DK1099197T3 - Device for providing output data in response to input data and authentication method and method for encrypted data transmission - Google Patents

Device for providing output data in response to input data and authentication method and method for encrypted data transmission

Info

Publication number
DK1099197T3
DK1099197T3 DK99944537T DK99944537T DK1099197T3 DK 1099197 T3 DK1099197 T3 DK 1099197T3 DK 99944537 T DK99944537 T DK 99944537T DK 99944537 T DK99944537 T DK 99944537T DK 1099197 T3 DK1099197 T3 DK 1099197T3
Authority
DK
Denmark
Prior art keywords
data
output data
electronic circuit
response
input data
Prior art date
Application number
DK99944537T
Other languages
Danish (da)
Inventor
Florian Oelmaier
Roland Brand
Andre Heuer
Heinz Gerhaeuser
Markus Prosch
Olaf Korte
Roland Plankenbuehler
Original Assignee
Fraunhofer Ges Forschung
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Fraunhofer Ges Forschung filed Critical Fraunhofer Ges Forschung
Application granted granted Critical
Publication of DK1099197T3 publication Critical patent/DK1099197T3/en

Links

Classifications

    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/10Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means together with a coded signal, e.g. in the form of personal identification information, like personal identification number [PIN] or biometric data
    • G07F7/1008Active credit-cards provided with means to personalise their use, e.g. with PIN-introduction/comparison system
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/34Payment architectures, schemes or protocols characterised by the use of specific devices or networks using cards, e.g. integrated circuit [IC] cards or magnetic cards
    • G06Q20/341Active cards, i.e. cards including their own processing means, e.g. including an IC or chip
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/40Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
    • G06Q20/409Device specific authentication in transaction processing
    • G06Q20/4097Device specific authentication in transaction processing using mutual authentication between devices and transaction partners
    • G06Q20/40975Device specific authentication in transaction processing using mutual authentication between devices and transaction partners using encryption therefor
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/0806Details of the card
    • G07F7/0813Specific details related to card security
    • G07F7/082Features insuring the integrity of the data on or in the card
    • HELECTRICITY
    • H01ELECTRIC ELEMENTS
    • H01LSEMICONDUCTOR DEVICES NOT COVERED BY CLASS H10
    • H01L23/00Details of semiconductor or other solid state devices
    • H01L23/57Protection from inspection, reverse engineering or tampering
    • H01L23/576Protection from inspection, reverse engineering or tampering using active circuits
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/06Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols the encryption apparatus using shift registers or memories for block-wise or stream coding, e.g. DES systems or RC4; Hash functions; Pseudorandom sequence generators
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/08Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
    • H04L9/0861Generation of secret information including derivation or calculation of cryptographic keys or passwords
    • H04L9/0877Generation of secret information including derivation or calculation of cryptographic keys or passwords using additional device, e.g. trusted platform module [TPM], smartcard, USB or hardware security module [HSM]
    • HELECTRICITY
    • H01ELECTRIC ELEMENTS
    • H01LSEMICONDUCTOR DEVICES NOT COVERED BY CLASS H10
    • H01L2924/00Indexing scheme for arrangements or methods for connecting or disconnecting semiconductor or solid-state bodies as covered by H01L24/00
    • H01L2924/0001Technical content checked by a classifier
    • H01L2924/0002Not covered by any one of groups H01L24/00, H01L24/00 and H01L2224/00
    • HELECTRICITY
    • H01ELECTRIC ELEMENTS
    • H01LSEMICONDUCTOR DEVICES NOT COVERED BY CLASS H10
    • H01L2924/00Indexing scheme for arrangements or methods for connecting or disconnecting semiconductor or solid-state bodies as covered by H01L24/00
    • H01L2924/10Details of semiconductor or other solid state devices to be connected
    • H01L2924/11Device type
    • H01L2924/12Passive devices, e.g. 2 terminal devices
    • H01L2924/1204Optical Diode
    • H01L2924/12044OLED
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/12Details relating to cryptographic hardware or logic circuitry
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/26Testing cryptographic entity, e.g. testing integrity of encryption key or encryption algorithm

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Business, Economics & Management (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Accounting & Taxation (AREA)
  • Theoretical Computer Science (AREA)
  • Strategic Management (AREA)
  • Signal Processing (AREA)
  • General Business, Economics & Management (AREA)
  • Microelectronics & Electronic Packaging (AREA)
  • Condensed Matter Physics & Semiconductors (AREA)
  • Finance (AREA)
  • Computer Hardware Design (AREA)
  • Power Engineering (AREA)
  • Storage Device Security (AREA)
  • Credit Cards Or The Like (AREA)
  • Communication Control (AREA)
  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Detection And Prevention Of Errors In Transmission (AREA)

