Method and apparatus for detection of a speckle based physically unclonable function
    2.
    发明授权
    Method and apparatus for detection of a speckle based physically unclonable function 失效
    用于检测基于散斑的物理不可克隆功能的方法和装置

    公开(公告)号:US07432485B2

    公开(公告)日:2008-10-07

    申请号:US10582383

    申请日:2004-11-24

    IPC分类号: G02B7/04 H01L27/00

    CPC分类号: G02B27/48 H04L9/3278

    摘要: An optical arrangement of at least a coherent light source (1), a strongly scattering object (5) (the PUF), and a pixe-lated photo-detector (6), wherein the pixels are comparable in size with the bright and dark patches of the speckle pattern produced by coherent radiation traversing the scattering object (5). Quantitively, the pixel size should be roughly λ/NA, where λ is the wave-length, and (i) NA=a/z for free-space geometry, with a being the beam radius and z being the distance between the exit surface of the PUF (5) and the pixelated detector (6), or (ii) NA is the numerical aperture of a lens (7) in an imaging geometry. In a preferred embodiment of the invention, there are tentative requirements that the pixels should be at least smaller than ηmaxλNA and preferably larger than ηmaxλ/NA, where (in an exemplary embodiment) ηmax=5 and ηmin=0.05, say. It will be understood by a person skilled in the art that the present invention is concerned with the optical arrangement of the PUF (5) and the photo-detector (6), rather than the photo -detector (6) per se.

    摘要翻译: 至少相干光源(1),强散射物体(5)(PUF)和像素照片检测器(6)的光学布置,其中像素在尺寸上与明暗相当 通过穿过散射物体(5)的相干辐射产生的斑点图案的斑块。 数量上,像素尺寸应该大致为λ/ NA,其中λ是波长,和(i)NA =自由空间几何的a / z,其中光束半径和z是出射表面之间的距离 的PUF(5)和像素化检测器(6),或者(ii)NA是成像几何形状中的透镜(7)的数值孔径。 在本发明的优选实施例中,暂时要求像素应该至少小于λmaxλNA,并且优选地大于等于λmax /λ,其中( 在一个示例性实施例中),例如,max = 5和eta分钟= 0.05。 本领域技术人员将理解,本发明涉及PUF(5)和光电检测器(6)的光学布置,而不是光电检测器(6)本身。

    Information Carrier Authentication With a Physical One-Way Function
    3.
    发明申请
    Information Carrier Authentication With a Physical One-Way Function 有权
    具有物理单向功能的信息载体认证

    公开(公告)号:US20080229119A1

    公开(公告)日:2008-09-18

    申请号:US12064089

    申请日:2006-08-16

    IPC分类号: G06F21/00

    摘要: The present invention relates to a method of enabling authentication of an information carrier (105), the information carrier (105) comprising a writeable part (155) and a physical token (125) arranged to supply a response upon receiving a challenge, the method comprising the following steps; applying a first challenge (165) to the physical token (125) resulting in a first response (170), and detecting the first response (170) of the physical token (125) resulting in a detected first response data (175), the method being characterized in that it further comprises the following steps; forming a first authentication data (180) based on information derived from the detected first response data (175), signing the first authentication data (180), and writing the signed authentication data (185) in the writeable part (155) of the information carrier (105). The invention further relates to a method of authentication of an information carrier (105), as well as to devices for both enabling authentication as well as authentication of an information carrier (105).

    摘要翻译: 本发明涉及一种能够认证信息载体(105)的方法,所述信息载体(105)包括布置成在接收到挑战时提供响应的可写入部分(155)和物理令牌(125),所述方法 包括以下步骤: 将第一挑战(165)应用于所述物理令牌(125),从而产生第一响应(170),并且检测所述物理令牌(125)的第一响应(170),从而产生检测到的第一响应数据(175) 其特征在于还包括以下步骤: 基于从检测到的第一响应数据(175)导出的信息,形成第一认证数据(180),对第一认证数据(180)进行签名,并将签名认证数据(185)写入信息的可写入部分(155) 载体(105)。 本发明还涉及信息载体(105)的认证方法,以及用于启用认证以及信息载体(105)的认证的设备。

