CN1038367C - 数据存储装置 - Google Patents

数据存储装置 Download PDF

Info

Publication number
CN1038367C
CN1038367C CN94103312A CN94103312A CN1038367C CN 1038367 C CN1038367 C CN 1038367C CN 94103312 A CN94103312 A CN 94103312A CN 94103312 A CN94103312 A CN 94103312A CN 1038367 C CN1038367 C CN 1038367C
Authority
CN
China
Prior art keywords
data
address
memory
address signal
array
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CN94103312A
Other languages
English (en)
Other versions
CN1102265A (zh
Inventor
阿尼尔·格尔克西
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
NXP USA Inc
Original Assignee
Motorola Inc
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Motorola Inc filed Critical Motorola Inc
Publication of CN1102265A publication Critical patent/CN1102265A/zh
Application granted granted Critical
Publication of CN1038367C publication Critical patent/CN1038367C/zh
Anticipated expiration legal-status Critical
Expired - Fee Related legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F12/00Accessing, addressing or allocating within memory systems or architectures
    • G06F12/02Addressing or allocation; Relocation
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/10Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means together with a coded signal, e.g. in the form of personal identification information, like personal identification number [PIN] or biometric data
    • G07F7/1008Active credit-cards provided with means to personalise their use, e.g. with PIN-introduction/comparison system
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F12/00Accessing, addressing or allocating within memory systems or architectures
    • G06F12/14Protection against unauthorised use of memory or access to memory
    • G06F12/1408Protection against unauthorised use of memory or access to memory by using cryptography
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/34Payment architectures, schemes or protocols characterised by the use of specific devices or networks using cards, e.g. integrated circuit [IC] cards or magnetic cards
    • G06Q20/341Active cards, i.e. cards including their own processing means, e.g. including an IC or chip
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/0806Details of the card
    • G07F7/0813Specific details related to card security
    • G07F7/082Features insuring the integrity of the data on or in the card

Landscapes

  • Engineering & Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Business, Economics & Management (AREA)
  • General Engineering & Computer Science (AREA)
  • Accounting & Taxation (AREA)
  • Strategic Management (AREA)
  • General Business, Economics & Management (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Microelectronics & Electronic Packaging (AREA)
  • Storage Device Security (AREA)
  • Read Only Memory (AREA)

Abstract

数据存储设备(9)包括用来存储数据的一个电子存储单元阵列(20)。地址输入端(10)提供对地址信号源的接口,提供来自地址信号源的第一存储单元地址信号以便为存储器阵列(20)中的存储单元寻址。数据输出端(12)为数据接收装置提供接口并与存储器阵列(20)相连接,用于接收响应地址信号而产生的数据信号。地址加密装置(14)连接在地址输入端(10)和存储器阵列(20)之间,用于对第一存储单元地址信号进行加密。

