Systems and methods of trusted ownership re-key with attestation

    公开(公告)号:US11057207B2

    公开(公告)日:2021-07-06

    申请号:US16235507

    申请日:2018-12-28

    Abstract: The present disclosure is directed to systems and methods of providing a trusted ownership re-key with attestation in a device. The device includes processor circuitry that incorporates TEE circuitry. The TEE circuitry generates an AAIK and encrypts the AAIK using HMAC. The TEE circuitry forms a first message using the HMAC, a public DAK assigned to the device, and a device signature. The TEE circuitry sends an encrypted first message to the manufacturer. The manufacturer validates the device based on the public DAK and generates a second message that includes the HMAC and a manufacturer signature. The encrypted second message is communicated to the TEE circuitry. Upon receipt the TEE circuitry validates the AAIK data in the second message against the most recent AAIK and generates a third message that includes the HMAC, the original AAIK, the RHK and the manufacturer attestation. The AAIK thus remains unknown to both the current owner and the manufacturer.

Patent Agency Ranking