CN101276384A - Security control chip and implementing method thereof - Google Patents

Security control chip and implementing method thereof Download PDF

Info

Publication number
CN101276384A
CN101276384A CN 200710065021 CN200710065021A CN101276384A CN 101276384 A CN101276384 A CN 101276384A CN 200710065021 CN200710065021 CN 200710065021 CN 200710065021 A CN200710065021 A CN 200710065021A CN 101276384 A CN101276384 A CN 101276384A
Authority
CN
China
Prior art keywords
control
chip
data
module
user
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN 200710065021
Other languages
Chinese (zh)
Inventor
贺新
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
CHENGDU FINCHOS ELECTRON Co Ltd
Original Assignee
CHENGDU FINCHOS ELECTRON Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by CHENGDU FINCHOS ELECTRON Co Ltd filed Critical CHENGDU FINCHOS ELECTRON Co Ltd
Priority to CN 200710065021 priority Critical patent/CN101276384A/en
Publication of CN101276384A publication Critical patent/CN101276384A/en
Pending legal-status Critical Current

Links

Images

Abstract

Disclosed is a safety controlling chip including a biometric collection module, a biological identity module, a universal processing module, a function module for encryption and decryption, a storage unit for sensitive data and program, a power consumption control unit and a safe authority control bus. Use of the safety controlling chip of the invention is to build a local security policy, accompanied by the characteristics of high performance, low power consumption, low cost, easy realization, high expansibility and good security-control performance.