Description

数据存储装置
本发明一般涉及数据存储装置。
数据存储装置,例如,含有以数值形式存储在集成电路(IC)存储单元中的银行帐户细节的智能卡,存在着被欺诈性光学检测的风险。这种检测是这样进行的,通过去除IC的塑料封装,蚀刻掉覆盖层,然后再使用能选择吸收的着色剂,就能看到存储器上的数据。
众所周知,可以使用地址加密(encrypting)装置,这能使IC存储器中的数据变得无序。这样,这些数据在被光学分析时就无法理解,但可以通过地址加密装置而合法地存取。但使用这种地址加密装置的一个问题是:通过使用上述的光学检测技术,人们可以得知加密装置的细节,从而可以破译出IC存储器中的数据。
本发明试图提供一种数据存储装置,在这种装置中上述问题将得到解决。
该数据存储装置含有一个用于存储数据的电子存储单元阵列。地址输入端提供对地址信号源的接口,从而为存储器阵列上的存储单元寻址提供来自地址信号源的第一存储单元的地址信号。数据输出端为数据接收装置提供接口并连接到存储器阵列,用来接收响应地址信号而产生的数据信号。该数据信号用来表示存储在由地址信号寻址的存储单元中的数据。地址加密装置连接在地址输入端和存储器阵列之间,用于加密第一存储单元的地址信号。地址加密装置含有能防止直接光学检测的加密用的数据,这些数据用于加密第一存储单元的地址信号。
数据存储器阵列可以是含有以加密的方式存储数据的只读存储器,这里的数据加密方法与数据加密装置相配套。
地址加密装置可以包括一个用于接收来自非易失性存储器的加密数据的锁存器。这样,在正常工作时该非易性存储器就可以独立于地址加密装置而工作。
值得注意的是,这样人们就不能得到该加密装置的加密细节,从而也就无法破译IC存储器中的数据。
现在通过参考附图来描述本发明的一个示范实施例。图1说明根据本发明设计的数据存储装置的一个最佳实施例。
现在参考图1,图中给出了一个智能卡9,该卡含有用于接收来自智能卡9的地址驱动线路(未示出)的地址信号的地址输入端10。智能卡9是在单一的硅晶片上做成的集成电路。
地址加密器14连接到地址输入端10,用于根据下文将要解释的密钥对接收到的地址信号进行加密。
行译码器16和列译码器18分别连接到地址加密器14上,用于对只读存储器(ROM)20提供存储器单元的寻址,该寻址是对来自地址加密器14的加密地址信号的响应。
ROM 20含有存储在存储单元阵列中的电子数据。这些数据通过连接到ROM 20上的行译码器16和列译码器18来进行寻址,ROM 20为响应寻址向数据输出端12提供数据信号。每个数据信号用于表示存储在被寻址存储单元中的数据值。
数据存储器20的存储单元的物理排列与自地址输入端10的地址信号并不明显地相对应,因为这些收到的地址信号要通过地址加密器14被加密。这样,上述的对存储单元内容所作的可能的光学检测从这些数据上将得不到任何有意义的东西,除非加密装置同样是可以被检查的。
数据输出端12用于接收来自数据存储器20的数据信号,为智能卡的数据处理单元(未示出)提供所述的数据信号。
包含在浮动栅极场效应晶体管装置中的非易失性随机存取存储器(NVRAM)22通过锁存器24连接到地址加密器14,以数值的形式提供密钥。
在正常工作期间,智能卡9为了引用数据存储器20的第一存储单元中存储的第一数据项,可能要检索这第一项数据的值。已知该数据驻留在第一存储单元中。
因此,第一存储单元的地址信号从地址驱动线路(未示出)送至地址输入端10。第一存储单元的地址信号似乎用于表示第二个存储单元的地址,且后者所在单元不含有所希望的值。地址加密器14根据从锁存器24收到的密钥对第一存储单元的地址信号进行加密。
译码器16和18收到经加密的第一存储单元的地址信号时,该信号清楚地表示出这是第一存储单元的地址。
这样,为了响应该加密的地址信号,ROM 20的第一存储单元通过译码器16和18寻址,并为数据输出端12提供数据信号,该信号用于表示存储在第一存储单元的第一项数据值。
在智能卡9中,NVRAM 22基本上用来作其他的用途。因此,当智能卡9开始正常工作时,锁存器24用以接收形成密钥的数据值,然后保持该密钥并在工作期间为地址加密器14提供密钥,以便NVRAM 22与加密器14相隔离。因此,地址加密器14的运行不会妨碍智能卡9的任何操作。
值得注意的是,试图使用上述对ROM20进行检测的方法对NVRAM 22的内容进行光学检测将检测不出上述的密钥,因为这些方法对浮动栅极场效应晶体管装置的探测无效。
锁存器24可以用上述方法进行光学检测,但它仅在正常工作时保持密钥的值。这样,在被检测时,锁存器24将不再含有密钥值。因此,密钥是安全的。
地址加密器14用密钥来对收到的第一存储单元的地址信号进行变换。例如,密钥可能是一个四位的二进制数,而地址加密器可能对密钥和第一存储单元的地址信号进行加法运算。这样,地址加密器14就为行译码器16和列译码器18提供了加密的地址信号。
对第一存储单元的地址信号进行加密意味着ROM 20中第一存储单元的物理地址并不显式地对应于所希望的物理地址。因此,在不知道密钥的情况下,根据第一存储单元的地址来计算和找出某一存储单元,并用前述的光学探测法来探测该存储的内容,这样做是不可能的。对ROM 20中的所有其余存储单元的地址也是如此。
此外,光学检测译码器16和18以及地址加密器14的构造均无助于码译存储单元的地址,因为密钥是安全的。
这样,就可以避免对ROM 20中所含数据进行非法和欺诈性的光学探测。
需要指出的是,技术熟练的人员均可按前述实施例完成其他的实施例。例如在一种不同于智能卡的设备中使用上述的装置,例如使用盒式存储器(memory cartridge)或其他数据存储设备。
同样应懂得,NVRAM 22可以用另外的技术连接到上述的浮动栅极晶体管,例如金属/氮化物氧化硅(MNOS)半导体技术。
另外,ROM 20也可以用其他的数据存储介质来代替,例如可擦除和可编程的ROM(EPRROM)。

