EP4211579A1 - Authentication using current drawn by security device - Google Patents
Authentication using current drawn by security deviceInfo
- Publication number
- EP4211579A1 EP4211579A1 EP21867527.0A EP21867527A EP4211579A1 EP 4211579 A1 EP4211579 A1 EP 4211579A1 EP 21867527 A EP21867527 A EP 21867527A EP 4211579 A1 EP4211579 A1 EP 4211579A1
- Authority
- EP
- European Patent Office
- Prior art keywords
- security device
- current
- command
- current profile
- component
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/44—Program or device authentication
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/70—Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer
- G06F21/71—Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure computing or processing of information
- G06F21/73—Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure computing or processing of information by creating or determining hardware identification, e.g. serial numbers
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3271—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using challenge-response
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/10—Protecting distributed programs or content, e.g. vending or licensing of copyrighted material ; Digital rights management [DRM]
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/55—Detecting local intrusion or implementing counter-measures
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/60—Protecting data
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/04—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/14—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/10—Integrity
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/12—Detection or prevention of fraud
Definitions
- Consumable supply items may contain an integrated circuit chip or security device that communicates with a controller located in the imaging device.
- the controller may check the authenticity of the consumable supply item by sending a verification challenge thereto and determining if the consumable item correctly responds to the verification challenge. The authenticity is verified by the controller receiving from the supply item the correct response to the challenge. Otherwise, if the supply item does not respond correctly, the supply item may be detected as a clone or counterfeit and appropriate actions may be taken to protect against the use of unauthorized supply items to optimize performance of and/or prevent damage to the imaging device.
- the security of such authentication schemes may be vulnerable to reverse engineering attacks or “hacking.”
- data transmitted over the communication bus may be at risk of being monitored and decrypted by an attacker allowing the attacker to reverse engineer the design of the supply item’s security device.
- the digital logic netlist of the supply item’s security device may be reverse engineered by the attacker using advanced silicon imaging equipment which may allow the attacker to produce clone or counterfeit devices capable of producing responses that are identical to that of an authentic device.
- many forms of hacking may expose details of the authentication schemes that allow unauthorized manufacturers to develop counterfeit supply items that could bypass and/or override authentication procedures, which may then allow the counterfeit supply items to still operate when installed in the imaging device. Accordingly, other means to improve security and protect against counterfeit supplies are desired.
- Embodiments of the present disclosure provide for a method for a device to use an electronic authentication scheme to authenticate a second device.
- the second device includes an integrated circuit chip that communicates with a controller in the first device.
- the controller in the first device may check the authenticity of the chip in the second device by sending a verification challenge and determining if the second device correctly responds to the verification challenge.
- the controller in the first device initiates an authentication procedure that uses information other than that transmitted over the shared bus as authentication parameters.
- the controller on the first device can perform such an authentication procedure using information associated with current drawn by the second device from a power source when the chip on the second device performs an operation in response to communication(s) transmitted.
- Figure 1 illustrates an imaging system according to one example embodiment.
- Figure 2 is a block diagram of a shared bus system employing a bus master communicating with a plurality of supply items according to one example embodiment.
- Figure 3 is a chart illustrating a first example of current profiles associated with different supply items.
- Figure 4 is a chart illustrating a second example of current profiles associated with different supply items.
- Figure 5 is a flowchart illustrating a method of authenticating a supply item based on current drawn by the supply item according to one example embodiment.
- Figure 6 is a block diagram of an example embodiment that integrates an analog-to-digital converter (ADC) in the security device and uses the ADC in the security device for authentication by capturing an internal or external analog parameter.
- ADC analog-to-digital converter
- Figure 7 shows an example supply device current profile that illustrates the expected variation for different settings at an example lower frequency scale parameter.
- Figure 8 shows an example supply device current profile that illustrates the expected variation for different settings at an example middle frequency scale parameter.
- Figure 9 shows an example supply device current profile that illustrates the expected variation for different settings at an example higher frequency scale parameter.
- Imaging system 10 includes an imaging device 15 used for printing images on sheets of media.
- Image data of the image to be printed on a media sheet may be supplied to imaging device 15 from a variety of sources such as a computer 20, laptop 25, mobile device 30, scanner 35, or like computing device. The sources directly or indirectly communicate with imaging device 15 via wired and/or wireless connections.
- Imaging device 15 includes a controller 40, a user interface 45, and a power supply unit 50.
- Controller 40 may include a processor and associated memory. In some example embodiments, controller 40 may be formed as one or more Application Specific Integrated Circuits (ASICs) or System-on-Chip (SoCs). Controller 40 may control the processing of print data.
- ASICs Application Specific Integrated Circuits
- SoCs System-on-Chip
- Controller 40 may also control the operation of a print engine during printing of an image onto a sheet of media.
- Power supply unit 50 typically includes analog circuitry necessary to convert AC voltage from the AC mains to one or more regulated DC voltages for use by components of imaging device 15.
- Power supply unit 50 may deliver appropriate regulated DC voltage levels to various components and circuitries via a power bus 52.
- imaging device 15 employs an electronic authentication scheme to authenticate consumable supply items and/or replaceable units installed in imaging device 15.
- a representative supply item 55 such as a toner cartridge or an imaging unit, is shown.
- Supply item 55 may be installed in a corresponding storage area 57 in imaging device 15.
- Supply item 55 includes an integrated circuit chip or security device 60 that communicates with controller 40 in imaging device 15.
- Controller 40 may check the authenticity of supply item 55 by sending a verification challenge to security device 60 of supply item 55 and determining if security device 60 correctly responds to the verification challenge. The authenticity is verified by controller 40 receiving from the security device 60 the correct response to the challenge. Otherwise, if security device 60 in supply item 55 does not respond correctly, supply item 55 may be detected as a clone or counterfeit and appropriate actions may be taken to protect against the use of supply item 55 in order to optimize performance of and/or prevent damage to imaging device 15.
- Figure 2 illustrates a shared bus system 65 in which controller 40 communicates with a number of supply items 55.
- controller 40 includes a System on Chip (SoC) 70 including a processor 72 and a bus master 75 that initiates and controls passing of communications including data, addresses, clock signals, and other control signals on a shared bus 80.
- SoC System on Chip
- Security device 60 in supply item 55 is configured as a slave device.
- Shared bus system 65 may employ the Inter-Integrated Circuit (“I2C”) protocol, although many other protocols can be utilized.