Description

A kind of security control chip and its implementation
Technical field
The present invention relates to integrated circuit (IC) system design and technical field of biometric identification, be specifically related to a kind of local device biometric security control chip and its implementation.
Background technology
Existing safety control technology comprises:
One, traditional local security system is made up of one or more chips (functional part), and in the process of system start-up, the password that prompting user input sets in advance is to reach the purpose of simple authentication.
Deficiency below this mode exists in application process:
1. secured fashion depends on the power supply of equipment, will lose as the power-down state password, as the BIOS password of computer motherboard.
2. secured fashion is simple, single, the single password different identity information that is beyond expression, and total system can't be controlled different users' operating right according to the configuration of its dynamic debugging system.
3. simple password code attacked easily, and complex password passes into silence easily.
Two, along with the concern of society to information security, information security technology also is able to significant progress in recent years.Mode by software, combination of hardware realizes that information security comes instead of pure software to realize that information security becomes the trend of technical development.The most representative TCG (the Trusted Computing Group that is; the Trusted Computing unit) the TPM safety chip architecture of Tui Hanging; its major function comprise in the start-up course to boot, hardware, operating system integrity detection; various keys in generation and the management system provide digital signature and data security protecting.Be illustrated in figure 1 as the TPM security control chip architecture of prior art.
As shown in Figure 1, the TPM safety chip mainly is a core of setting up its security mechanism by the encryption and decryption module, by required key in randomizer generation and the management system, set up data, process integrity detection by SHA/HMAC, realize digital signature by the RSA module.On the basis of TPM safety chip structure, subsequent development person has also proposed some and has improved, as solving the credible problem of IO interface etc.
This technology is set up at local security specially, needs to use randomizer, hashing algorithm, asymmetric cryptographic algorithm in digital signature, remote party identity authentication, network data transmission, and design is complicated, realization cost height.Too complicated for solving the local security function.
Three, in recent years, the requirements at the higher level that society has proposed aspects such as information security, safety equipment property easy to use, thereupon, Cheng Shu biological identification technology is introduced in the Secure Application system gradually.Biological identification technology is stable because of having, unique, can classify, characteristics such as convenient, safe, and at facilities such as cell phone, gate inhibition, safety checks, departments such as sensitivity such as airport, military installations, government are used.It not only can stop unauthorized access, can also prevent to usurp ATM, cell phone, smart card, desktop PC, workstation and computer network, also authentication be can carry out, or existing key, certificate, seal etc. replaced in the office space at phone, when network carries out financial transaction.
Thus, safety chip framework now is owing in conjunction with bio-identification and TPM safety chip architecture, brought up to security a new height.But in the actual application environment, the safety equipment many places do not need to carry out complicated digital authenticating and computing (network application) under the situation of work alone, establish one's own system (this locality).Thereby the apparent in some applications too complexity of TPM functional module realization safety chip, cost is too high.
In addition, also proposed recently to use high speed processor to carry out bio-identification as core, used mass memory stores bio-identification algorithm, chip internal is realized the scheme of data encryption transmission with the encryption and decryption functions unit.
But being to use high speed processor is the technology that core is carried out bio-identification, use mass memory stores bio-identification algorithm, and system constitutes complicated, the system cost height.The implementation method that does not have the control of authority of user sensitive information, key, right assignment, equipment, the degree of safety deficiency.
Summary of the invention
Technical matters to be solved by this invention is to provide a kind of local device biometric security control chip, by the user being carried out bio-identification to judge user's authority, be intended to solve the design complexity that exists in the prior art, the problem that realizes cost height, security deficiency by chip.
To achieve these goals, the invention provides a kind of security control chip, comprise data bus, control bus, also comprise:
The physical characteristics collecting module is used to gather user's biological characteristic;
The bio-identification module, the described biological characteristic that is used for Recognition and Acquisition carries out the uniqueness identification;
The common treatment module is used for each functional module of programming Control;
The encryption and decryption functions module is used to realize that sheet is interior, the exchange and the access of the outer enciphered data of sheet;
Sensitive data and program storage unit (PSU) are used to store user's control authority and key;
The power consumption control unit is used for the power consumption of control chip under different working modes;
The security permission control bus is used to prevent under unauthorized situation the control to limited upper module of authority.
Described security control chip also comprises:
Expansion high speed direct memory access interface is used to provide the high-speed data safe interface and by itself and other chip interconnect;
Equipment authority access control unit is used to realize that the user distributes chip internal module, interface authority and the security control and the data access of peripherals;
The programmable bus moderator is used to control priority, so that the SOC (system on a chip) bus can satisfy on the sheet, the requirement of the outer exchanges data of sheet;
Direct memory access data channel control module on the sheet is used for equipment, exchanges data on the High-speed Control sheet;