Claims (6)

1.一个数据存储装置包括:
一个用于存储数据的电子存储器单元阵列;
一个地址输入端,用于为地址信号源提供接口,并且提供来自地址信号源的第一单元的地址信号,以便对存储器阵列中的存储单元进行寻址。
一个数据输出端,用于为数据接收装置提供接口并被连接到存储器阵列,且用来接收为响应地址信号而由此产生的数据信号,该数据信号用以表示存储在由地址信号寻址的存储单元中的数据;
其特征在于还包括:
地址加密装置,被连接在地址输入端和存储器阵列之间,用于对第一存储单元地址信号进行加密;
地址加密装置中含有加密用数据,该数据能避免被直接光学探测,加密用数据用于对第一存储单元地址信号进行加密。
2.权利要求1中所述的设备,其中的数据存储器阵列是含有以加密方式存储的数据的只读存储器,此中的数据加密方法与加密数据装置相配套。
3.权利要求1中所述的设备,其中加密用的数据存储在非易失性存储器中。
4.权利要求1中所述的设备,其中的地址加密装置包括用来接收从非易失性存储器来的加密用的数据的锁存器,以致于在正常工作期间非易失性存储器可以独立于地址加密装置而工作。
5.权利要求1中所述的设备,其中的设备用半导体集成电路做成。
6.一种智能卡,包括根据上述任一权利要求构造的数据存储设备。
CN94103312A 1993-03-20 1994-03-18 数据存储装置 Expired - Fee Related CN1038367C (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
GB9305827A GB2276254B (en) 1993-03-20 1993-03-20 Data storage device
GB9305827.9 1993-03-20

Publications (2)

Publication Number Publication Date
CN1102265A CN1102265A (zh) 1995-05-03
CN1038367C true CN1038367C (zh) 1998-05-13

Family

ID=10732455

Family Applications (1)

Application Number Title Priority Date Filing Date
CN94103312A Expired - Fee Related CN1038367C (zh) 1993-03-20 1994-03-18 数据存储装置

Country Status (9)

Country Link
US (1) US5563945A (zh)
EP (1) EP0617383A3 (zh)
JP (1) JPH076096A (zh)
KR (1) KR100330439B1 (zh)
CN (1) CN1038367C (zh)
GB (1) GB2276254B (zh)
HK (1) HK1003850A1 (zh)
SG (1) SG52302A1 (zh)
TW (1) TW331640B (zh)