- I2C Inter-Integrated Circuit
- One wire 82 of shared bus 80 carries data in a bidirectional manner, and the other wire 83 carries clock signals from bus master 75 to the security devices 60.
- Bus master 75 may employ an authentication scheme to verify authenticity of installed supply items 55. While shared bus 80 is illustrated as a two-wire serial bus, shared parallel bus structures or other wired structures may be utilized in other example embodiments.
- Controller 40 includes a power source 85, shown as a voltage/ground source, that receives power from power supply unit 50 and delivers power to supply items 55 via a power bus 90, for example, when supply items 55 are installed in imaging device 15. As a result, supply items 55 operate by drawing power from power source 85.
- SoC 70 In order to overcome the vulnerabilities associated with sending data over a communication bus, such as shared bus 80, when performing authentication, SoC 70 is configured to verify authenticity of installed supply items without using data transmitted over shared bus 80 as authentication parameters. Instead, SoC 70 utilizes signals transmitted over shared bus 80 as trigger signals to initiate an authentication procedure that uses information other than those transmitted over shared bus 80 as authentication parameters.
- SoC 70 performs such authentication procedure using information associated with current drawn by a supply item 55 from power source 85 when supply item 55 performs an operation in response to communication(s) transmitted over shared bus 80.
- controller 40 includes a current monitor 100 that senses current passing through power bus 90 and outputs a voltage signal indicating current passing through power bus 90.
- Host firmware 105 running on SoC 70 uses the output of current monitor 100 to determine whether the supply item 55 drawing current from power source 85 is a valid or authentic component.
- Host firmware 105 may be stored in memory 109, which may be a flash memory and reprogrammable as needed.
- Sample data from the output of current monitor 100 are obtained by host firmware 105 as digitized data points from an analog-to-digital converter (ADC) 110 whose input is operatively connected to the output of current monitor 100.
- ADC 110 may be a portion of controller 40 or SoC 70, or separate therefrom.
- Current monitor 100 may be integrated into SoC 70 or separate therefrom.
- Host firmware 105 is programmed to observe data signals transmitted over shared bus 80 such as, for example, data, addresses, control and/or command signals transmitted over wire 82 of shared bus 80.
- host firmware 105 is programmable to set at least one trigger condition 115 to enable sampling from the output of current monitor 100.
- trigger condition 115 may be any control information from bus master 75 such as a command, a sequence of commands, or a combination of multiple commands sent by bus master 75 to security device 60 of supply item 55 over shared bus 80.
- trigger condition 115 may be a single logical operation (e.g., a simple event performed by bus master 75) or a series of logic operations (e.g., a complex series of events performed by bus master 75).
- Trigger signals for SoC 70 to initiate capturing of samples from the output of current monitor 100 are thus generated based upon monitored commands as bus master 75 communicates with supply item 55 over shared bus 80.
- Host firmware 105 is programmed to detect if a data signal observed from shared bus 80 satisfies the trigger condition 115.
- host firmware 105 is configured to sample the output of current monitor 100 and generate a current profile 120 based on the output of current monitor 100, and then store the generated current profile 120 (also referred to herein as captured current profile 120) in memory 109.
- captured current profile 120 is used by host firmware 105 to determine whether current drawn by a supply item 55 from power source 85 corresponds to a current draw response expected from an authentic supply item. Characterization data associated with an expected current draw response of supply item 55 when supply item 55 performs an operation in response to a command is stored in memory 109 as an expected or predetermined current profile 125. One or more predetermined current profiles 125 associated with different commands may be stored in memory 109.
- Each predetermined current profile 125 may be obtained empirically by performing tests and measurements on the response of several supply items to a particular command from bus master 75.
- Host firmware 105 determines if supply item 55 is valid or authentic by comparing the captured current profile 120 with a corresponding predetermined current profile 125 pertinent to the command that initiated the generation of the captured current profile 120. If the captured current profile 120 and the corresponding predetermined current profile 125 substantially match, host firmware 105 may recognize the supply item 55 as valid or authentic. Otherwise, if the captured current profile 120 and the corresponding predetermined current profile 125 do not match, host firmware 105 may identify the supply item 55 as a clone, counterfeit or otherwise unauthorized component, and appropriate actions may be taken.
- trigger condition 115 may correspond to control information sent to supply item 55.
- host firmware 105 may identify a particular command used in typical digital communication as a trigger condition. When host firmware 105 recognizes such command being sent over shared bus 80, host firmware 105 initiates a sampling process to capture samples of the output of current monitor 100 for a predetermined time period.
- trigger condition 115 may be selected based on the implementation complexity, accuracy, unique modes, and/or other features or factors associated with security device 60 of supply item 55.
- trigger condition 115 may correspond to a command that is known to result in a maximum power consumption of security device 60 because such command utilizes more of the system resources of security device 60 than a typical operation.
- trigger condition 115 may correspond to a command that is known to result in a minimum power consumption of security device 60 because such command utilizes less of the system resources of security device 60 than a typical operation.
- a command that is set as trigger condition 115 may be used to initiate a secondary internal operation in security device 60 that results in a distinct current profile.
- the secondary internal operation is different from the primary internal operation performed by security device 60 in response to the command.
- the secondary internal operation may be performed by security device 60 before or after the primary internal operation. Accordingly, when host firmware 105 determines that such command has been sent over shared bus 80 satisfying trigger condition 115, host firmware 105 enables sampling from the output of current monitor 100 allowing host firmware 105 to capture the distinct current profile.
- security device 60 may initiate the secondary internal operation after receiving the same command a predetermined number of times. In other examples, security device 60 may initiate the secondary internal operation after receiving a sequence of different commands.
- the output of current monitor 100 is sampled to collect current draw data points via ADC 110 for a predetermined time period. Current draw data is typically normalized and a vector representing the captured current profile 120 is stored in memory 109.
- sampling may be implemented by capturing a number of sequential samples at a fixed threshold (for example, at quiescent device state) resulting in a substantially uniform current profile. In the example shown in Figure 3, an authentic supply item exhibits a substantially uniform current profile 130 (matching that of a corresponding predetermined current profile 125 stored in memory 109).
- a supply item may be identified as invalid or counterfeit if it exhibits a current profile that deviates from the expected current profile by a predetermined amount, such as shown by current profile 135 of a non-authentic supply item.
