CN101625889B - Memory with redefined pins and protection method thereof - Google Patents
Memory with redefined pins and protection method thereof Download PDFInfo
- Publication number
- CN101625889B CN101625889B CN 200910109143 CN200910109143A CN101625889B CN 101625889 B CN101625889 B CN 101625889B CN 200910109143 CN200910109143 CN 200910109143 CN 200910109143 A CN200910109143 A CN 200910109143A CN 101625889 B CN101625889 B CN 101625889B
- Authority
- CN
- China
- Prior art keywords
- pin
- storer
- unit
- pin configuration
- user
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Expired - Fee Related
Links
Images
Landscapes
- Storage Device Security (AREA)
Abstract
The invention discloses a memory with redefined pins and a protection method thereof. The memory comprises: a plurality of pins communicated to the outside, an inside unit (12) with a pin configuration module (121) which provides a user programming definition pin and preserves into pin configuration information not allowing outside users of the memory access to, and a pin redefining unit (11) connected with pins through a plurality of bidirectional ports and performing data communication with the inside unit (12) through a plurality of unidirectional signal ports having mapping relationship with each bidirectional signal port; and the mapping relationship between the bidirectional signal port and the unidirectional signal port is reconfigured according to the pin configuration informationof the pin configuration module (121). The invention can redefine an outside pin of the memory so that illegal users can not learn the specific meaning of signals inside the memory corresponding to the memory, thereby ensuring safety of inside information of the memory.
Description
Technical field
Storage protection technology to special IC involved in the present invention relates more specifically to a kind of storer and guard method thereof of redefined pins.
Background technology
Modern security systems normally guarantees communication or computationally secure based on public algorithm, because algorithm is disclosed, so security is protected by key.Correct cryptographic key protection method starts from the preservation of key, and embedded system need to be kept at key in the storer, and will make it never to leak, and now a lot of chips all need to be preserved key in inside.And to increase a lot of preventive means in the chip design process, avoid key from stealing.And along with the chip failure analysis, the technical progress of the means such as chip testing is stolen the technology of key (back is referred to as cipher key attacks) also progressive gradually, and wherein, the Physical layer attack method is the most common.
The microprobe technology be Physical layer attack a kind of, microprobe technology read output signal or change signal value obtains the deviser and wishes the data of maintaining secrecy; Remove again after the chip package, recover the electrical connection in chip functions pad and the external world by gold wire bonding, can use manual microprobe by the signal wire on the scanning electron microscope connection microcontroller, come the private data transmitted on the read line or assailant's oneself data are injected chip, change the circuit behavior, obtain private data; The microprobe technological orientation can be carried out data access by the microprobe test probe on port memory connects; The microprobe technology can reconnect the fuse that blows, and perhaps utilizes the test circuit interface of chip to read the chip internal private data.The assailant can use the external terminal of microprobe technology control store, thereby obtains the security information of memory inside.
Publication number is CN1645603A, denomination of invention is " realizing circuit and chip that chip pin function exchanges " publication application, it discloses a kind of chip and adopts crosspoint will need input signal and the output signal of two pins of switch to exchange respectively, thereby realize the technical scheme that chip pin function exchanges, solve in the prior art because of the chip application environmental limit causes chip pin to be arranged can't compatible problem.But there is following defective in this patented claim: because chip pin function is known, and the inadequate shielding storer; The pin function crosspoint is transparent to external world, does not have confidentiality; The pin function exchange principle is too simple; only be to utilize the switching just of a level just can realize the exchange of pin function; therefore; if this technology is used for storage protection; the assailant is easy to judge the functional meaning of each pin so, thereby the control pin obtains the security information in the chip.
Summary of the invention
The present invention proposes a kind of storer and guard method thereof of external terminal redefinable; can the external terminal of storer be redefined; make the disabled user can not know the concrete meaning of each pin institute corresponding stored device internal signal; thereby can prevent that the assailant from using the methods analyst communication data of control store pin to steal the security information in the storer, the internal information safety of assurance storer.
For solving technical matters of the present invention, the present invention discloses a kind of storer of redefined pins, and this storer has a plurality of pins with PERCOM peripheral communication, and it comprises:
Connect respectively each pin and by having a plurality of one way signal ports of mapping relations with each two-way signaling port and pin that internal element 12 carries out data communication redefines unit 11, it reconfigures the mapping relations of two-way signaling port and one way signal port according to the pin configuration information of pin configuration module 121 by a plurality of bidirectional ports.
