Apparatus and method for securing a debugging session
    2.
    发明授权
    Apparatus and method for securing a debugging session 有权
    用于保护调试会话的装置和方法

    公开(公告)号:US09450947B2

    公开(公告)日:2016-09-20

    申请号:US14282043

    申请日:2014-05-20

    Abstract: A device executes debugging instructions received from a debugging computer. The device receives a debugging establishment request from the debugging computer. The device transmits a unique identifier associated with the device and a secured expiration value to the debugging computer. The device receives a transport layer security (TLS) certificate from the debugging computer and establishes a secured and authenticated link with the debugging computer using the TLS certificate. The device enables a debugging mode, responsive to determining that an identifier in the TLS certificate matches the unique identifier and that a secured expiration value in the TLS certificate is valid and within a predefined validity range, and executes, in the debugging mode, debugging instructions received from the debugging computer.

    Abstract translation: 设备执行从调试计算机接收的调试指令。 设备从调试计算机接收调试建立请求。 设备将与设备相关联的唯一标识符和安全的到期值发送到调试计算机。 设备从调试计算机接收传输层安全性(TLS)证书,并使用TLS证书与调试计算机建立安全和经过身份验证的链接。 该设备响应于确定TLS证书中的标识符与唯一标识符匹配并且TLS证书中的安全到期值有效并在预定义的有效范围内启用调试模式,并且在调试模式下执行调试指令 从调试电脑接收。

    Device, system and method for installing encrypted data

    公开(公告)号:US11113424B2

    公开(公告)日:2021-09-07

    申请号:US16405454

    申请日:2019-05-07

    Abstract: A device, system and method for installing encrypted data are provided. A device includes a processor comprising: immutable memory storing preconfigured trust anchor data; and a module storing preconfigured non-exportable data. The processor is configured to: receive an encrypted common protection key, encrypted using a manufacturing protection key, and an encrypted distribution private key, encrypted using a common protection key; obtain the manufacturing protection key using the preconfigured trust anchor data and the preconfigured non-exportable data; decrypt the encrypted common protection key using the manufacturing protection key to obtain the common protection key; decrypt the encrypted distribution private key using the common protection key to obtain a distribution private key; receive an encrypted data package including image-at-rest data encrypted with an image-at-rest key, the encrypted data package including encryption data for obtaining the image-at-rest key using the distribution private key; and install the encrypted data package at the memory.

Patent Agency Ranking