Families Citing this family (29)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5892826A (en) * 1996-01-30 1999-04-06 Motorola, Inc. Data processor with flexible data encryption
JPH09312099A (ja) * 1996-05-21 1997-12-02 Toshiba Microelectron Corp 半導体記憶装置及びそのアクセス方法
GB2321728B (en) * 1997-01-30 2001-12-19 Motorola Inc Apparatus and method for accessing secured data stored in a portable data carrier
US5987572A (en) * 1997-09-29 1999-11-16 Intel Corporation Method and apparatus employing a dynamic encryption interface between a processor and a memory
US6084968A (en) * 1997-10-29 2000-07-04 Motorola, Inc. Security token and method for wireless applications
US6084967A (en) * 1997-10-29 2000-07-04 Motorola, Inc. Radio telecommunication device and method of authenticating a user with a voice authentication token
US6473861B1 (en) 1998-12-03 2002-10-29 Joseph Forte Magnetic optical encryption/decryption disk drive arrangement
US6651149B1 (en) * 1998-12-10 2003-11-18 Kabushiki Kaisha Toshiba Data storage medium with certification data
US6317835B1 (en) * 1998-12-23 2001-11-13 Radiant Systems, Inc. Method and system for entry of encrypted and non-encrypted information on a touch screen
DE19901829A1 (de) * 1999-01-19 2000-07-20 Philips Corp Intellectual Pty Schaltungsanordnung zur elektronischen Datenverarbeitung
DE19953321C2 (de) * 1999-11-05 2001-09-06 Beta Res Gmbh Reproduktionsschutz von Geheimnissen auf Chipkarten
WO2002071231A1 (en) * 2001-02-15 2002-09-12 Nokia Corporation Method and arrangement for protecting information
WO2002077878A1 (en) 2001-03-26 2002-10-03 Galois Connections Inc Crypto-pointers for secure data storage
DE10256587A1 (de) * 2002-12-04 2004-06-17 Philips Intellectual Property & Standards Gmbh Datenverarbeitungseinrichtung, insbesondere elektronisches Speicherbauteil, und hierauf bezogenes Verschlüsselungsverfahren
DE10318730A1 (de) * 2003-04-25 2004-11-11 Conti Temic Microelectronic Gmbh Verfahren zum Betreiben einer Datenverarbeitungseinheit sowie Datenverarbeitungssystem zur Durchführung des Verfahrens
DE10332850A1 (de) 2003-07-18 2005-02-17 OCé PRINTING SYSTEMS GMBH Verfahren und Vorrichtung zum Drucken von sensitiven Daten
EP1717723A1 (en) * 2005-04-29 2006-11-02 ST Incard S.r.l. Improved virtual machine or hardware processor for IC-card portable electronic devices
US7596644B2 (en) 2006-01-11 2009-09-29 Solarflare Communications, Inc. Transmit rate pacing system and method
ATE518188T1 (de) * 2005-09-21 2011-08-15 Solarflare Communications Inc Raten-pacing
EP1768028A1 (en) * 2005-09-22 2007-03-28 STMicroelectronics (Research & Development) Limited Addressing peripherals in an ic
JP4583305B2 (ja) * 2005-12-28 2010-11-17 シャープ株式会社 記録方法、記録装置及びicカード
EP1906412A1 (en) * 2006-09-29 2008-04-02 Koninklijke Philips Electronics N.V. A secure non-volatile memory device and a method of protecting data therein
CN101246743B (zh) * 2007-02-14 2012-04-18 上海海尔集成电路有限公司 闪存接口
JP5571883B2 (ja) * 2007-06-18 2014-08-13 軒▲ソン▼科技有限公司 デジタル情報の保護方法、装置およびコンピュータによるアクセス可能な記録媒体
WO2009069326A1 (ja) * 2007-11-26 2009-06-04 Co-Conv, Corp. ネットワークブートシステム
JP5272751B2 (ja) * 2009-01-26 2013-08-28 富士通セミコンダクター株式会社 プロセッサ
CN101901629B (zh) * 2009-05-25 2013-12-25 杭州士兰微电子股份有限公司 非易失性存储器保护系统和保护方法
US8367460B2 (en) 2010-06-22 2013-02-05 Micron Technology, Inc. Horizontally oriented and vertically stacked memory cells
JP5753457B2 (ja) * 2011-07-25 2015-07-22 株式会社メガチップス メモリシステム、セキュリティメモリおよび情報保護方法

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
GB2205667A (en) * 1987-06-12 1988-12-14 Ncr Co Method of controlling the operation of security modules
US5081675A (en) * 1989-11-13 1992-01-14 Kitti Kittirutsunetorn System for protection of software in memory against unauthorized use

Family Cites Families (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US4278837A (en) * 1977-10-31 1981-07-14 Best Robert M Crypto microprocessor for executing enciphered programs
US4168396A (en) * 1977-10-31 1979-09-18 Best Robert M Microprocessor for executing enciphered programs
EP0121853A3 (en) * 1983-04-04 1988-01-13 BURROUGHS CORPORATION (a Delaware corporation) Data processing system having public encryption and private decryption keys
EP0128672A1 (en) * 1983-05-13 1984-12-19 Ira Dennis Gale Data security device
US4583196A (en) * 1983-10-28 1986-04-15 Honeywell Inc. Secure read only memory
JPS60177498A (ja) * 1984-02-23 1985-09-11 Fujitsu Ltd 半導体記憶装置
US4757536A (en) * 1984-10-17 1988-07-12 General Electric Company Method and apparatus for transceiving cryptographically encoded digital data
JPS62251963A (ja) * 1986-04-25 1987-11-02 Casio Comput Co Ltd Icカ−ドの認証方式
US5237699A (en) * 1988-08-31 1993-08-17 Dallas Semiconductor Corp. Nonvolatile microprocessor with predetermined state on power-down
US5237610A (en) * 1990-02-01 1993-08-17 Scientific-Atlanta, Inc. Independent external security module for a digitally upgradeable television signal decoder
CA2035697A1 (en) * 1991-02-05 1992-08-06 Brian James Smyth Encryption apparatus for computer device
US5237611A (en) * 1992-07-23 1993-08-17 Crest Industries, Inc. Encryption/decryption apparatus with non-accessible table of keys
US5455862A (en) * 1993-12-02 1995-10-03 Crest Industries, Inc. Apparatus and method for encrypting communications without exchanging an encryption key