- the captured current profile may be checked for various characteristics (e.g., voltage levels, periodicity, or other unique features) that don’t require a comparison to a saved profile, but rather specific validation of the features of interest.
- sampling may be implemented by capturing sample data points at different time periods of operation of security device 60 resulting in a unique current profile pattern such as shown, for example, by current profile 140 in Figure 4.
- a more detailed profile that reflects unique periods of security device operation may be more robust against emulation by a clone device.
- a non-authentic supply item exhibits a current profile pattern 145 that fails to emulate the current profile pattern 140 of an authentic supply item.
- the current profiles shown in Figures 3 and 4 are only for illustration purposes and do not necessarily represent actual measured profiles, and thus should not be considered limiting.
- profile analysis may be performed based on the time period of operations of security device 60 of supply item 55.
- the amount of time it takes for a particular current profile (or portions thereof) to be generated during operation of a security device in response to a command may be compared with an expected time period to execute the command and generate the expected current profile.
- supply item 55 may be identified as authentic. Otherwise, the supply item may be identified as a clone or non-authentic. [0031] Referring now to Figure 5, an example method for determining authenticity of a supply item 55 based on current drawn by supply item 55 will be described.
- bus master 75 initiates a command to security device 60 of supply item 55.
- Host firmware 105 observes the command sent to security device 60 at block 155.
- a determination is made whether the command sent to security device 60 satisfies trigger condition 115. When it is determined at block 160 that the command does not satisfy trigger condition 115, host firmware 105 continues to observe commands sent to security device 60 at block 155.
- samples of the output of current monitor 100 are captured and stored in memory 109 as captured current profile 120 at block 165.
- a determination is made whether the captured current profile 120 matches a corresponding expected/predetermined current profile 125.
- an indication may be made that supply item 55 is operating normally, as expected, and is a valid supply item at block 175.
- indication may be made that supply item 55 is not operating normally and is a clone or non-authentic supply item at block 180.
- one or more enforcement actions may be performed to protect against the use of the non-authentic supply item.
- the authentication scheme discussed above may be initiated based on or in response to predetermined events occurring in imaging device 15. For example, host firmware 105 may initiate the authentication procedure when certain commands are transmitted over shared bus 80 when imaging device 15 is initially turned on, after imaging device 15 has been reset, after exiting sleep mode, when an access door or a media tray is closed, or once every predetermined number of page(s) of printing.
- the authentication scheme of the present disclosure using current drawn by supply items as authentication parameters can be used to further complicate efforts by attackers and clone manufacturers to bypass underlying authentication processes that rely on information sent over the communication bus.
- the clone device may not have a circuit design that results in an identical current profile as that of an authentic device when the clone device responds to such requests or commands due to several factors associated with design implementation that affect power profile such as the number of logic gates, technology node, vendor logic cell characteristics, architecture, non-volatile memory (NVM) technology, and many other design aspects.
- trigger conditions, profile analysis, and enforcement are reconfigurable and/or programmable by the host firmware to accommodate different product configurations as well as to be adaptable to identify different clone devices.
- FIG. 6 is a block diagram of an example embodiment that integrates an analog-to-digital converter (ADC) in the security device and uses the ADC in the security device for authentication by capturing an internal or external analog parameter.
- ADC analog-to-digital converter
- Frequency Scaled Command Responses [0036] A command is sent from the host that executes crypto operations on the supply device with the data result verified by the system device. In addition to this typical data verification, the current drawn by the device during the command execution is simultaneously being measured by the current monitoring system.
- the specific command in this implementation does multiple iterations of the RSA operation, such that a current profile of sufficient time period may be observed.
- freqScale A frequency scale parameter (freqScale) is sent as part of the command data.
- the valid freqScale range is 0 to 31 which determines the supply device clock frequency as follows: [0038] For lower freqScale values, the supply device clock frequency is also lower, so the command execution time period is expected to increase on an authentic device. Directly proportional to the clock frequency is the current drawn by a device, so the average current drawn during the command decreases as clock frequency decreases. The average value of samples as well as the number of samples above baseline value are used to validate an authentic device by observing its current profile for multiple freqScale settings.
- This command uses the supply device’s frequency scaling capability to generate a response difference that is only measurable via the current monitoring system on the host. It has an advantage over typical authentication commands because the difference is not measurable via the data communication bus. A further advantage is that the detection algorithm measures relative differences between settings such that the amplitude or duration may vary without affecting accuracy. Reasons for variation may include the number of devices on the same power bus or device to device process variation.
- the choice of crypto operation may be one that has hardware crypto support on the device or uses device resources in a way such that the current profile is distinguishable by the current monitoring system.
- the security level of the command is the setting that will be varied which correspondingly alters the time period of the current profile for the command.
- the number/spacing of security level settings should be chosen to show a measurable difference in the current profiles between settings.
- a different attribute such as the crypto function may be the setting that varies.
- the chosen setting depends on a value that is unique for each device. For instance, the device id is a unique personalization value that is previously read from device memory so it’s known by the host. The data value must also be known by the system device in order to determine the setting.
- the system device determines the setting to use and operates the command at the same setting as will be used subsequently for the supply device.
- the host then runs the command on the supply and compares the two current measurements. If the supply device current measurement is determined to be statistically similar enough to that of the system, then the supply device is considered authentic.
- This implementation is an example use of the “Dynamic Expected Current Profiles” authentication method described in more detail below.
- Indirect Device Operations [0046] An internal chip operation runs at a certain time or varies depending on a personalization parameter (e.g., internal operation runs after x recon commands depending on NVM value y).
- This operation would have a current profile that can be measured by the current monitoring system but is not tied to a specific command on the bus to make it more difficult to detect and less likely for a non-authentic device to reproduce.
- This operation would need to run at a time that would not impact normal operation performance, but also at a time that can be predicted by the host to enable the sampling period.
- Multiple Device Operations in Parallel [0047] Typically, there are multiple supply devices installed on a printer platform (for multiple cartridges, imaging unit(s), and fuser). However, a single host controller or system device is usually required to authenticate each supply device so only one device is interacted with at a time.
- Running operations on multiple supply devices in parallel could be an unexpected challenge for a clone device to overcome and could provide unique current profiles compared to those run on a single device.
- One example implementation is to utilize the Frequency Scaled command described above. Multiple devices could respond to this command at the same time, resulting in a unique current profile due to the cumulative current consumed. The number of iterations or frequency scale value could be varied on a device-to-device basis, creating several different combinations of profiles, depending on which devices are active.