Nonsensitive data buffer memory RAM is used for that nonsensitive data provides the temporary realm on the sheet, is algorithm or data transport service as the buffer memory of data;
The low-speed device resource sharing control is used to provide the bigger resource of chip system expense to carry out resource and shares control;
Lower speed interface is used to provide the interface to low-speed device;
The system layer signaling control unit is used to produce the system layer signal.
Described bio-identification module adopts the pure hardware of living things feature recognition chip to realize.
Described common treatment module adopts general low-speed processing module.
Described encryption and decryption functions module adopts symmetrical Advanced Encryption Standardalgorithm.
Described sensitive data and program storage unit (PSU) use disposal programmable device.
Described security control chip adopts data bus, microprocessor control bus and three grades of bus architectures of security control bus.
The present invention also provides a kind of method of controlling security that adopts described security control chip, may further comprise the steps:
Step 1, safety chip power on reset;
Step 2, safety chip enters low power consumpting state;
Step 3 has judged whether the User login request, if then execution in step four, otherwise gets back to step 2;
Step 4, extract the user biological feature and with the ROM (read-only memory) of One Time Programmable logical device in the feature that prestores compare, determine whether success of User login, if then execution in step five, otherwise get back to step 2;
Step 5, User login success, distributing user permission, key;
Step 6, dynamic-configuration, initialization sheet upper module enter the local device state of a control;
Step 7, based on control of authority sheet upper module, the access of enciphered data between realization and peripherals;
Step 8, user log off discharge the control of sheet upper module based on authority the control of chip, get back to step 2, wait for that the user applies for the control to chip again.
The present invention proposes a kind of security control chip, adopt security control chip of the present invention to set up local security strategy, have high-performance, low-power consumption, low cost, easily realization, extendability height, characteristics that the security control performance is good.
Description of drawings
Figure 1 shows that the TPM security control chip architecture of prior art;
Figure 2 shows that the system chart of security control chip of the present invention;
Figure 3 shows that the synoptic diagram that the present invention uses with last pull down resistor;
Figure 4 shows that the inner block diagram of realizing of OTP of the present invention;
Figure 5 shows that PLL adjustment member structural drawing in the power consumption control module of the present invention;
Figure 6 shows that the sequential chart that the present invention uses integrated circuit (IC)-components to postpone;
Figure 7 shows that the conversion synoptic diagram between the chip status of the present invention;
Figure 8 shows that the present invention is applied to the workflow diagram of a specific embodiment of local data safe storage.
Embodiment
In order to make purpose of the present invention, technical scheme and advantage clearer,, the present invention is further elaborated below in conjunction with drawings and Examples.Should be appreciated that specific embodiment described herein only in order to explanation the present invention, and be not used in qualification the present invention.
Figure 2 shows that the system chart that security control chip of the present invention is realized.
Security control chip of the present invention comprises common treatment module 204, encryption and decryption functions module 206, bio-identification module 208, expansion high speed direct memory access (Direct Memory Access, DMA) interface 210, sensitive data and program storage unit (PSU) 212, power consumption control unit 214, physical characteristics collecting module 216, on-chip DMA data channel control module 218, nonsensitive data buffer memory RAM220, lower speed interface 0,1,2,222, low-speed device resource sharing control 224, equipment authority access control unit 226, programmable bus moderator 202, system layer signaling control unit 228 and microprocessor control bus 101, data bus 102 and security permission control bus 103.
Describe the effect of each module below in detail.
Common treatment module 204 is used for each functional module of programming Control.The common treatment module adopts general low speed processor, as adopting widely used 8051 series monolithics on the market, thereby can significantly reduce the application threshold of product, quickens applying of market.
Encryption and decryption functions module 206, compare traditional asymmetric encryption deciphering, hashing algorithm, the present invention adopts symmetrical Advanced Encryption Standard (Advanced Encryption Standard, AES) algorithm, be used to realize the exchange and the access of the inside and outside enciphered data of sheet, make chip under the prerequisite that satisfies the local security application demand, simplify complexity, area, the cost of chip system design.
Bio-identification module 208 in the mode of pure hardware realization algorithm for recognizing fingerprint, has replaced using the mode of high speed processor (ARM9, DSP) software realization in the past, and the biological characteristic that is used for Recognition and Acquisition carries out the uniqueness identification.
Expansion high speed DMA interface 210, be used to provide DMA high-speed data safe interface, by this interface and other chip interconnect, thereby formation MS master-slave, from-main bigger application system, satisfy local data zero access demand on the one hand, set up chip association treatment channel on the other hand, strengthen the range of application of chip.
Sensitive data and program storage unit (PSU) 212, (One-TimeProgrammable, OTP) device is set up the sensitive information storer, is used for the storage of user's control authority and key by using One Time Programmable.
Power consumption control unit 214, the output clock stability control mode by the integrated circuit (IC)-components delay realizes is used to realize the power consumption control of chip under different working modes.
Physical characteristics collecting module 216 is used to gather user's biological characteristic.