Wherein, described pin configuration module 121 comprises: the first status indicator position that whether allows user program; Determine that pin redefines the second status indicator position whether unit 11 adopts user program definition pin;
If the user does not allow again to programme to the rear setting of pin configuration module 121 programmings, then the first status indicator position is set to " LOCK " by " UNCLOK ";
Wherein, described pin configuration module 121 comprises: distribute programming territory and configuration territory at protected non-volatile memory; The program command that the programming territory receives user program definition pin also is stored as pin configuration information, and the pin configuration information updating is stored to the configuration territory after programming finishes.
Wherein, described nonvolatile memory is to allow storer external user data writing and do not allow reading out data.
Wherein, described pin redefines unit 11 and comprises: be connected between each two-way signaling port and each the one way signal port by impact damper, be used for selecting respectively two MUX of input and output data-signal; Be used for selection to the MUX of described impact damper output enable signal, its output terminal is connected to the Enable Pin of described impact damper;
Described pin configuration input information pin redefines the condition selecting end of each MUX in the unit 11, controls each MUX and selects correct input signal to the output terminal of MUX according to user-defined mapping relations.
In addition, the present invention also discloses a kind of memory-protection method of redefined pins, this storer has a plurality of pins with PERCOM peripheral communication, and each pin connects respectively a plurality of bidirectional ports, and a plurality of two-way signaling port and a plurality of one way signal port have mapping relations; It comprises:
The user saves as pin definitions information the pin configuration information that does not allow the access of storer external user by pin configuration module 121 programming definition pins;
Wherein, redefine before unit 11 finishes the mapping relations of configuration two-way signaling port and one way signal port at pin, storer does not allow its access of outer bound pair, only just its access of bound pair outside the permission after pin redefines unit 11 to be successfully completed configuration.
Compared with prior art, the present invention has following beneficial effect:
1, the present invention is that the user has realized redefining of pin to memory program, compares simple level control and wants the many of complexity, has increased the difficulty that the disabled user attacks storer, the security that has improved storer.
2, to redefine the key of method be that the pin configuration module is unreadable to external world to pin of the present invention, the pin configuration information that deposits in wherein is namely unknowable, therefore, solve in the prior art storer pin function known, thereby easily controlled the problem of obtaining security information in the storer of analyzing.
3, the present invention allows different users to carry out different programmings to storer according to the actual needs of self, reaches the secret mode personalization of storer and diversified effect, the better security information in the protected storage.
Description of drawings
Fig. 1 is the system construction drawing of the protected storage that proposes of the present invention;
Fig. 2 is the Programming Principle schematic diagram of pin configuration module among Fig. 1;
Fig. 3 is the functional schematic that pin redefines the unit among Fig. 1;
Fig. 4 is the circuit theory schematic diagram that pin redefines the unit among Fig. 1.
Embodiment
The number of pins of using storer of the present invention is many groups, and concrete number is determined according to the design scale of storer.Take four groups of pins as example, the memory-protection method that pin of the present invention is redefined and the implementation of system describe at embodiment.
Figure 1 shows that the system construction drawing of protected storage of the present invention.Storer 1 redefines unit 11 by pin and internal element 12 forms; Internal element 12 has comprised pin configuration module 121, and storer 1 is by four pin PIN1, PIN2, PIN3 and PIN4 realization and extraneous communicating by letter, and they are numbered as respectively; These four pin PIN1, PIN2, PIN3 and PIN4 redefine unit 11 by four two-way signaling port D1, D2, D3 and D4 with pin respectively and are connected; And what four signal port D1, D2, D3 and D4 will shine upon is that four one way signal ports that are connected with internal element 12 are I1, I2, O1 and O2, wherein signal port I1 and I2 are the input data signal ports of internal element 12, and signal port O1 and O2 are the outputting data signals ports of internal element 12.
Therefore, the pin mapping relations that redefine unit 11 couples of signal port D1, D2, D3 and D4, signal port I1, I2, O1 and O2 are configured exactly pin PIN1, PIN2, PIN3 and the PIN4 of storer and the signal map relation of internal element 12 are configured.
In addition, O1ENB and O2ENB are respectively from the enable signal port of signal port O1 and O2 output data among Fig. 1, export from the enable signal difference control signal port O1 of O1ENB and the output of O2ENB signal port and the data-signal of O2.
Figure 2 shows that the Programming Principle figure of pin configuration module 121.Owing to having stored the configuration information of pin in the 212 pin configuration modules; in order to prevent that the external world from reading these information control pins; will arrange that the pin configuration module can only be write data and can not be by read data; to guarantee also that simultaneously these pin configuration information data after storer restarts are not lost; therefore, the storage medium of pin configuration module 121 should be protected non-volatile memory.Therefore the present embodiment is the pin configuration module 121 that realizes at a protected non-volatile memory 210.