    Integrated Physical Unclonable Function (Puf) with Combined Sensor and Display
    4.
    发明申请
    Integrated Physical Unclonable Function (Puf) with Combined Sensor and Display 审中-公开
    具有组合传感器和显示器的集成物理不可克隆功能(Puf)

    公开(公告)号:US20080231418A1

    公开(公告)日:2008-09-25

    申请号:US12090414

    申请日:2006-10-02

    IPC分类号: H04L9/32

    摘要: The present invention relates to a device (100, 200, 300) and a method for creating challenge-response pairs. A basic idea of the present invention is to create a challenge in the form of light emitted onto a light scattering element (103, 203), which light will be scattered in the light scattering element and detected as a response to the challenge by light detecting elements (105, 205). The light scattering element comprises a transmissive material which contains randomly distributed light scattering particles (104, 204), which scatter incident light such that a random speckle pattern is created and spread over the light detecting elements. This random pattern is detected by the light detecting elements, and is known as the response to the challenge (i.e. the light) that was supplied to the light scattering element. Hence, a challenge-response pair is created. Further, picture elements (109, 209) are included in the device in order to enable modification of the challenge created by a light source (101, 201) and supplied to the light scattering element. By activating picture elements and thereby modifying the challenge, one will also modify the response that corresponds to the modified challenge.

    摘要翻译: 本发明涉及一种用于创建挑战 - 响应对的装置(100,200,300)和方法。 本发明的基本思想是以光散射元件(103,203)的光的形式产生挑战,该光将散射在光散射元件中,并通过光检测作为对挑战的响应进行检测 元素(105,205)。 光散射元件包括透射材料,其包含随机分布的光散射粒子(104,204),其散射入射光,使得随机散斑图案被产生并分布在光检测元件上。 该随机图案由光检测元件检测,并且被称为对提供给光散射元件的挑战(即,光)的响应。 因此,创建了一个挑战 - 响应对。 此外,图像元素(109,209)包括在装置中,以便能够修改由光源(101,201)产生并提供给光散射元件的挑战。 通过激活图片元素并从而修改挑战,还将修改对应于修改的挑战的响应。

    Method and apparatus for information carrier authentication
    5.
    发明授权
    Method and apparatus for information carrier authentication 有权
    用于信息载体认证的方法和装置

    公开(公告)号:US08887309B2

    公开(公告)日:2014-11-11

    申请号:US12064089

    申请日:2006-08-16

    摘要: The present invention relates to a method of enabling authentication of an information carrier (105), the information carrier (105) comprising a writeable part (155) and a physical token (125) arranged to supply a response upon receiving a challenge, the method comprising the following steps; applying a first challenge (165) to the physical token (125) resulting in a first response (170), and detecting the first response (170) of the physical token (125) resulting in a detected first response data (175), the method being characterized in that it further comprises the following steps; forming a first authentication data (180) based on information derived from the detected first response data (175), signing the first authentication data (180), and writing the signed authentication data (185) in the writeable part (155) of the information carrier (105). The invention further relates to a method of authentication of an information carrier (105), as well as to devices for both enabling authentication as well as authentication of an information carrier (105).

    摘要翻译: 本发明涉及一种能够认证信息载体(105)的方法,所述信息载体(105)包括布置成在接收到挑战时提供响应的可写入部分(155)和物理令牌(125),所述方法 包括以下步骤: 将第一挑战(165)应用于所述物理令牌(125),从而产生第一响应(170),并且检测所述物理令牌(125)的第一响应(170),从而产生检测到的第一响应数据(175) 其特征在于还包括以下步骤: 基于从检测到的第一响应数据(175)导出的信息,形成第一认证数据(180),对第一认证数据(180)进行签名,并将签名认证数据(185)写入信息的可写入部分(155) 载体(105)。 本发明还涉及信息载体(105)的认证方法,以及用于启用认证以及信息载体(105)的认证的设备。

    AUTHENTICATING BANKNOTES OR OTHER PHYSICAL OBJECTS
    6.
    发明申请
    AUTHENTICATING BANKNOTES OR OTHER PHYSICAL OBJECTS 审中-公开
    认证银行或其他物理对象