On-chip DMA data channel control module 218, be used for equipment, exchanges data on the High-speed Control sheet, its mode of operation is by the common treatment module controls, and the data high-speed exchange is the intervention that breaks away from general processor with transmission on sheet, to alleviate the work load of processor, improve the overall performance of system.
Nonsensitive data buffer memory RAM220 for nonsensitive data on the sheet (as intermediate result of bio-identification algorithm etc.) provides the temporary realm, is algorithm or data transport service as the buffer memory of data.
Lower speed interface 0,1,2 provides the interface of low-speed device, as UART (UART Universal Asynchronous Receiver Transmitter), SPI (serial peripheral interface), I2C low-speed device interfaces such as (internal integrated circuits), is used for the function of expanding system and interconnects with peripheral chip.
Low-speed device resource sharing control 224 provides the bigger resource of chip system expense to carry out resource and shares control, can reduce the expense of chip system under the situation that satisfies the low-speed device demand, thereby reduce chip cost.
Equipment authority access control unit 226 is used to realize that the user distributes chip internal module, interface authority and the security control and the data access of peripherals.
Programmable bus moderator 202 is the controllable bus arbitration module of priority, by microprocessor control priority, so that the SOC (system on a chip) bus can satisfy on the sheet, the requirement of the outer exchanges data of sheet.
System layer signaling control unit 228 is used to produce the system layer signal, kind, systematic reset signal when producing on the sheet overall situation.
Security control bus 103 is independent of microprocessor control bus 101 and data bus 102, produce by the internal hardware logic, can not be by software and user intervention and control, adopt the security control bus can prevent under unauthorized situation the control of limited upper module of authority is improved security of system.Because its independence also makes the total system hierarchical structure more clear, has made things convenient for the realization of chip system.
Describe the realization details of safety chip below in detail.
One, chip needs sensitive data, program storage unit (PSU) 212 are carried out the OTP initialization before use.Mainly need avoid modification and unauthorized reading for the use of OTP parts to the OTP internal data.
1) avoid modification to the OTP internal data:
After the Chip Packaging, under the situation of not destroying Chip Packaging, can't use UV (ultraviolet ray) erase mode, avoid the OTP internal data to be wiped free of and to revise, guarantee the uniqueness that chip uses.
By the device property of OTP parts as can be known, OTP is repeatedly programmed, can cause the confusion of internal data, thereby avoid illegal modifications interior data.
2) avoiding unauthorized reads:
Read and take into account the test of integrated circuit (IC) design in producing for user sensitive information (user right, user key) unauthorized of content among the protection OTP, use as shown in Figure 3 with the data in the I/O protection OTP that goes up pull down resistor.Among Fig. 3, input signal pin band inside is drop-down, compatible 5V signal input.
As shown in Figure 3, in the production line test, PID (the input signal pin that band is inner drop-down) I/O C termination high level, its effect is to make the OTP data read useful signal to be set up as effectively, can satisfy test OTP demand on the production line thus.
When transferring to encapsulation factory when rolling off the production line, test is criticized if this batch DIE (nude film) is MPW (MPW), the C that then encapsulates the connection PID of factory holds chip PIN (pin), after encapsulation is finished, is effectively by the user at PIN superset data read useful signal, and the user can use equipment reads data that OTP the is initialised correctness with checking OTP built-in function and steering logic.So crowd DIE is that formal volume production is criticized, the built-in function of OTP and steering logic are under known correct situation, the C that encapsulation factory will not connect PID holds chip PIN pin, is not destroying encapsulation, is carrying out under the inner situation about surveying the security of OTP sensitive data to guarantee chip.
Two, the inner sensitive data of OTP comprises startup boot part, chip functions program part, user sensitive information part.
Be illustrated in figure 4 as the inner sensitive data synoptic diagram of OTP.
Wherein start the initialization that boot partly is used for start-up routine, system and equipment;
The chip functions program is used for the control of relevant device and data stream;
User sensitive information comprises user biological eigenwert, user's authority description and user key;
The user biological eigenwert is used for comparing with the biological characteristic value of gathering;
User's authority is described and is used to describe the control authority of active user to system equipment;
User key is used for encryption and decryption data, program, guarantees safety and uniqueness.
This chip supports high authority user to call low rights user's key, to realize the monitoring of high authority user to the low rights user.
Three, power consumption control module.
By adjustment, play the dynamically effect of the system clock of control chip PLL output under the different operating state to PLL (phaselocked loop) parameter.Figure 5 shows that PLL adjustment member structural drawing.
The problem that its core solves is for after adjusting PLL parameter (PLL_PAR), PLL output clock stability problem.Detect the variation of PLL controlled variable (PLL_PAR) by PLL_MCHANGE, thereby set up PLL output locking signal (sclk_mux), under PLL parameter situation of change, avoid the output clock (sclk) of PLL to produce burr, the effect of false triggering chip internal logic.
1,2 label places shown in dotted lines in Figure 6, the use integrated circuit (IC)-components postpones, set up the PLL output locking signal (sclk_mux) that fixed phase relationship is arranged with output clock (sclk), thereby stablized the transition state of output clock (sclk) when the PLL parameter regulation.
Four, chip operation state
Chip operation is made up of following duty: power on reset mode, User login right assignment exit state, local device state of a control, low power consumpting state, the conversion of chip status Figure 7 shows that the conversion between each state of chip by general low-speed processing module controls.
The working method of each module in the chip is below described respectively under each state.