Detect the state of STATE1 in the pin configuration module 121 programming starting stage user, if its state is " UNLOCK ", this module is described not by locked, storer 1 allows the user to this module programming, otherwise does not allow this module programming.In the process of programming, the user also will arrange STATE1 and these two status indicator positions of STATE2 in the pin configuration module, and when storer 1 dispatched from the factory, the state of STATE1 and STATE2 was respectively " UNLOCK " and " DEFAULT ".If the user also thinks later on again pin configuration module 121 to be programmed, the STATE1 state is set so is " UNLOCK ", if the user can not programme later on to 121 this time programmings of pin configuration module again, the STATE1 state is set so is " LOCK "; Be in the situation of default configuration when pin, the STATE2 state is " DEFAULT ", the user pin configuration module 121 is programmed successfully, and after the pin of storer 1 was redefined, the STATE2 state was set to " CONFIG ".
After the user programmes successfully to pin configuration module 121, pin configuration module 121 has been stored the pin configuration information that the user redefines, pin configuration module 121 sends to pin to pin configuration information and redefines in the unit 11, and the control pin redefines the unit and redefines external terminal according to user's requirement.In addition, the physical medium of pin configuration module 121 is protected non-volatile memories, and therefore, although after the storer power down, the pin configuration information data in the pin configuration module still can not lost.When this storer again during electrifying startup, internal element 12 at first detects the state of STATE2 in the pin configuration module, if the STATE2 state is " DEFAULT ", pin configuration module 121 redefines the pin configuration information of unit input default to pin so; If the STATE2 state is " CONFIG ", pin configuration module 121 redefines the pin configuration information that unit 11 input users define pin to pin so.Pin redefines unit 11 after receiving the pin configuration information that pin configuration module 121 sends, it just with give tacit consent to or user-defined pattern set the mapping relations of pin and internal signal.Simultaneously, redefine before the 121 pairs of pin definitions in unit finish at pin, storer does not allow outer bound pair, and it conducts interviews, only after pin definitions is successfully completed, and the extraneous reference-to storage 1 that just is allowed to.
The functional schematic that pin redefines unit 11 as shown in Figure 3.Pin redefines unit 11 and is configured in the mapping relations to signal port D1, D2, D3, D4 and signal port I1, I2, O1, O2 under the control of pin configuration information: solid line represents is mapping relations under the storer default mode, what dotted line represented is the configurable mapping relations of user, they are one to one, can be for the user selection configuration therefore always have 16 kinds of mapping relations.
Fig. 4 is the circuit theory schematic diagram that pin redefines unit 11.Pin configuration module 121 in the internal element 12 is used for redefining to pin the MUX transmission pin configuration information of unit 11, the control MUX is selected the correct signal that inputs or outputs according to user's definition, finishes the correct mapping of pin and internal signal.The internal element 12 of storer 1 is used for redefining unit 11 to pin and sends outputting data signals, and the output enable signal redefines unit 11 receiving input data signals from pin simultaneously.
Pin redefines 11 inside, unit and comprises: the MUX 431,433,435 and 437 that is used for selecting outputting data signals; Be used for selecting the MUX 432,434,436 and 438 of output enable signal; Be used for selecting the MUX 439 and 440 of input data signal; All MUX are all controlled by pin configuration information; The impact damper 411,412,413,414,415,416,417,418,419,420,421,422,423 and 424 that is used for rfpa output signal and input signal, wherein impact damper 413,416,420, the 423rd is with and is controlled the three-state buffer that enables, and is used for the control outputting data signals.
The above; only be the better embodiment of the present invention; but protection scope of the present invention is not limited to this; anyly be familiar with those skilled in the art in the technical scope that the present invention discloses; the variation that can expect easily or replacement; all should be encompassed within protection scope of the present invention, therefore, protection scope of the present invention should be as the criterion with the protection domain of claims.