    公开(公告)号:US20090008924A1

    公开(公告)日:2009-01-08

    申请号:US11913716

    申请日:2006-05-10

    摘要: A system 100 for authenticating a physical product 110, such as a banknote, including at least one physical product and a verification device 130. The physical product including a random distribution of a plurality of physically detectable particles 112 in a substrate of the product. In association with the physical product, a digital representation (114) is stored (‘stored representation’) of measured physical properties of the particles including an actual distribution of at least some of the particles, where the physical properties are measured through reflection and transmission. The verification device includes a measurement unit 450 for determining a digital representation (‘measured representation’) based on measurements of physical properties of the particles, including an actual distribution of at least some of the particles, through reflection and transmission; and a comparison unit 470 for comparing the measured representation with the stored representation.

    摘要翻译: 用于认证包括至少一个物理产品和验证装置130的物理产品110(例如钞票)的系统100.该物理产品包括多个物理上可检测的颗粒112在产品的基底中的随机分布。 与物理产品相关联,数字表示(114)被存储(“存储表示”)的粒子的测量物理性质,包括至少一些颗粒的实际分布,其中物理特性通过反射和透射来测量 。 验证装置包括测量单元450,用于通过反射和透射来确定包括粒子的至少一些的实际分布的颗粒的物理性质的数字表示(“测量表示”); 以及比较单元470,用于将测量的表示与存储的表示进行比较。

    OPTICAL SCANNING DEVICE
    7.
    发明申请
    OPTICAL SCANNING DEVICE 审中-公开
    光学扫描装置

    公开(公告)号:US20090153841A1

    公开(公告)日:2009-06-18

    申请号:US11573947

    申请日:2005-08-15

    IPC分类号: G06K9/74

    摘要: An optical identifier (1) can be used as a Physical Unclonable Function for producing a speckle pattern, as a response, upon being challenged with a light beam, as a challenge. This property can be used for identification of the optical identifier or of an object attached thereto, for the authentication of an information carrier or for generation of transaction keys. Since the response obtained in response to given challenge is highly sensitive to the relative position of the optical identifier, light beam source and detector for the speckle pattern, this relative position has to be accurately adjusted to reliably obtain the same response to a given challenge. To this aim, an optical identifier is proposed having an alignment area (3) for splitting an incident beam into distinct beams (6, 7) which can be detected as alignment signals (10a, 10b, 10c, 10d) on a detector (8) and used for the monitoring and for the adjustment of said relative position.

    摘要翻译: 作为挑战,光学标识符(1)可以用作用于产生斑点图案作为响应的物理不可克隆功能,作为响应。 该属性可以用于识别光学标识符或附加到其上的对象,用于信息载体的认证或用于生成交易密钥。 由于响应于给定挑战而获得的响应对于光学标识符,用于散斑图案的光束源和检测器的相对位置高度敏感,所以必须精确地调整该相对位置以可靠地获得对给定挑战的相同响应。 为此目的,提出一种具有用于将入射光束分成不同光束(6,7)的对准区域(3)的光学识别器,其可以被检测为检测器(8)上的对准信号(10a,10b,10c,10d) )并用于监视和调整所述相对位置。

    Optical identifier comprising randomly oriented partial faces
    8.
    发明授权
    Optical identifier comprising randomly oriented partial faces 失效
    光学标识符包括随机取向的部分面

    公开(公告)号:US07898648B2

    公开(公告)日:2011-03-01

    申请号:US11721389

    申请日:2005-12-12

    IPC分类号: G07D7/12 G06K9/00

    CPC分类号: H04L9/3278 G07D7/0032

    摘要: The invention relates to an optical identifier (30) for generating an identification signal in response to an incident radiation beam (12), and to a corresponding method. In order to provide an optical identifier (30) which can be produced by a simplified process and which has nevertheless a sufficient or even improved stability against environmental interferences it is proposed that said identifier comprises a carrier layer (32), at least partially transparent to said radiation beam (12), having a first scattering face (34) comprising a plurality of randomly oriented partial faces for scattering at least a part of said radiation beam (12), wherein said identification signal is formed by a scattered part of said radiation beam (12). Further, a device comprising said identifier, and a reading apparatus for identifying the identifier are proposed.