1) power on reset mode
When external reset signal was imported behind the chip power, state started;
The reset signal of chip internal hardware circuit (system layer signaling control unit 228) shaping input is removed the reset signal burr, and the signal after the processing is used for system reset, and system is stable during with the assurance reset mode;
Chip internal hardware reset sensitive data, program storage unit (PSU) 212, common treatment module 204 control programs and data buffer area RAM220;
Start common treatment module 204, its program pointer is pointed to the program address first address of OTP ROM;
Common treatment module 204 is waited for User login, lands incident as no user in the stand-by period and takes place, and then program enters different conditions such as low power consumpting state according to the program in the OTP.
2) User login right assignment exit state
The user is by button (chip PIN triggering) or use the automatic detection mode of fingerprint, sends the request of landing;
Bio-identification module 208 extract the user biological features and with OTP ROM in storage in advance feature relatively, determine whether success of User login;
User login success, equipment authority access control unit 226 distributes OTP ROM prestore user right, key by security control bus 103;
Common treatment module 204 is according to the user right, the key that distribute, dynamic-configuration, initialization sheet upper module, and system enters the local device state of a control;
The user detects cancellation automatically by button (chip PIN triggering) or fingerprint, and system enters reset mode.
3) local device state of a control
By common treatment module 204 dynamic-configuration, each sheet upper module of initialization;
The program that prestores among the OTP ROM of common treatment module 204 according to sensitive data, program storage unit (PSU) 212 on the sheet or according to stored programme work in the external encryption expansion external memory storage;
Coordinate each module on the sheet by common treatment module 204, carry out the encrypted data transmission of the control of peripherals user right, the different keys of realization different user.
4) low power consumpting state
When chip under the program certain conditions, under the situation as the no user running time in the special time, enter low power consumpting state;
The PLL unit of power consumption control unit 214 on common treatment module 204 control strips reduces its system clock and enters the tick-over state;
After the user passed through button (chip PIN triggering) or uses the automatic detection mode of fingerprint, sends the request of landing, the recovery system clock made system enter the full speed operation state.
The workflow of safety chip in different application all is based upon on the basis of above-mentioned chip groundwork state exchange.Figure 8 shows that the present invention is applied to the workflow diagram of a specific embodiment of local data safe storage.
As shown in Figure 8, the workflow of safety chip comprises:
S300, chip power reset;
S302 enters low power consumpting state;
S304 has judged whether the User login request, if, execution in step S306 then, otherwise get back to step S302;
S306, extract the user biological feature and with the ROM (read-only memory) of One Time Programmable logical device in the feature that prestores compare, determine whether success of User login, if, execution in step S308 then, otherwise get back to step S302;
S308, User login success, distributing user permission, key;
S310, dynamic-configuration, initialization sheet upper module enter the local device state of a control;
S312, based on control of authority sheet upper module, the access of enciphered data between realization and peripherals;
S314, user log off discharge the control of sheet upper module based on authority the control of chip, get back to step S302, and chip enters low-power consumption mode, wait for that the user applies for the control to chip again.
The present invention adopts data bus, microprocessor control bus and three grades of bus architectures of security control bus, in conjunction with the corresponding safety control module of chip internal, realizes the security strategy of chip.
All sheet upper modules are connected by control bus, data bus on general-purpose interface or the high-speed chip, realize the collaborative work (as each functional module initialization) of each intermodule by low speed common treatment module on the sheet, realize that by each specialized processing units high-speed data (as encryption and decryption data, bio-identification) handles.
The present invention utilizes biological identification technology, and the inherent characteristic of integrated circuit (IC)-components, chip internal functional control module are realized the single-chip solution of local device security control.Characteristic and high-performance encryption and decryption functions module that the present invention can not change based on biological characteristic identification, disposal programmable device, the secure access and the control of setting up chip internal rights management and chip periphery equipment by chip internal equipment authority access control unit, low speed common treatment module, realized efficient, low energy consumption SOC (system on a chip) (System on a chip, SOC).
When the user uses safety chip of the present invention, the biological characteristic that chip collection user has uniqueness carries out identification, chip compares according to prestored information in the disposable programming device on identification result and the sheet, and the corresponding key that has access control right of extraction carries out control and the data access to chip internal functional module and chip exterior equipment.
Implementation method of the present invention realizes through simulation on FPGA xilinx virtex2 8000 devices, prove the design that according to said method realizes, has characteristics such as high-performance, low-power consumption, low cost, easy realization, extendability height, security control performance are good.
According to the FSC7001 chip of design of the present invention, in MPW produces.
Certainly; the present invention also can have other various embodiments; under the situation that does not deviate from spirit of the present invention and essence thereof; those of ordinary skill in the art work as can make various corresponding changes and distortion according to the present invention, but these corresponding changes and distortion all should belong to the protection domain of the appended claim of the present invention.

