SECURE KEY DELIVERY OVER A NON-SECURE CONNECTION

    公开(公告)号:US20240305447A1

    公开(公告)日:2024-09-12

    申请号:US18186442

    申请日:2023-03-20

    CPC classification number: H04L9/0822 H04L9/0825 H04L9/14

    Abstract: Approaches in accordance with various illustrative embodiments provide for the encryption of communications going into and out of a device, such as a chip or proprietary bus. The encryption can occur in a central Root-of-Trust (ROT), which can include agents for individual communication protocols to generate session keys used to encrypt communications for individual sessions, and the data can be sent to a crypto engine for the respective communication protocol. A key tunnel unit can be used to receive a wrapped session key over the public bus and then unwrap the key in hardware, then able to then transmit the unwrapped session key to the corresponding crypto engine without exposing the session key to software executing on the device outside the RoT. The receiving inline crypto engine can then use that session key to encrypt session data to be transmitted to a separate device or destination.

Patent Agency Ranking