏的信息被减少。 在纠错之后,可以从初始位串导出加密密钥。

    Physical unclonable function with improved start-up behavior
    3.
    发明授权
    Physical unclonable function with improved start-up behavior 有权
    具有改善启动行为的物理不可克隆功能

    公开(公告)号:US08848477B2

    公开(公告)日:2014-09-30

    申请号:US13877656

    申请日:2011-09-28

    IPC分类号: G11C5/14

    摘要: An electric physical unclonable function (PUF) (100) is provided comprising a semiconductor memory element (110) connectable to a PUF control means for reading content from the memory element and for deriving at least in part from said content a digital identifier, such as a secret key. Upon powering the memory element it settles into one of at least two different stable states. The particular stable state into which the memory element settles is dependent at least in part upon random physical characteristics of the memory element introduced during manufacture of the memory element. Settling of the memory element is further dependent upon a control input (112) of the memory element. The electric physical unclonable function comprises shielding means (142, 144) for shielding, during a time period including the power-up of the memory element and lasting at least until the settling of the memory element, the control input from receiving control signals upon which the particular stable state into which the memory element settles is dependent. In this way, the dependency of the memory element on its physical characteristics is improved, and dependency on possibly irreproducible control signals is reduced.

    摘要翻译: 提供电物理不可克隆功能(PUF)(100),其包括可连接到PUF控制装置的半导体存储元件(110),用于从存储元件读取内容,并且至少部分地从所述内容导出数字标识符,诸如 秘密钥匙 在为存储器元件供电时,它稳定在至少两个不同的稳定状态之一中。 存储元件稳定的特定稳定状态至少部分地取决于在存储元件的制造期间引入的存储元件的随机物理特性。 存储器元件的稳定还取决于存储元件的控制输入(112)。 电物理不可克隆功能包括屏蔽装置(142,144),用于在包括存储元件的上电的持续时间期间屏蔽屏蔽装置,并持续至少直到存储元件的稳定,控制输入从其上接收控制信号 存储元件稳定的特定稳定状态是依赖的。 以这种方式,存储元件对其物理特性的依赖性得到改善,并且减少了可能不可再生的控制信号的依赖性。

    Physically unclonable function with tamper prevention and anti-aging system
    4.
    发明授权
    Physically unclonable function with tamper prevention and anti-aging system 有权
    具有防篡改和抗老化系统的物理不可克隆功能

    公开(公告)号:US08694856B2

    公开(公告)日:2014-04-08

    申请号:US13390255

    申请日:2010-08-06

    IPC分类号: G11C29/00

    摘要: Systems for generating an identifying response pattern comprising a memory (120) used as a physically unclonable function configured for generating a response pattern dependent on physical, at least partially random characteristics of said memory may be vulnerable to freezing attacks and to aging. A memory-overwriting device (110) configured for overwriting at least a first portion of the plurality of memory locations to obscure the response pattern in the memory avoids freezing attacks. An anti-degradation device (160) configured to write to each respective location of a second portion of the plurality of memory locations an inverse of a response previously read from the memory reduces the effects of aging.

    摘要翻译: 用于生成识别响应模式的系统包括用作被配置用于生成依赖于所述存储器的物理,至少部分随机特性的响应模式的物理不可克隆功能的存储器(120),其易于受到冻结攻击和老化。 被配置为重写多个存储器位置的至少第一部分以遮蔽存储器中的响应模式的存储器重写设备(110)避免了冻结攻击。 一种抗劣化装置(160),被配置为写入多个存储器位置的第二部分的每个相应位置,先前从存储器读取的响应的反相减少了老化的影响。

    PHYSICALLY UNCLONABLE FUNCTION WITH TAMPER PREVENTION AND ANTI-AGING SYSTEM
    5.
    发明申请
    PHYSICALLY UNCLONABLE FUNCTION WITH TAMPER PREVENTION AND ANTI-AGING SYSTEM 有权
    具有防篡改和抗衰老系统的物理不可靠功能

    公开(公告)号:US20120179952A1

    公开(公告)日:2012-07-12

    申请号:US13390255

    申请日:2010-08-06

    IPC分类号: G06F11/10 G06F12/06

    摘要: Systems for generating an identifying response pattern comprising a memory (120) used as a physically unclonable function configured for generating a response pattern dependent on physical, at least partially random characteristics of said memory may be vulnerable to freezing attacks and to aging. A memory-overwriting device (110) configured for overwriting at least a first portion of the plurality of memory locations to obscure the response pattern in the memory avoids freezing attacks. An anti-degradation device (160) configured to write to each respective location of a second portion of the plurality of memory locations an inverse of a response previously read from the memory reduces the effects of aging.

    摘要翻译: 用于生成识别响应模式的系统包括用作被配置用于生成依赖于所述存储器的物理,至少部分随机特性的响应模式的物理不可克隆功能的存储器(120),其易于受到冻结攻击和老化。 被配置为重写多个存储器位置的至少第一部分以遮蔽存储器中的响应模式的存储器重写设备(110)避免了冻结攻击。 一种抗劣化装置(160),被配置为写入多个存储器位置的第二部分的每个相应位置,先前从存储器读取的响应的反相减少了老化的影响。

    Security Device
    6.
    发明申请
    Security Device 审中-公开
    安全设备

    公开(公告)号:US20080222426A1

    公开(公告)日:2008-09-11

    申请号:US11815660

    申请日:2006-01-26

    IPC分类号: H04L9/32

    CPC分类号: G07C9/00087

    摘要: A security device comprising means for authenticating an entity using biometric data, characterized by means for alternatively authenticating the entity using a security code such as a personal identification number. Also a system configured to grant an authorization upon a successful authorization by the security device, in which the authorization granted after the authentication using the security code is restricted in scope compared to the authorization granted after the authentication using the biometric data.