- a general call address must be implemented for the devices to respond in parallel simultaneously. A dedicated address could be reserved for this purpose within the address change algorithm. Alternatively, the device operations could be long enough in duration or delayed such that the devices could still be addressed individually and have overlap in their current profile.
- the measurement of the cumulative current profile is the primary goal of this test, so the devices may not be required to respond to the host or a limited amount of response data or acknowledgement could be queried by the host for each device in series. All devices could respond similarly on the communication bus but may have different current profiles (or none at all) making it difficult for a clone device to replicate.
- Device Generated Command [0051] A method of authenticating a security device on a supply item (shown in FIG 5) has been described that uses information associated with current drawn by the security device as an authentication parameter.
- This information is captured in response to a command from a master device 150 when host firmware 155 determines the command satisfies a trigger condition 160.
- commands from a master device 150 include standard cryptographic operations (such as encryption or decryption) with many variations (such as frequency or security level or payload) to provide many challenge / response pairs, where the challenge (the command) and the response (the current profile), are used to authenticate security devices 60 using the current profile methods disclosed herein.
- standard cryptographic operations such as encryption or decryption
- variations such as frequency or security level or payload
- a significant benefit of authenticating security devices using current profiles is that the security device does not provide a response (the current profile) to the challenge (the command) over the shared bus. Similarly, it would also be beneficial to prevent reverse engineering of communication over the shared bus if the master device does not send the challenge (the command) over the shared bus.
- the following discloses a method of authenticating security devices where both the challenge (the command) and the response (the current profile) are not sent over the shared bus eliminating the threat of reverse engineering of both the challenge and the response communicated over the shared bus.
- a method to authenticate a security device that eliminates the communication of the challenge and the response over the shared bus, consists of a command (the challenge) that is self-generated by the security device being authenticated, using a portion of a unique shared secret key, known only to the security device being authenticated and another security device performing the authentication in whole or in part, as an index into a table of commands and associated parameters, stored in the NVM of each security device, where each command and associated parameter may be used as an authentication challenge (the command), and using a current monitor circuit and an ADC to capture a current profile as a response to the challenge when the command and associated parameters are executed on the security device being authenticated, and comparing the captured current profile with the expected current profile, where the expected current profile is dynamically generated from another security device or predetermined and stored in memory as one or more expected current profiles that are determined by the same index derived from the shared secret key from another security device, and determining the security device to be authentic if a match is found and determining the security device to be non-authentic if
- a security device 60 is placed on the controller 40 and a security device 60 is placed on a supply item 55. All the security devices 60 are connect to the SoC device 70 that is placed on the controller 40.
- the SoC 70 acts as the bus master 75 of the shared bus 80 and each security device 60 act as a bus slave.
- the host SoC 70 and the security device 60 on the controller 40 may establish a unique secure communication session using a cryptographic protocol and a unique shared secret key (pre-shared or algorithmically generated) that is only known to those two devices.
- the security device 60 on the controller 40 and each security device 60 on a supply item 55 may establish a unique secure communication session using a cryptographic protocol and a unique shared secret key (pre-shared or algorithmically generated) that is only known to those two security devices.
- some portion of the shared secret key between the security device 60 on the controller 40 and the security device 60 on the supply item 55 may act as an index into a table of commands and associated parameters where each command and associated parameters may be used as an authentication challenge.
- commands and parameters may be static and preprogrammed in the NVM 62 of each security device 60 at the factory, or they may be dynamic and occasionally be (re)programmed in the NVM 62 of each security device 60 by host firmware in the printer.
- the bus master device 75 in the SoC 70 on the controller 40 starts the authentication process by sending a single “authenticate by current profile” command to the security device 60 on the controller 40 and to the security device 60 on the supply item 55.
- the security device 60 on the controller 40 and the security device 60 on the supply item 55 then use a portion of the same unique shared secret key to lookup the same command and associated parameters from the table of commands and associated parameters stored in their NVM.
- the portion of the unique shared secret key to use depends on the number entries in the table of commands and associated parameters. For example, if there are 256 entries of commands and associated parameters in the table, then the unique shared secret key is truncated to the 8 least significant bits to form the index into the table. It is now possible for the security device 60 on the controller 40 and a security device 60 on a supply item 55 to self-generate the same command and associated parameters (the authentication challenge) by using the same independently determined table index to look up the command and associated parameters.
- the security device 60 on the supply item 55 executes the command and the associated parameters (the challenge), that were read from the table based on the index derived from the shared secret key, and draws a current from the power bus 90 that is sensed by the current monitor 100 and input to the ADC 110 where it is converted into a one or more digital values which are stored in memory 109 as the captured current profile 120 when the trigger condition 115 is detected by host firmware 105.
- the security device 60 on the controller 40 executes the same command and the associated parameters (the challenge), that were read from the table based on the index derived from the shared secret key, and draws a current from the power bus 90 that is sensed by the current monitor 100 and input to the ADC 110 where it is converted into a one or more digital values which are stored in memory 109 as the expected current profile when the trigger condition 115 is detected by host firmware 105.
- the security device 60 on the controller may simply return the index of the table of commands over the shared bus to the SoC 70 on the controller 40 where the SoC would determine which predetermined current profile 125 to read from memory based on the index received from the security device 60 on the controller 40.
- the SoC 70 compares 170 the captured current profile 120 with the expected current profile 125 and determines that the security device 60 on the supply item 55 is authentic 175 if the two current profiles match and determines that the security device 60 is non-authentic if the two current profiles do not match 180. This completes the one-way authentication of the security device 60 on the supply item 55. Additionally, the roles of the security devices 60 can be reversed and the security device 60 on the controller 40 may be authenticated in a similar manner. As a result of this method of self-generating commands used as authentication challenges, the communication of both the challenge and the response over the shared bus is eliminated and the threat of reverse engineering of the challenge and the response over the shared bus is eliminated.
- a method of authenticating a security device on a supply item has been described that uses information associated with current drawn by the security device as an authentication parameter.
- This information referred to as a current profile 165, (examples shown in FIG3 and FIG4), is captured in response to a command from a master device 150 when host firmware 155 determines the command satisfies a trigger condition 160.
- the trigger condition 115 may be determined by the host firmware 105 operating on the SoC 70 on the controller 40.
- the trigger condition may be determined by device firmware (not shown) operating on the security device 60 on the supply item 55 or by device firmware (not shown) operating on the security device 60 on the controller 40.