    摘要翻译: 本发明涉及一种用于响应于入射辐射束(12)产生识别信号的光学标识符(30)以及相应的方法。 为了提供可以通过简化的过程产生并且仍然具有足够或甚至改善的对环境干扰的稳定性的光学标识符(30),建议所述标识符包括载体层(32),至少部分地透明到 所述辐射束(12)具有包括多个随机取向的部分面的第一散射面(34),用于散射所述辐射束(12)的至少一部分,其中所述识别信号由所述辐射的散射部分形成 梁(12)。 此外,提出了包括所述标识符的装置和用于识别标识符的读取装置。

    OPTICAL IDENTIFIER COMPRISING RANDOMLY ORIENTED PARTIAL FACES
    9.
    发明申请
    OPTICAL IDENTIFIER COMPRISING RANDOMLY ORIENTED PARTIAL FACES 失效
    光学标识符包含随机指向的部分面

    公开(公告)号:US20090244518A1

    公开(公告)日:2009-10-01

    申请号:US11721389

    申请日:2005-12-12

    IPC分类号: G07D7/12

    CPC分类号: H04L9/3278 G07D7/0032

    摘要: The invention relates to an optical identifier (30) for generating an identification signal in response to an incident radiation beam (12), and to a corresponding method. In order to provide an optical identifier (30) which can be produced by a simplified process and which has nevertheless a sufficient or even improved stability against environmental interferences it is proposed that said identifier comprises a carrier layer (32), at least partially transparent to said radiation beam (12), having a first scattering face (34) comprising a plurality of randomly oriented partial faces for scattering at least a part of said radiation beam (12), wherein said identification signal is formed by a scattered part of said radiation beam (12). Further, a device comprising said identifier, and a reading apparatus for identifying the identifier are proposed.

    摘要翻译: 本发明涉及一种用于响应于入射辐射束(12)产生识别信号的光学标识符(30)以及相应的方法。 为了提供可以通过简化的过程产生并且仍然具有足够或甚至改善的对环境干扰的稳定性的光学标识符(30),建议所述标识符包括载体层(32),至少部分地透明到 所述辐射束(12)具有包括多个随机取向的部分面的第一散射面(34),用于散射所述辐射束(12)的至少一部分,其中所述识别信号由所述辐射的散射部分形成 梁(12)。 此外,提出了包括所述标识符的装置和用于识别标识符的读取装置。

    Proofs of Vicinity Using Cpufs
    10.
    发明申请
    Proofs of Vicinity Using Cpufs 审中-公开
    使用Cpufs的邻域证明

    公开(公告)号:US20080260152A1

    公开(公告)日:2008-10-23

    申请号:US12094999

    申请日:2006-11-27

    IPC分类号: H04L9/32

    CPC分类号: H04L9/3234 H04L9/3278

    摘要: The present invention relates to a method and a device (104) for authenticating a plurality of physical tokens (101, 102, 103). A basic idea of the invention is to supply a sequence of interconnected devices (108, 109, 110), each device comprising a physical token (101, 102, 103), with a challenge of the respective physical token created during enrollment of said respective physical token, wherein the sequence of interconnected devices is arranged such that a data set supplied to the sequence is cryptographically processed with a response of a token comprised in a device and passed on to a token comprised in a subsequent device which further cryptographically processes the processed data set with its response until a response of a final physical token has been used to further cryptographically process the data set. Then, the data set which has been cryptographically processed with the responses of the tokens in the sequence is received and used together with the data set itself and data associated with the response of the respective token to authenticate the sequence of physical tokens.

    摘要翻译: 本发明涉及一种用于认证多个物理令牌(101,102,103)的方法和装置(104)。 本发明的基本思想是提供一系列互连的设备(108,109,110),每个设备包括物理令牌(101,102,103),在所述相应的设备注册期间产生相应物理令牌的挑战 物理令牌,其中所述互连设备的序列被布置为使得提供给所述序列的数据集通过包含在设备中的令牌的响应进行密码处理,并传递到包含在后续设备中的令牌,所述令牌进一步加密处理 数据集具有其响应,直到最终物理令牌的响应已被用于进一步加密处理数据集。 然后,已经用序列中的令牌的响应进行了密码处理的数据集被接收并与数据集本身一起使用,并且与相应令牌的响应相关联的数据被使用以验证物理令牌的顺序。