Abstract

In order to determine authenticity of the device on the basis of output data, the device (10) for supplying output data (12) in reaction to input data (14) comprises an electronic circuit (16) for executing an algorithm that generates output data (12) on the basis of input data (14) and a device (18) for detecting operational data that is influenced by an operation of the electronic circuit (16). The device (18) for detecting operational data is coupled to the electronic circuit (16) in such a way that operational data of the electronic circuit (16) is used by the algorithm in order to generate output data (12). Safety of the device disclosed in the invention is enhanced in that a potential counterfeiter will have to simulate both the functionality of the device and hardware features of said device such as power consumption or time response in order to simulate an authentic card.
DK99944537T 1998-09-22 1999-08-27 Device for providing output data in response to input data and authentication method and method for encrypted data transmission DK1099197T3 (en)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
DE19843424A DE19843424A1 (en) 1998-09-22 1998-09-22 Smart card device for delivering output data in response to input data and providing proof of authenticity uses operating data to influence algorithm used to generate output data
PCT/EP1999/006312 WO2000017826A1 (en) 1998-09-22 1999-08-27 Device for supplying output data in reaction to input data, method for checking authenticity and method for encrypted data transmission

Publications (1)

Publication Number Publication Date
DK1099197T3 true DK1099197T3 (en) 2003-02-10

Family

ID=7881831

Family Applications (1)

Application Number Title Priority Date Filing Date
DK99944537T DK1099197T3 (en) 1998-09-22 1999-08-27 Device for providing output data in response to input data and authentication method and method for encrypted data transmission

Country Status (8)

Country Link
EP (1) EP1099197B1 (en)
AT (1) ATE225548T1 (en)
CA (1) CA2344429C (en)
DE (2) DE19843424A1 (en)
DK (1) DK1099197T3 (en)
ES (1) ES2184500T3 (en)
PT (1) PT1099197E (en)
WO (1) WO2000017826A1 (en)

Families Citing this family (26)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
AU2001277170A1 (en) * 2000-07-25 2002-02-05 Authentisure, Inc. Unified trust model providing secure identification, authentication and validation of physical products and entities, and processing, storage, and exchange of information
DE10041669A1 (en) * 2000-08-10 2002-02-21 Deutsche Telekom Ag Authentication method for chip card, involves determining authenticity of chip card by comparing time dependent output signals of chip card with predetermined time dependent reference signals
FR2823398B1 (en) 2001-04-04 2003-08-15 St Microelectronics Sa EXTRACTION OF PRIVATE DATA FOR AUTHENTICATION OF AN INTEGRATED CIRCUIT
FR2823397A1 (en) * 2001-04-04 2002-10-11 St Microelectronics Sa Extraction of a private datum to authenticate an integrated circuit, uses network parameters and noise to generate datum which has a transient life span, for transmission by circuit to allow its authentication
FR2823401A1 (en) * 2001-04-04 2002-10-11 St Microelectronics Sa Extraction of a private datum to authenticate an integrated circuit, uses network parameters and noise to generate datum which has a transient life span, for transmission by circuit to allow its authentication
FR2825873A1 (en) 2001-06-11 2002-12-13 St Microelectronics Sa PROTECTED STORAGE OF DATA IN AN INTEGRATED CIRCUIT
DE10145365B4 (en) * 2001-09-14 2004-04-15 Infineon Technologies Ag Integrated circuit arrangement
EP1359550A1 (en) 2001-11-30 2003-11-05 STMicroelectronics S.A. Regeneration of a secret number by using an identifier of an integrated circuit
EP1391853A1 (en) * 2001-11-30 2004-02-25 STMicroelectronics S.A. Diversification of the unique identifier of an integrated circuit
FR2833119A1 (en) 2001-11-30 2003-06-06 St Microelectronics Sa GENERATION OF SECRET QUANTITIES OF IDENTIFICATION OF AN INTEGRATED CIRCUIT
FR2834177B1 (en) * 2001-12-20 2004-07-09 Television Par Satellite Tps DEVICE FOR DECODING INTERFERED DIGITAL DATA AND METHOD FOR LOCKING THE DESGROWING
US7840803B2 (en) 2002-04-16 2010-11-23 Massachusetts Institute Of Technology Authentication of integrated circuits
CN100521191C (en) * 2003-05-26 2009-07-29 Nxp股份有限公司 Semiconductor device, method of authentifying and system
DE102004037801B4 (en) * 2004-08-03 2007-07-26 Siemens Ag Method for secure data transmission
US7702927B2 (en) 2004-11-12 2010-04-20 Verayo, Inc. Securely field configurable device
JP5248328B2 (en) 2006-01-24 2013-07-31 ヴェラヨ インク Equipment security based on signal generators
DE102006038877B4 (en) * 2006-08-18 2018-01-25 Giesecke+Devrient Mobile Security Gmbh Tamper-proof unit, procedure for a tamper-proof unit and storage medium
FR2910657B1 (en) * 2006-12-22 2012-11-16 Ingenico Sa METHOD OF VERIFYING THE CONFORMITY OF AN ELECTRONIC PLATFORM AND / OR A COMPUTER PROGRAM PRESENT ON THIS PLATFORM, DEVICE AND CORRESPONDING COMPUTER PROGRAM.
ATE544123T1 (en) 2007-09-19 2012-02-15 Verayo Inc AUTHENTICATION WITH PHYSICALLY UNCLONEABLE FUNCTIONS
US8683210B2 (en) 2008-11-21 2014-03-25 Verayo, Inc. Non-networked RFID-PUF authentication
DE102009005255A1 (en) 2009-01-14 2010-07-15 Khs Ag Method for verifying a tag circuit
US8468186B2 (en) 2009-08-05 2013-06-18 Verayo, Inc. Combination of values from a pseudo-random source
US8811615B2 (en) 2009-08-05 2014-08-19 Verayo, Inc. Index-based coding with a pseudo-random source
WO2015089346A1 (en) 2013-12-13 2015-06-18 Battelle Memorial Institute Electronic component classification
US10789550B2 (en) 2017-04-13 2020-09-29 Battelle Memorial Institute System and method for generating test vectors
IL256108B (en) 2017-12-04 2021-02-28 Elbit Systems Ltd System and method for detecting usage condition and authentication of an article of manufacture