- the detection of a trigger condition may be communicated to the SoC 70 on the controller 40, by an encrypted message over the shared bus 80 or by a direct connection (e.g., an interrupt signal, not shown) to the SoC 70.
- the SoC 70 receives notification of the trigger condition from the security device 60, it obtains the output of the current monitor 100 as digitized data points from the ADC 110 as previously described.
- the captured current profile 120 of the security device 60 is compared with an expected current profile 125, that has been predetermined by laboratory characterization, and stored in memory 109 on the controller 40.
- the supply item 55 is determined to be authentic 175 and if the current profiles do not match the supply item 55 is determined to be non-authentic 180.
- the same method of generating and capturing a current profile from the security device 60 on the controller 40 may be used to compare the captured current profile with the expected current profile to determine the authenticity of the security device 60 on the controller 40. If the captured current profile matches the expected current profile, the security device 60 on the controller is determined to be authentic and if the current profiles do not match the security device 60 on the controller is determined to be non-authentic. [0062] Many types of comparison algorithms with predetermined thresholds may be used to determine if the captured current profile matches the expected current profile to determine the authenticity of security devices 60.
- comparison algorithms with a predetermined threshold may be executed in whole or in part on the SoC 70 on the controller 40 or they may be executed in whole or in part on one or more security devices 60 a supply item 55 or they may be executed in whole or in part on the security device 60 on the controller 40. Any combination of execution of the comparison algorithm with predetermined threshold in whole or in part are possible including execution in whole or in part on the SoC 70 on the controller 40 or execution in whole or in part on a security device 60 on the supply item 55 or execution in whole or in part on a security device 60 on the controller 40.
- the comparison algorithm with predetermined threshold is executed in whole on only one device (SoC 70 or security device 60)
- the result of the whole comparison from the one device determines the security device 60 to be authentic 175 if whole comparison shows the captured current profile matches the expected current profile and if not the security device 60 is determined to be non-authentic 180.
- the comparison algorithm with predetermined threshold is executed in whole on multiple devices (SoC 70 or security devices 60)
- the result of the whole comparison from each device are combined by one device (SoC 70 or security device 60) that determines the security device 60 to be authentic if a majority of the whole comparisons show the captured current profile matches the expected current profile and if not the security device 60 is determined to be non-authentic 180.
- the comparison algorithm with predetermined threshold is executed in part on multiple devices (SoC 70 or security devices 60)
- the result of the partial comparison from each device are combined by one device (SoC 70 or security device 60) that determines the security device 60 to be authentic if the combination of the partial comparisons show the captured current profile matches the expected current profile and if not the security device 60 is determined to be non-authentic 180.
- SoC 70 or security device 60 determines the security device 60 to be authentic if the combination of the partial comparisons show the captured current profile matches the expected current profile and if not the security device 60 is determined to be non-authentic 180.
- the whole comparison is performed by the SoC 70, it may perform an enforcement action 185 if required and when the whole comparison is performed by a security device 60, the result of the whole comparison is sent to the SoC 70 on the controller 40 over the shared bus 80 and the SoC 70 may perform an enforcement action 185 if required.
- the comparison algorithm and predetermined threshold used to determine authenticity must allow for the variation in current drawn by an authentic security device due to the variation in voltage, temperature, and semiconductor processing. Since there are a finite number of predetermined current profiles 125 stored in memory 109 and there are a large number of authentic security devices (with a wide range of current profiles) to authenticate, a relaxed predetermined threshold may be required to avoid false positives. However, a relaxed predetermined threshold to avoid false positives may enable non-authentic security devices to be erroneously matched, resulting in a loss of authentication accuracy.
- the method to improve the authentication accuracy of a security devices placed on a supply item or on a controller using information associated with current drawn by a security device, in response to a trigger condition, and captured in memory as a current profile is to store expected current profiles that are device-specific in the non-volatile memory (NVM) in each security device. This is accomplished by obtaining one or more current profiles of each security device in response to one or more trigger conditions at the time of manufacture and storing them in the NVM 62 of the security device 60 as device- specific predetermined current profiles instead of characterizing several different security devices in the laboratory before manufacturing and storing one or more non-device-specific current profiles 125 in memory 109 on the controller 40.
- NVM non-volatile memory
- the benefit is that much of the variation in the current response of a security device is reduced and a more stringent predetermined threshold may be used to increase authentication accuracy.
- it is desired to protect the device-specific, expected current profile(s) stored in NVM 62 in a security device 60 on a supply item 55 and on the controller 40 from tampering and from copying by an attacker.
- the method to protect the device- specific, expected current profile(s) stored in NVM in a security device from being copied is to encrypt them using an encryption algorithm (such as AES) and a secret key.
- the method to protect the device-specific, expected current profile(s) stored in the NVM 62 in a security device 60 from tampering is to combine the device-specific, expected current profile(s) with some additional device specific information (such as a serial number or part number) and generate a digital signature using a digital signature algorithm (such as ECDSA) and a private key. Both the expected current profile(s) and the digital signature are encrypted with a device specific secret key and stored in the NVM 62 of the security device 60 on the supply item 55 or on the controller 40.
- the SoC 70 on the controller 40 may command the security device 60 on the controller 40 or on the supply item 55 to read the device- specific, expected current profile(s) and digital signature from NVM 62 in the security device 60
- the security device 60 executes the command by reading the current profile(s) and digital signature from the NVM 62, decrypting them with the device specific secret key, and then encrypting them with a secret session key, and finally communicating the encrypted current profile(s) and digital signal over the shared bus 80 to the SoC 70
- the SoC 70 decrypts the expected current profile and digital signature, using the secret session key, and verifies the digital signature is authentic using a digital signature verification algorithm and a public key.
- the device-specific, expected current profiles may be compared with the captured current profile using a verification algorithm and predetermined threshold to verify the authenticity of the security device 60 on the supply item 55 and on the controller 40 using any of the methods previously described.
- the security device 60 may also verify the digital signature by executing a digital signature verification algorithm using a public key before communicating the expected current profile and digital signature, either as encrypted ciphertext or decrypted plaintext, to the SoC 70 over the shared bus 80.
- the expected current profile stored in the NVM 62 of the security device 60 may be a device specific current profile as described or it may be a non-device specific expected current profile that is the same for all security devices 60.