Claims (8)

1. a security control chip comprises data bus, control bus, it is characterized in that, also comprises:
The physical characteristics collecting module is used to gather user's biological characteristic;
The bio-identification module, the described biological characteristic that is used for Recognition and Acquisition carries out the uniqueness identification;
The common treatment module is used for each functional module of programming Control;
The encryption and decryption functions module is used to realize that sheet is interior, the exchange and the access of the outer enciphered data of sheet;
Sensitive data and program storage unit (PSU) are used to store user's control authority and key;
The power consumption control unit is used for the power consumption of control chip under different working modes;
The security permission control bus is used to prevent under unauthorized situation the control to limited upper module of authority.
2. security control chip according to claim 1 is characterized in that, also comprises:
Expansion high speed direct memory access interface is used to provide the high-speed data safe interface and by itself and other chip interconnect;
Equipment authority access control unit is used to realize that the user distributes chip internal module, interface authority and the security control and the data access of peripherals;
The programmable bus moderator is used to control priority, so that the SOC (system on a chip) bus can satisfy on the sheet, the requirement of the outer exchanges data of sheet;
Direct memory access data channel control module on the sheet is used for equipment, exchanges data on the High-speed Control sheet;
Nonsensitive data buffer memory RAM is used for that nonsensitive data provides the temporary realm on the sheet, is algorithm or data transport service as the buffer memory of data;
The low-speed device resource sharing control is used to provide the bigger resource of chip system expense to carry out resource and shares control;
Lower speed interface is used to provide the interface to low-speed device;
The system layer signaling control unit is used to produce the system layer signal.
3. security control chip according to claim 1 and 2 is characterized in that, described bio-identification module adopts the pure hardware of living things feature recognition chip to realize.
4. security control chip according to claim 1 and 2 is characterized in that, described common treatment module adopts general low-speed processing module.
5. security control chip according to claim 1 and 2 is characterized in that, described encryption and decryption functions module adopts symmetrical Advanced Encryption Standardalgorithm.
6. security control chip according to claim 1 and 2 is characterized in that, described sensitive data and program storage unit (PSU) use disposal programmable device.
7. security control chip according to claim 1 and 2 is characterized in that, adopts data bus, microprocessor control bus and three grades of bus architectures of security control bus.
8. a method of controlling security that adopts the described security control chip of claim 1 is characterized in that, may further comprise the steps:
Step 1, safety chip power on reset;
Step 2, safety chip enters low power consumpting state;
Step 3 has judged whether the User login request, if then execution in step four, otherwise gets back to step 2;
Step 4, extract the user biological feature and with the ROM (read-only memory) of One Time Programmable logical device in the feature that prestores compare, determine whether success of User login, if then execution in step five, otherwise get back to step 2;
Step 5, User login success, distributing user permission, key;
Step 6, dynamic-configuration, initialization sheet upper module enter the local device state of a control;
Step 7, based on control of authority sheet upper module, the access of enciphered data between realization and peripherals;
Step 8, user log off discharge the control of sheet upper module based on authority the control of chip, get back to step 2, wait for that the user applies for the control to chip again.
CN 200710065021 2007-03-30 2007-03-30 Security control chip and implementing method thereof Pending CN101276384A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 200710065021 CN101276384A (en) 2007-03-30 2007-03-30 Security control chip and implementing method thereof