Claims (8)
1. the storer of a redefined pins, this storer has a plurality of pins with PERCOM peripheral communication, it is characterized in that, comprising:
Internal element (12) with pin configuration module (121), this pin configuration module (121) provide user program definition pin and save as the pin configuration information that does not allow the access of storer external user;
Connect respectively each pin and by having a plurality of one way signal ports of mapping relations with each two-way signaling port and pin that internal element (12) carries out data communication redefines unit (11), its pin configuration information according to pin configuration module (121) reconfigures the mapping relations of two-way signaling port and one way signal port by a plurality of bidirectional ports;
Described pin redefines unit (11) and comprising: be connected between each two-way signaling port and each the one way signal port by impact damper, be used for selecting respectively two MUX of input and output data-signal; Be used for selection to the MUX of described impact damper output enable signal, its output terminal is connected to the Enable Pin of described impact damper;
Described pin configuration input information pin redefines the condition selecting end of each MUX in the unit (11), controls each MUX and selects correct input signal to the output terminal of MUX according to user-defined mapping relations.
2. the storer of redefined pins according to claim 1 is characterized in that, described pin configuration module (121) comprising: the first status indicator position that whether allows user program; Determine that pin redefines the second status indicator position whether unit (11) adopts user program definition pin;
If the user does not allow again to programme to the rear setting of pin configuration module (121) programming, then the first status indicator position is set to " LOCK " by " UNCLOK ";
Redefine unit (11) employing user program definition pin if pin is set, then the second status indicator position is set to " CONFIG " by " DEFAULT ".
3. the storer of redefined pins according to claim 1 is characterized in that, described pin configuration module (121) comprising: distribute programming territory and configuration territory at protected non-volatile memory; The program command that the programming territory receives user program definition pin also is stored as pin configuration information, and the pin configuration information updating is stored to the configuration territory after programming finishes.
4. the storer of redefined pins according to claim 3 is characterized in that, described nonvolatile memory is to allow storer external user data writing and do not allow reading out data.
5. the memory-protection method of a redefined pins, this storer has a plurality of pins with PERCOM peripheral communication, and each pin connects respectively a plurality of bidirectional ports, and a plurality of two-way signaling port and a plurality of one way signal port have mapping relations; It is characterized in that, comprising:
The user defines pin by pin configuration module (121) programming, pin definitions information is saved as do not allow storer
The pin configuration information of external user access;
Redefine the mapping relations that its pin configuration information according to pin configuration module (121) of unit (11) reconfigures two-way signaling port and one way signal port by pin;
Described pin redefines unit (11) and comprising: be connected between each two-way signaling port and each the one way signal port by impact damper, be used for selecting respectively two MUX of input and output data-signal; Be used for selection to the MUX of described impact damper output enable signal, its output terminal is connected to the Enable Pin of described impact damper;
Described pin configuration input information pin redefines the condition selecting end of each MUX in the unit (11), controls each MUX and selects correct input signal to the output terminal of MUX according to user-defined mapping relations.
6. the memory-protection method of redefined pins according to claim 5 is characterized in that, also comprises:
If the user does not allow again to programme to the rear setting of pin configuration module (121) programming, then will whether allow the first status indicator position of user program to be set to " LOCK " by " UNCLOK ";
Redefine unit (11) employing user program definition pin if pin is set, will determine that then pin redefines unit (11) and whether adopts the second status indicator position of user program definition pin to be set to " CONFIG " by " DEFAULT ".
7. the memory-protection method of redefined pins according to claim 5 is characterized in that, described pin configuration module (121) comprising: distribute programming territory and configuration territory at protected non-volatile memory; The program command that the programming territory receives user program definition pin also is stored as pin configuration information, and the pin configuration information updating is stored to the configuration territory after programming finishes.