- the expected current profiles of security devices 60 are predetermined and obtained by characterization in the laboratory or during manufacturing and stored statically at rest in memory 109 on the controller 40 or in non-volatile memory (NVM) 62 in the security device 60 on the controller 40 or in NVM 62 in the security device 60 on supply items 55.
- NVM non-volatile memory
- An improvement to these embodiments would be to eliminate the storage of any predetermined current profiles statically in memory where they could be reverse engineered by an attacker and used to compromise security.
- both these improvements may be realized when a first instance of a security device 60 is used on the controller 40 (referred to as the system security device) and another instance of the same security device 60 is used on the supply item 55 (referred to as the supply security device)., where each security device 60 draws current through connections to a power bus 90. Because the system security device and the supply security device are two instances of the same security device, it is expected that the current profiles generated by each security device 60 in response to the same trigger condition will be highly correlated.
- the method to eliminate storing the expected current profile statically in memory and to provide for an unlimited number of trigger conditions (challenges) and expected current profiles (responses) is to use a first instance of a security device on the controller (system security device) and another instance of the same security device on the supply item (supply security device) and to dynamically generate and capture the current profile of the system security device in response to a trigger condition and use it as the expected current profile for the supply security device. After the expected current profile is captured from the system security device, the same trigger condition may be used to generate and capture the current profile from the supply security device. Then a comparison of the two current profiles may be made using a suitable verification algorithm and predefined threshold to determine authenticity of the security device on the supply item.
- This method is illustrated in the embodiment shown in FIG 2, where a current profile (as illustrated in FIG 3 and FIG 4), generated in response to a trigger condition 115, is captured from the security device 60 on the controller 40 (system security device) and another current profile, generated in response to the same trigger condition, is captured from the security device 60 on the supply item 55.
- the two captured current profiles are compared with a verification algorithm to determine the authenticity of the security device 60 on a supply item 55.
- any suitable verification algorithm may be chosen to measure the statistical correlation (such as the Pearson correlation coefficient but not limited to such) of the two captured current profiles and if the result of the measure of statistical correlation exceeds a predetermined threshold (such as 0.8 or greater but not limited to such) then the security device 60 on the supply item 55 is determined to be authentic and if not the security device 60 on the supply item 55 is determined to be non-authentic.
- the trigger condition 115 may be determined by the host firmware 105 operating on the SoC 70 on the controller 40 or by device firmware (not shown) operating on the security device 60 on the controller 40 or by device firmware (not shown) operating on the security device 60 on the supply item 55.
- the comparison algorithm with predetermined threshold may be executed in any combination of host firmware executing in whole or in part on the SoC 70 on the controller 40 or device firmware executing in whole or in part on a security device 60 on the supply item 55 or by device firmware executing in whole or in part on a security device 60 on the controller 40.
- a comparison between the dynamically generated and captured current profile of the system security device and each supply security device may be made using any comparison method and predetermined threshold previously described to determine authenticity of a supply security device 60 on a supply item 55.
- a method for determining authenticity of security devices 60 on supply items 55 that uses any combination of mutual comparisons, made by any suitable verification algorithm and any predetermined threshold, of current profiles of multiple instances of the same security device 60 either on the controller 40 or on supply items 55 in response to one or more trigger conditions, where the trigger condition is determined by host firmware 105 executing on a SoC 70 on a controller 40 or by device firmware (not shown) executing on a security device 60, where the verification algorithm is executed in whole or in part by host firmware executing on the SoC 70 on the controller 40 or by device firmware executing in whole or in part on a security device 60 on a controller 40 or by device firmware executing in whole or in part by a security device 60 on a supply item 55, and where the expected current profile is predetermined and stored in memory 125 on the controller 40 or in NVM 62 in the security device 60 or is dynamically generated from another instance of the same security device 60 on the controller 40 or on a supply item 55.
- These authentication methods using current profiles may be used for a one-way authentication system where a first device authenticates a second device, but the second device does not authenticate the first device.
- the host firmware 105 executing on the SoC 70 may authenticate a security device 60 on a supply item 55 (second device).
- the host firmware 105 executing on the SoC 70 may authenticate the security device 60 on the controller 40 (second device).
- the security device 60 on the controller 40 may authenticate a security device 60 on a supply item 55 (second device).
- a security device 60 on a first supply item 55 may authenticate a security device 60 on a second supply item 55 (second device).
- the first device authenticates the second device by executing all or part of the verification algorithm to compare 170 a captured current profile 165 of the second device with an expected current profile, where the expected current profile has been predetermined and stored in memory 109 on the controller 40 or stored in NVM 62 on the security device 60 or is dynamically generated and captured from another security device; and using a predetermined threshold to determine the authenticity of the second security device using any of the methods previously described.
- these authentication methods using current profiles may be used for a two-way authentication system where a first device authenticates a second device, and the second device authenticates the first device.
- the security device 60 on the controller 40 may authenticate a security device 60 on a supply item 55 (second device) and a security device 60 on a supply item 55 (second device) authenticates the security device 60 on the controller 40 (first device).
- a security device 60 on a first supply item 55 may authenticate a security device 60 on second supply item 55 (second device) and a security device on the second supply item 55 (second device) authenticates a security device 60 on the first supply item 55 (first device).
- the first device authenticates the second device by executing all or part of the verification algorithm to compare 170 a captured current profile 165 of the second device with an expected current profile, where the expected current profile has been predetermined and stored in memory 109 on the controller 40 or stored in NVM 62 on the security device 60 or is dynamically generated and captured from another security device; and using a predetermined threshold to determine the authenticity of the second security device using any of the methods previously described.
- these authentication methods using current profiles may be used for a self-authentication system where a security device authenticates itself in whole or in part.
- the security device 60 on the controller 40 may authenticate itself in whole or in part.
- a security device 60 on a supply item 55 may authenticate itself in whole or in part.
- the security device authenticates itself by executing all or part of the verification algorithm to compare 170 a captured current profile 165 of itself with an expected current profile, where the expected current profile has been predetermined and stored in memory 109 on the controller 40 or stored in NVM 62 on the security device 60 or is dynamically generated and captured from another security device; and using a predetermined threshold to determine the authenticity of itself using any of the methods previously described.
- FIG 2 Device Current Profile Measurement
- the embodiments previously described, and illustrated in FIG 2, rely on a current monitor 100 on the controller 40 converting current drawn from a power bus 90 by security device 60 when a trigger condition is detected 115 into an analog voltage that is then converted into a digital output by an analog-to-digital converter (ADC) 110 integrated in the SoC 70 on the controller 40.