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
GB2205667A (en) * 1987-06-12 1988-12-14 Ncr Co Method of controlling the operation of security modules
US5081675A (en) * 1989-11-13 1992-01-14 Kitti Kittirutsunetorn System for protection of software in memory against unauthorized use

Also Published As

Publication number Publication date
GB2276254A (en) 1994-09-21
HK1003850A1 (en) 1998-11-06
TW331640B (en) 1998-05-11
GB9305827D0 (en) 1993-05-05
CN1102265A (zh) 1995-05-03
EP0617383A3 (en) 1995-09-13
KR940022267A (ko) 1994-10-20
SG52302A1 (en) 1998-09-28
KR100330439B1 (ko) 2002-08-08
EP0617383A2 (en) 1994-09-28
JPH076096A (ja) 1995-01-10
GB2276254B (en) 1997-10-01
US5563945A (en) 1996-10-08

Similar Documents

Publication Publication Date Title
CN1038367C (zh) 数据存储装置
US8155309B2 (en) Circuit arrangement with non-volatile memory module and method for en-/decrypting data in the non-volatile memory module
EP0743602B1 (en) Circuit device for function usage control in an integrated circuit
US9514063B2 (en) Secure compact flash
EP0932124B1 (en) Integrated circuit and smart card comprising such a circuit
US7783898B2 (en) Encryption/decryption of stored data using non-accessible, unique encryption key
CN100464313C (zh) 一种移动存储装置及存取移动存储装置中加密数据的方法
EP0905942B1 (en) Decrypting device
US6182217B1 (en) Electronic data-processing device and system
EP1073021B1 (en) Information processing apparatus, card and information processing system
KR100421629B1 (ko) 전자적 데이터 처리 회로
EP2074628B1 (en) A secure non-volatile memory device and a method of protecting data therein
US7913307B2 (en) Semiconductor integrated circuit and information processing apparatus
WO2003077084A3 (en) Implementation of storing secret information in data storage reader products
WO2008127408A2 (en) Method and system for encryption of information stored in an external nonvolatile memory
EP0856818A2 (en) Apparatus and method for accessing secured data stored in a portable data carrier
US7200759B2 (en) Method and device for making information contents of a volatile semiconductor memory irretrievable
US6839837B1 (en) Cryptosystem key updating system and method for preventing illegal use of software
US8745410B2 (en) Method and apparatus to scramble data stored in memories accessed by microprocessors
US20100031088A1 (en) Method and system for processing information
EP1046143B1 (en) Data carrier device with data bus means whose power consumption is independent of data transmitted via the data bus means
JP2008140104A (ja) メモリシステム及びメモリアクセス方法
JP2007087455A (ja) 半導体記憶装置
JP2507588B2 (ja) 携帯形半導体記憶装置
JP2677342B2 (ja) 携帯形半導体記憶装置システム

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
ASS Succession or assignment of patent right

Owner name: FREEDOM SEMICONDUCTORS CO.

Free format text: FORMER OWNER: MOTOROLA, INC.

Effective date: 20040820

C41 Transfer of patent application or patent right or utility model
TR01 Transfer of patent right

Effective date of registration: 20040820

Address after: Texas in the United States

Patentee after: FreeScale Semiconductor

Address before: Illinois Instrunment

Patentee before: Motorola, Inc.

C19 Lapse of patent right due to non-payment of the annual fee
CF01 Termination of patent right due to non-payment of annual fee