8. the memory-protection method of redefined pins according to claim 5; it is characterized in that; redefine before unit (11) finishes the mapping relations of configuration two-way signaling port and one way signal port at pin; storer does not allow its access of outer bound pair, its access of bound pair outside only just allowing after pin redefines unit (11) to be successfully completed configuration.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN 200910109143 CN101625889B (en) | 2009-07-29 | 2009-07-29 | Memory with redefined pins and protection method thereof |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN 200910109143 CN101625889B (en) | 2009-07-29 | 2009-07-29 | Memory with redefined pins and protection method thereof |
Publications (2)
Publication Number | Publication Date |
---|---|
CN101625889A CN101625889A (en) | 2010-01-13 |
CN101625889B true CN101625889B (en) | 2013-09-18 |
Family
ID=41521693
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN 200910109143 Expired - Fee Related CN101625889B (en) | 2009-07-29 | 2009-07-29 | Memory with redefined pins and protection method thereof |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN101625889B (en) |
Families Citing this family (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN103870646B (en) * | 2014-03-13 | 2017-07-14 | 山东超越数控电子有限公司 | Nonpolarity device pin pin method for expressing in a kind of PCB |
CN104200011B (en) * | 2014-08-14 | 2017-10-13 | 深圳市兴森快捷电路科技股份有限公司 | A kind of electric circuit diagram design chip pin exchange method |
CN107329417B (en) * | 2016-04-28 | 2023-08-15 | 深圳市博巨兴微电子科技有限公司 | Microcontroller and input/output pin mapping circuit thereof |
CN108388531A (en) * | 2018-02-09 | 2018-08-10 | 深圳国微技术有限公司 | A kind of chip and its pin multiplexing method |
Citations (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US7062652B2 (en) * | 1999-04-27 | 2006-06-13 | Matsushita Electric Industrial Co., Ltd. | Semiconductor memory card, data reading apparatus and data reading/reproducing apparatus |
CN1842775A (en) * | 2003-09-26 | 2006-10-04 | 爱特梅尔股份有限公司 | Selectable block protection for non-volatile memory |
CN1937077A (en) * | 2005-09-22 | 2007-03-28 | 康佳集团股份有限公司 | Multi-state management method for data in flash-memory medium |
-
2009
- 2009-07-29 CN CN 200910109143 patent/CN101625889B/en not_active Expired - Fee Related
Patent Citations (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US7062652B2 (en) * | 1999-04-27 | 2006-06-13 | Matsushita Electric Industrial Co., Ltd. | Semiconductor memory card, data reading apparatus and data reading/reproducing apparatus |
CN1842775A (en) * | 2003-09-26 | 2006-10-04 | 爱特梅尔股份有限公司 | Selectable block protection for non-volatile memory |
CN1937077A (en) * | 2005-09-22 | 2007-03-28 | 康佳集团股份有限公司 | Multi-state management method for data in flash-memory medium |
Also Published As
Publication number | Publication date |
---|---|
CN101625889A (en) | 2010-01-13 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN109558339B (en) | Security system and method for operating a security system | |
US8051345B2 (en) | Method and apparatus for securing digital information on an integrated circuit during test operating modes | |
CN101625889B (en) | Memory with redefined pins and protection method thereof | |
CN110034932B (en) | Communication system and operation method thereof | |
CN111833937B (en) | Refresh mode and access mode for memory | |
CN106295408A (en) | Integrated circuit and encryption method | |
CN209248517U (en) | A kind of storage control device and digit chip | |
CN101788958A (en) | Method for protecting data of memorizer | |
CN107229881A (en) | Authentication circuit based on SRAM | |
CN103187095A (en) | Efuse module control method and chip with efuse module | |
US20150321642A1 (en) | Method for preventing an unauthorized operation of a motor vehicle | |
CN103023647B (en) | A kind of method strengthening secondary radar FPGA fail safe | |
CN107817981A (en) | The control method and electronic equipment of a kind of embedded controller | |
CN105975878A (en) | Safe storage method and system based on Nand Flash flash-memory | |
CN203299865U (en) | A bank card based on PUF | |
US8397079B2 (en) | Method and apparatus for securing digital information on an integrated circuit read only memory during test operating modes | |
US7512852B2 (en) | Protecting an integrated circuit test mode | |
CN106933752A (en) | The encryption device and method of a kind of SRAM type FPGA | |
CN103714018A (en) | Security access control method for chip storage circuit | |
KR101789846B1 (en) | Memory module for simultaneously providing at least one secure and at least one insecure memory area | |
CN106168931A (en) | There is the safe RAM block of multiple subregion | |
CN106326781B (en) | A kind of method and apparatus for protecting chip test mode | |
CN101552031B (en) | Portable memorizer and partitioned data protecting method | |
CN1389873A (en) | Semiconductor memory | |
US8707443B2 (en) | Circuit with testable circuit coupled to privileged information supply circuit |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
C14 | Grant of patent or utility model | ||
GR01 | Patent grant | ||
CP03 | Change of name, title or address |
Address after: 22A, Guoshi building, 1801 Shahe West Road, high tech Zone, Yuehai street, Nanshan District, Shenzhen City, Guangdong Province Patentee after: GUOWEI GROUP (SHENZHEN) Co.,Ltd. Address before: 518057 Guangdong city of Shenzhen province Nanshan District high tech Industrial Park South high SSMEC building two floor Patentee before: SHENZHEN STATE MICRO TECHNOLOGY Co.,Ltd. |
|
CP03 | Change of name, title or address | ||
CF01 | Termination of patent right due to non-payment of annual fee |
Granted publication date: 20130918 |
|
CF01 | Termination of patent right due to non-payment of annual fee |