    摘要翻译: 一种安全装置,其包括用于使用生物特征数据认证实体的装置,其特征在于用于使用诸如个人识别号码的安全码替代地认证所述实体的装置。 还有一种被配置为在安全设备的成功授权之后授予授权的系统,其中使用安全码的认证之后授权的授权在与使用生物特征数据的认证之后授予的授权相比较的范围上被限制。

    Distributed PUF
    7.
    发明授权
    Distributed PUF 有权
    分布式PUF

    公开(公告)号:US08699714B2

    公开(公告)日:2014-04-15

    申请号:US13129462

    申请日:2009-11-17

    IPC分类号: H04L9/08

    CPC分类号: H04L9/0866 G06F21/602

    摘要: An electronic system (100) having a memory (1 12, 1 14, 1 16) with multiple memory locations, each specific memory location of the multiple memory locations being arranged to produce a respective value, the respective value depending on a physical, at least partially random, configuration of components constructing the specific memory location, the electronic system comprises a key extraction means (130) arranged to retrieve multiple values in a first order from the multiple memory locations and for determining a reproducible cryptographic key in dependency on the multiple values, characterized in that the electronic system further comprises a re-ordering (120) means in between the memory and the key extraction means for providing the multiple values to the key extraction means in a second order, different from the first order, prior to determining the cryptographic key.

    摘要翻译: 具有多个存储器位置的存储器(112,114,116)的电子系统(100),所述多个存储器位置的每个特定存储器位置被布置成产生相应的值,所述相应值取决于物理,在 构成特定存储器位置的组件的最少部分随机配置,电子系统包括密钥提取装置(130),其被安排为从多个存储器单元中以一级顺序检索多个值,并且依赖于多个存储器位置来确定可再现密码密钥 值,其特征在于,所述电子系统还包括在所述存储器和所述密钥提取装置之间的重新排序(120)装置,用于在所述密钥提取装置之前以与所述第一顺序不同的第二顺序向所述密钥提取装置提供所述多个值 确定密码密钥。

    Extended functionality of RFID devices
    8.
    发明授权
    Extended functionality of RFID devices 有权
    RFID设备的扩展功能

    公开(公告)号:US08502669B2

    公开(公告)日:2013-08-06

    申请号:US12441582

    申请日:2007-09-19

    IPC分类号: G08B13/14

    CPC分类号: G06K19/0723

    摘要: It is described a RFID device (231a, 231b, 231c, 331) comprising a data memory (236) and an electronic circuit arrangement (237, 238, 239, 247) coupled thereto. The electronic circuit arrangement has a first and a second operational configuration, wherein by receiving a control command (250a) the electronic circuit arrangement can be switched irreversibly from the first to the second configuration. The RFID device further comprises a communication interface (245) being coupled to the electronic circuit arrangement. In the first configuration the RFID device is adapted to communicate with a standard RFID reader (110) via the communication interface. In the second configuration the communication with the standard RFID reader is disabled and the RFID device is adapted to communicate with a readout-RFID device (370). The RFID device may be equipped with a secondary communication interface that can be used to communicate with the RFID device in a privacy-preserving manner. After the RFID device has been disabled, the secondary interface can be used to access data in a secure manner.

    摘要翻译: 描述了包括数据存储器(236)和与其耦合的电子电路装置(237,238,239,247)的RFID装置(231a,231b,231c,331)。 电子电路装置具有第一和第二操作配置,其中通过接收控制命令(250a),电子电路装置可以从第一配置到第二配置不可逆地切换。 RFID设备还包括耦合到电子电路装置的通信接口(245)。 在第一配置中,RFID设备适于经由通信接口与标准RFID读取器(110)进行通信。 在第二配置中,禁止与标准RFID读取器的通信,并且RFID设备适于与读出RFID设备(370)通信。 RFID设备可以配备有可以以隐私保护的方式与RFID设备通信的辅助通信接口。 在RFID设备被禁用之后,辅助接口可以用于以安全的方式访问数据。

    Secure Sensor Chip
    10.
    发明申请
    Secure Sensor Chip 审中-公开
    安全传感器芯片

    公开(公告)号:US20080106605A1

    公开(公告)日:2008-05-08

    申请号:US11577355

    申请日:2005-10-06

    IPC分类号: G06K9/20 H04N5/225

    摘要: A method and device for providing a secure sensor chip (1) for recording digital information regarding at least one physical parameter, wherein the recording later can be verified with respect to its authenticity, whether the at least one physical parameter was indeed recorded by the specified chip (1) or not, wherein this is accomplished by providing the sensor chip (1) with a Controlled Physical Random Function (CPUF) in the form of a coating (5) and wherein both the sensor chip (1) and a micro controller (2) controlling all digital inputs (3) and outputs (4) of the sensor chip are both embedded in the CPUF coating (5).

    摘要翻译: 一种用于提供用于记录关于至少一个物理参数的数字信息的安全传感器芯片(1)的方法和装置,其中可以根据其真实性来验证以后的记录,所述至少一个物理参数是否确实由指定的 芯片(1),其中这是通过向传感器芯片(1)提供涂层(5)形式的受控物理随机功能(CPUF)来实现的,并且其中传感器芯片(1)和微控制器 (2)控制传感器芯片的所有数字输入(3)和输出(4)均嵌入在CPUF涂层(5)中。