- ADC analog-to-digital converter
- the digital outputs from the ADC 110 are captured in memory as a current profile 120 and then compared 170 with the expected current profile 125 using a verification algorithm and a predetermined threshold to determine authenticity of a security device 60 on a supply item 55.
- FIG 3 and FIG 4 illustrate example current profiles of an authentic security device 130 and 140 respectively and a non-authentic security device 135.and 145 respectively.
- security chips One of the difficulties in developing security devices based on integrated circuit technology (security chips) is that they are susceptible to being reverse engineered and copied using delayering, imaging and netlist extraction techniques that are readily available to attackers. This results in security chips constructed only with standard digital logic gates (e.g., NAND, NOR, INV, FLIP-FLOP, LATCH, etc.) being easily and rapidly copied at low cost. It is desirable to add additional analog features in security chips that are not easily copied and that have unique characteristics to prevent attackers from copying security chips and to use these additional, hard-to-copy analog features for authentication of security devices in combination with the authentication methods based on current profiles disclosed herein.
- standard digital logic gates e.g., NAND, NOR, INV, FLIP-FLOP, LATCH, etc.
- the method to make security devices more resistant to copying is to integrate an analog-to-digital converter (ADC) in the security device and to use the ADC in the security device for authentication by capturing an internal or external analog parameter (such as a current profile as previously described, but not limited to such) and using an algorithm to compare the captured result to the expected result (such as the expected current profile as previously described but not limited to such) with a predetermined threshold to determine the authenticity of the security device on the supply item.
- ADC analog-to-digital converter
- a first instance of a security device 660 with an integrated ADC 663 and a current monitor 664 is placed on the controller 640 and another instance of the same security device 660 with an integrated ADC 663 and a current monitor 664 is placed on a supply item 655.
- Each security device 660 is connected to the bus master 675 in the SoC 670 on the controller 640 by a shared bus 680.
- each security device 660 is connected to a power bus 690 that delivers current to the security devices 660 from a voltage source 685 that is connected 652 to a power supply 650.
- Each current monitor 664 senses the current drawn from the power bus 690 by the associated security device 660 and converts the sensed current into a voltage that is connected to the input of the ADC 663 of each security device 660.
- the output from the current monitor 664 on the controller 640 may also (but not necessarily) be connected to the ADC 6110 on the SoC 670.
- each security device 660 may generate and capture its own current profile as a response when a trigger condition is detected by the security device 660.
- Another embodiment is to connect the output of the current monitor 664 on the controller 640 to the input of the ADC 663 of each security device 660 on the controller 640 and on the supply items 655 and to optionally remove the current monitor 664 from the supply item 655.
- Another embodiment is to place a discrete ADC (not shown) on the supply items 655 and to place a discrete ADC (not shown) on the controller 640 and to connect them to the shared bus 680 and optionally remove the ADC 663 from the security device 660.
- Many different embodiments are possible (not shown) to generate and capture current profiles on the security device in response when a trigger condition is detected by the security device 660.
- Each of these embodiments may be used to authenticate security devices using current profiles for a one-way authentication system, two-way authentication, or self-authentication as previously described.
- An example of a one-way authentication system using current profiles captured by a security device 660 is now described.
- the host firmware 6105 on the controller 640 or the device firmware (not shown) on the security device 660 on the controller 640 or the device firmware (not shown) on the security device 660 on the supply item 655 generates an authentication challenge that is sent to the security device 660 on a supply item 655 using any of the methods previously described (e.g. command, series of commands, commands with indirect references, commands that are self-generated, etc).
- the security device 660 on the supply item 655 executes the command which draws current from a power bus 690, that is sensed and converted into an analog voltage, by the current monitor 664 located with the security device 660 on the supply item 655.
- the output from the current monitor 664 is connected to the input to the ADC 663 located with the security device 660 on the supply item 655 and converted into one or more digital values by the ADC 663.
- the digital value(s) from the ADC 663 are captured by the security device 660 on the supply item 655 for a predetermined time period when a trigger condition is detected by the security device 660 while executing the command(s) and then stored in whole or in part in memory 6109 on the controller 640 or in memory on the security device (not shown) as a captured current profile.
- the captured current profile(s) may be encrypted and transmitted to the SoC 670, on the controller 640, over the shared bus 680.
- the SoC 670 will then use a verification algorithm to compare the captured current profile of the security device 660 with the expected current profile, where the expected current profile has been predetermined and stored in memory 6109 on the controller 640 or stored in NVM 662 on the security device 660 or is dynamically generated and captured from another security device 660; and using a predetermined threshold to determine authenticity of the security device 660 on the supply item 655 or the security device 660 on the controller 640 using any of the methods previously disclosed.
- each security device 660 may be performed using any of the device authentication methods previously described where the comparison algorithm with predetermined threshold is executed in whole on one device (SoC 670 or security device 660), in whole on multiple devices (SoC 670 or security devices 660), or in part on multiple devices (SoC 670 or security devices 660). Any combination of these device authentication methods may be used for one-way authenticating each individual security device 660. [0086] An example of a two-way authentication system using current profiles captured by a security device 660 is now described.
- the captured current profile may be encrypted and transmitted to a second security device 660, on the controller 640 or on another supply item 655, over the shared bus 680.
- the second security device 660 will then use an algorithm to compare the captured current profile of the first security device with the expected current profile, where the expected current profile has been predetermined and stored in memory 6109 on the controller 640 or stored in NVM 662 on the first security device 660 or is dynamically generated and captured from another security device 660; and using a predetermined threshold to determine authenticity of the first security device 660 on a supply item 655 using any of the methods previously disclosed.
- each security device 660 combination (SoC and security device or security device and security device) may be performed using any of the device authentication methods previously described where the comparison algorithm with predetermined threshold is executed in whole on one device (SoC 670 or security device 660), in whole on multiple devices (SoC 670 or security devices 660), or in part on multiple devices (SoC 670 or security devices 660). Any combination of these device authentication methods may be used for two-way authenticating each security device 660 combination (SoC and security device or security device and security device).
- each security device 660 may be performed using any of the device authentication methods previously described where the comparison algorithm with predetermined threshold is executed in whole on one device (SoC 670 or security device 660), in whole on multiple devices (SoC 670 or security devices 660), or in part on multiple devices (SoC 670 or security devices 660). Any combination of these device authentication methods may be used for self-authenticating each individual security device 660.