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 200710065021 CN101276384A (en) 2007-03-30 2007-03-30 Security control chip and implementing method thereof

Publications (1)

Publication Number Publication Date
CN101276384A true CN101276384A (en) 2008-10-01

Family

ID=39995825

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 200710065021 Pending CN101276384A (en) 2007-03-30 2007-03-30 Security control chip and implementing method thereof

Country Status (1)

Country Link
CN (1) CN101276384A (en)

Cited By (15)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102819700A (en) * 2012-06-23 2012-12-12 郁晓东 Device and method for identifying a plurality of biological characteristics in isolation environment
WO2013121309A1 (en) * 2012-02-17 2013-08-22 International Business Machines Corporation Encrypted biometric data management and retrieval
CN103440462A (en) * 2013-08-28 2013-12-11 成都卫士通信息产业股份有限公司 Embedded control method for improving security and secrecy performance of security microprocessor
CN104270242A (en) * 2014-09-27 2015-01-07 杭州电子科技大学 Encryption and decryption device used for network data encryption transmission
CN105897410A (en) * 2014-12-08 2016-08-24 深圳市创成微电子有限公司 Audio frequency chip spi communication encryption method
CN105975838A (en) * 2016-06-12 2016-09-28 北京集创北方科技股份有限公司 Secure chip, biological feature identification method and biological feature template registration method
CN106066970A (en) * 2016-05-26 2016-11-02 北京中电华大电子设计有限责任公司 A kind of Low dark curient dual processors nuclear safety chip architecture
CN106326704A (en) * 2015-06-29 2017-01-11 联想(上海)信息技术有限公司 Face identification method and device, and electronic equipment
CN106355064A (en) * 2015-07-17 2017-01-25 联想(上海)信息技术有限公司 Security management method and device and electronic device
CN107992181A (en) * 2017-11-28 2018-05-04 恒宝股份有限公司 A kind of method and device of safe unit control management
CN108710590A (en) * 2018-06-01 2018-10-26 深圳市方为半导体有限公司 The management method of 8051 systems and its bus automatic arbitration
CN109214233A (en) * 2017-06-29 2019-01-15 上海荆虹电子科技有限公司 The image sensor chip and terminal device of single layer embedded bio recognizer
CN109214236A (en) * 2017-06-29 2019-01-15 上海荆虹电子科技有限公司 The image sensor chip and terminal device of the double-deck embedded bio recognizer
CN109543415A (en) * 2018-11-20 2019-03-29 南方电网科学研究院有限责任公司 A kind of secure operating system framework
CN111858408A (en) * 2020-07-13 2020-10-30 天津津航计算技术研究所 Multi-processor architecture power supply management and control device based on I2C bus

