Key extraction during secure boot
    14.
    发明授权

    公开(公告)号:US09755831B2

    公开(公告)日:2017-09-05

    申请号:US14161185

    申请日:2014-01-22

    CPC classification number: H04L9/0894 G06F21/575 H04L9/0866

    Abstract: One feature pertains to a method for extracting a secret key during a secure boot flow of an integrated circuit. Specifically, the secure boot flow includes powering ON a first volatile memory circuit to generate a plurality of initial logical state values, deriving secret data based on the plurality of initial logical state values, storing the secret data in a secure volatile memory circuit that is secured by a secure execution environment (SEE), clearing the plurality of initial logical state values in the first volatile memory circuit, executing a cryptographic algorithm at the SEE to extract a secret key based on the secret data, and storing the secret key in the secure volatile memory circuit. The secure boot flow controls access to the first volatile memory circuit to secure the secret data and the plurality of initial logical state values from the insecure applications.

    KEY EXTRACTION DURING SECURE BOOT
    15.
    发明申请
    KEY EXTRACTION DURING SECURE BOOT 有权
    安全引导期间的关键提取

    公开(公告)号:US20150207624A1

    公开(公告)日:2015-07-23

    申请号:US14161185

    申请日:2014-01-22

    CPC classification number: H04L9/0894 G06F21/575 H04L9/0866

    Abstract: One feature pertains to a method for extracting a secret key during a secure boot flow of an integrated circuit. Specifically, the secure boot flow includes powering ON a first volatile memory circuit to generate a plurality of initial logical state values, deriving secret data based on the plurality of initial logical state values, storing the secret data in a secure volatile memory circuit that is secured by a secure execution environment (SEE), clearing the plurality of initial logical state values in the first volatile memory circuit, executing a cryptographic algorithm at the SEE to extract a secret key based on the secret data, and storing the secret key in the secure volatile memory circuit. The secure boot flow controls access to the first volatile memory circuit to secure the secret data and the plurality of initial logical state values from the insecure applications.

    Abstract translation: 一个特征涉及在集成电路的安全启动流程期间提取密钥的方法。 具体地,安全引导流程包括给开启第一易失性存储器电路以产生多个初始逻辑状态值,基于多个初始逻辑状态值导出秘密数据,将秘密数据存储在安全的易失性存储器电路中 通过安全执行环境(SEE),清除第一易失性存储器电路中的多个初始逻辑状态值,在SEE执行密码算法以基于秘密数据提取密钥,并将秘密密钥存储在安全的执行环境 易失性存储器电路。 安全引导流程控制对第一易失性存储器电路的访问以保护来自不安全应用的秘密数据和多个初始逻辑状态值。

Patent Agency Ranking