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
DE3736882C2 (en) * 1987-10-30 1997-04-30 Gao Ges Automation Org Method for checking the authenticity of a data carrier with an integrated circuit
DE4339460C1 (en) * 1993-11-19 1995-04-06 Siemens Ag Method for authenticating a system part by another system part of an information transmission system according to the challenge and response principle

Also Published As

Publication number Publication date
EP1099197B1 (en) 2002-10-02
EP1099197A1 (en) 2001-05-16
DE59902963D1 (en) 2002-11-07
DE19843424A1 (en) 2000-03-23
CA2344429C (en) 2003-12-23
CA2344429A1 (en) 2000-03-30
ES2184500T3 (en) 2003-04-01
ATE225548T1 (en) 2002-10-15
WO2000017826A1 (en) 2000-03-30
PT1099197E (en) 2003-02-28

Similar Documents

Publication Publication Date Title
DK1099197T3 (en) Device for providing output data in response to input data and authentication method and method for encrypted data transmission
WO2004038975A3 (en) Efficient encryption and authentication for data processing systems
DE69938045D1 (en) Use of unpredictable leak minimization information from smart cards and other cryptosystems
HK1030122A1 (en) Initiating a link between computers based on the decoding of an address steganographically embedded in an audio object
WO2002043463A3 (en) Systems and methods for generating hardware description code
AU4250100A (en) High security biometric authentication using a public key/private key encryptionpairs
EP1496641A3 (en) Cryptographic processing apparatus, cryptographic processing method and computer program
WO1999021094A3 (en) Reconfigurable secure hardware apparatus and method of operation
MXPA05006454A (en) Securing device for a security module connector.
AU1046800A (en) Self-corrector randomizer-encryptor system and method
WO2004114097A3 (en) Apparatus and method for multiple function authentication device
MY147722A (en) Slicing algorithm for multi-level modulation equalizing schemes
AU2003237019A1 (en) Method and apparatus for generating a random number using meta-stable latches
WO2003042722A3 (en) All-optical timing jitter measurement system and method
ATE297085T1 (en) DATA DECORRELATION PROCESS
AU6452700A (en) Method for improving a random number generator to make it more resistant againstattacks by current measuring
SE8602323D0 (en) WAY TO PREVENT UNAUTHORIZED ACCESS OF INFORMATION
DE59914806D1 (en) DATA PROCESSING DEVICE AND METHOD FOR THE OPERATION OF PREVENTING A DIFFERENTIAL ELECTRICAL CONSUMPTION ANALYSIS
WO2003036866A1 (en) Information processing apparatus
TW200513658A (en) Memory bus checking procedure
WO2000010284A8 (en) Method for improving random testing
EP1286314A3 (en) Bank note evaluation apparatus and bank note evaluation result data processing method
DK1486028T3 (en) Method and apparatus for creating verifiable counterfeit proof documents
EP0918274A3 (en) System and method for securing and validating data using signatures, encryption, and feedback
ATE315816T1 (en) METHOD, DEVICE AND TERMINAL FOR CERTIFYING THE RESULT OF A MEDIA COMMAND