Cited By (25)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8996886B2 (en) 2012-02-17 2015-03-31 International Business Machines Corporation Encrypted biometric data management and retrieval
WO2013121309A1 (en) * 2012-02-17 2013-08-22 International Business Machines Corporation Encrypted biometric data management and retrieval
GB2512803A (en) * 2012-02-17 2014-10-08 Ibm Encrypted biometric data management and retrieval
GB2512803B (en) * 2012-02-17 2015-03-25 Ibm Encrypted biometric data management and retrieval
CN102819700A (en) * 2012-06-23 2012-12-12 郁晓东 Device and method for identifying a plurality of biological characteristics in isolation environment
CN103440462A (en) * 2013-08-28 2013-12-11 成都卫士通信息产业股份有限公司 Embedded control method for improving security and secrecy performance of security microprocessor
CN104270242B (en) * 2014-09-27 2017-12-19 杭州电子科技大学 A kind of ciphering and deciphering device for network data encryption transmission
CN104270242A (en) * 2014-09-27 2015-01-07 杭州电子科技大学 Encryption and decryption device used for network data encryption transmission
CN105897410A (en) * 2014-12-08 2016-08-24 深圳市创成微电子有限公司 Audio frequency chip spi communication encryption method
CN106326704A (en) * 2015-06-29 2017-01-11 联想(上海)信息技术有限公司 Face identification method and device, and electronic equipment
CN106355064A (en) * 2015-07-17 2017-01-25 联想(上海)信息技术有限公司 Security management method and device and electronic device
CN106066970A (en) * 2016-05-26 2016-11-02 北京中电华大电子设计有限责任公司 A kind of Low dark curient dual processors nuclear safety chip architecture
WO2017215534A1 (en) * 2016-06-12 2017-12-21 北京集创北方科技股份有限公司 Secure chip, biological feature identification method, and biological feature template registration method
CN105975838A (en) * 2016-06-12 2016-09-28 北京集创北方科技股份有限公司 Secure chip, biological feature identification method and biological feature template registration method
JP2019507451A (en) * 2016-06-12 2019-03-14 北京集創北方科技股▲ふん▼有限公司Chipone Technology (Beijing) Co.,Ltd Security chip, biometric feature identification method, and biometric feature template registration method
CN109214233B (en) * 2017-06-29 2024-04-09 深圳荆虹科技有限公司 Image sensor chip and terminal equipment of single-layer embedded biological recognition algorithm
CN109214233A (en) * 2017-06-29 2019-01-15 上海荆虹电子科技有限公司 The image sensor chip and terminal device of single layer embedded bio recognizer
CN109214236A (en) * 2017-06-29 2019-01-15 上海荆虹电子科技有限公司 The image sensor chip and terminal device of the double-deck embedded bio recognizer
CN109214236B (en) * 2017-06-29 2024-05-07 深圳荆虹科技有限公司 Image sensor chip and terminal equipment of double-layer embedded biological recognition algorithm
CN107992181A (en) * 2017-11-28 2018-05-04 恒宝股份有限公司 A kind of method and device of safe unit control management
CN108710590A (en) * 2018-06-01 2018-10-26 深圳市方为半导体有限公司 The management method of 8051 systems and its bus automatic arbitration
CN108710590B (en) * 2018-06-01 2023-10-03 深圳市方为半导体有限公司 8051 system and bus automatic arbitration management method thereof
CN109543415A (en) * 2018-11-20 2019-03-29 南方电网科学研究院有限责任公司 A kind of secure operating system framework
CN111858408B (en) * 2020-07-13 2022-03-08 天津津航计算技术研究所 Multi-processor architecture power supply management and control device based on I2C bus
CN111858408A (en) * 2020-07-13 2020-10-30 天津津航计算技术研究所 Multi-processor architecture power supply management and control device based on I2C bus

Similar Documents

Publication Publication Date Title
CN101276384A (en) Security control chip and implementing method thereof
CN106605233B (en) Providing trusted execution environment using processor
CN100432890C (en) Computer starting up identifying system and method
CN101436247B (en) Biological personal identification method and system based on UEFI
CN101751534B (en) Has the computer of biological authentication apparatus
WO2018027587A1 (en) System on chip and processing device
CN100481107C (en) An identity control method based on credibility platform module and fingerprint identifying
US20090132816A1 (en) PC on USB drive or cell phone
CN101794362A (en) Trusted computation trust root device for computer and computer
CN201054140Y (en) Information security control chip
CN106127057A (en) A kind of method building credible startup control based on TPM
CN202362788U (en) Dependable computing device with USB (Universal Serial Bus) interfaces
CN201820230U (en) Computer and trusted-computing trusted root equipment for same
CN101976320B (en) Credible computer platform
CN201126581Y (en) Biological personal identification apparatus based on UEFI
CN101290644B (en) Electronic system and digital copyright management method
CN101673330A (en) BIOS-based computer security protection method and system
CN102024115B (en) Computer with user security subsystem
CN108416217A (en) A kind of SCM Based computer motherboard BIOS authentication system and method
CN103186218A (en) Computer start-up system and computer start-up method
CN105743853A (en) Fingerprint USB KEY and fingerprint center server for identity authentication, and system and method
CN2771935Y (en) Smart card for digital input-output interface
WO2020187206A1 (en) Implementation scheme of trusted computing system based on solid-state disk master controller
CN1716841A (en) High performance cipher algorithm SoC chip
CN201860345U (en) Fingerprint USBKEY (universal serial bus key) encryption device

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C02 Deemed withdrawal of patent application after publication (patent law 2001)
WD01 Invention patent application deemed withdrawn after publication

Open date: 20081001