- Other embodiments disclosed include, first, a method of determining authenticity of a component in an imaging device by authenticating current profiles, comprising the execution of a challenge command by a security device firmware at multiple frequencies, where the challenge command is generated by a host and sent to a security device or where a challenge command is self-generated by a security device.
- a method of determining authenticity of a component in an imaging device by authenticating current profiles comprising the execution of a verification algorithm by a security device firmware to compare, in whole or in part, a captured current profile with an expected current profile to self-verify, in whole or in part, the authenticity of a security device, where the verification algorithm is a comparison of one or more digital values versus a fixed threshold or where a verification algorithm is a statistical correlation of one or more digital values with a predetermined threshold for correlation.
- a method of determining authenticity of a component in an imaging device by authenticating current profiles comprising the steps of: execution of a command monitoring algorithm by a security device firmware to determine when a trigger condition is satisfied; and communicating from the security device to a system on chip that a trigger condition is satisfied, by an encrypted message over a shared bus or by a direct connection.
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Theoretical Computer Science (AREA)
- Computer Hardware Design (AREA)
- Physics & Mathematics (AREA)
- General Engineering & Computer Science (AREA)
- General Physics & Mathematics (AREA)
- Software Systems (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Mathematical Physics (AREA)
- Computing Systems (AREA)
- Storage Device Security (AREA)
- Testing, Inspecting, Measuring Of Stereoscopic Televisions And Televisions (AREA)
Abstract
Description
Claims
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US202063075482P | 2020-09-08 | 2020-09-08 | |
| PCT/US2021/049491 WO2022056019A1 (en) | 2020-09-08 | 2021-09-08 | Authentication using current drawn by security device |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| EP4211579A1 true EP4211579A1 (en) | 2023-07-19 |
| EP4211579A4 EP4211579A4 (en) | 2024-06-05 |
Family
ID=86297776
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| EP21867527.0A Pending EP4211579A4 (en) | 2020-09-08 | 2021-09-08 | AUTHENTICATION USING THE CURRENT DRAFT BY A SECURITY DEVICE |
Country Status (2)
| Country | Link |
|---|---|
| EP (1) | EP4211579A4 (en) |
| CN (1) | CN116134441A (en) |
Family Cites Families (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US9536112B2 (en) * | 2011-06-13 | 2017-01-03 | Stmicroelectronics Asia Pacific Pte Ltd. | Delaying or deterring counterfeiting and/or cloning of a component |
| US10073990B1 (en) * | 2014-09-10 | 2018-09-11 | Maxim Integrated Products, Inc. | System and method for monitoring network devices incorporating authentication capable power supply modules |
| US9886571B2 (en) * | 2016-02-16 | 2018-02-06 | Xerox Corporation | Security enhancement of customer replaceable unit monitor (CRUM) |
-
2021
- 2021-09-08 EP EP21867527.0A patent/EP4211579A4/en active Pending
- 2021-09-08 CN CN202180061767.3A patent/CN116134441A/en active Pending
Also Published As
| Publication number | Publication date |
|---|---|
| CN116134441A (en) | 2023-05-16 |
| EP4211579A4 (en) | 2024-06-05 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US20230252167A1 (en) | Authentication Using Current Drawn by Security Device | |
| CN102396251B (en) | Validation and/or authentication of device for communication with network | |
| US9509502B2 (en) | Symmetric keying and chain of trust | |
| CN112042151B (en) | Secure distribution of secret keys using monotonic counters | |
| US9323950B2 (en) | Generating signatures using a secure device | |
| US9521125B2 (en) | Pseudonymous remote attestation utilizing a chain-of-trust | |
| US20170242998A1 (en) | Symmetric keying and chain of trust | |
| JP5857726B2 (en) | Temperature sensor, encryption device, encryption method, and individual information generation device | |
| AU2013355576A1 (en) | System on chip to perform a secure boot, an image forming apparatus using the same, and method thereof | |
| TR201815427T4 (en) | System and method for secure server-slave communication. | |
| Schläpfer et al. | Security on IoT devices with secure elements | |
| US20230367863A1 (en) | Authentication using analog signal challenge | |
| JP5946374B2 (en) | Network connection method and electronic device | |
| EP3221996B1 (en) | Symmetric keying and chain of trust | |
| EP4211579A1 (en) | Authentication using current drawn by security device | |
| US12210610B2 (en) | Authentication using magnetic field based on current drawn by security device | |
| CN121234352A (en) | A method, apparatus, chip, and electronic device for secure chip booting |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: THE INTERNATIONAL PUBLICATION HAS BEEN MADE |
|
| PUAI | Public reference made under article 153(3) epc to a published international application that has entered the european phase |
Free format text: ORIGINAL CODE: 0009012 |
|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: REQUEST FOR EXAMINATION WAS MADE |
|
| 17P | Request for examination filed |
Effective date: 20230320 |
|
| AK | Designated contracting states |
Kind code of ref document: A1 Designated state(s): AL AT BE BG CH CY CZ DE DK EE ES FI FR GB GR HR HU IE IS IT LI LT LU LV MC MK MT NL NO PL PT RO RS SE SI SK SM TR |
|
| DAV | Request for validation of the european patent (deleted) | ||
| DAX | Request for extension of the european patent (deleted) | ||
| REG | Reference to a national code |
Ref country code: HK Ref legal event code: DE Ref document number: 40094182 Country of ref document: HK |
|
| A4 | Supplementary search report drawn up and despatched |
Effective date: 20240503 |
|
| RIC1 | Information provided on ipc code assigned before grant |
Ipc: H04W 12/10 20210101ALI20240427BHEP Ipc: H04W 12/12 20210101ALI20240427BHEP Ipc: G06F 21/60 20130101ALI20240427BHEP Ipc: G06F 21/55 20130101ALI20240427BHEP Ipc: G06F 21/10 20130101ALI20240427BHEP Ipc: H04W 12/06 20210101ALI20240427BHEP Ipc: H04L 9/40 20220101ALI20240427BHEP Ipc: H04L 9/32 20060101ALI20240427BHEP Ipc: G06F 21/30 20130101ALI20240427BHEP Ipc: G06F 21/85 20130101ALI20240427BHEP Ipc: G06F 21/73 20130101ALI20240427BHEP Ipc: G06F 21/44 20130101AFI20240427BHEP |