US2015347758A1PendingUtilityA1

Methods and systems for securely transferring embedded code and/or data designed for a device to a customer

Assignee: INFINEON TECHNOLOGIES AGPriority: Nov 28, 2012Filed: Jul 15, 2015Published: Dec 3, 2015
Est. expiryNov 28, 2032(~6.3 yrs left)· nominal 20-yr term from priority
G06F 21/57H04L 9/0822G06F 21/575G06F 12/1408H04L 9/0894G06F 2221/034G06F 2221/2107
43
PatentIndex Score
0
Cited by
0
References
0
Claims

Abstract

The invention relates to methods and systems for securely transferring embedded code or data to a customer, in particular to methods and systems for securely transferring embedded code, data files or program files designed for a device to a customer in order to prevent the embedded code, data files or program files from being used on unauthorized devices.

Claims

exact text as granted — not AI-modified
1 . A device comprising:
 a secure boot loader;   a first encryption key stored in a memory of the device;   wherein the secure boot loader is configured to:
 receive a second encryption key encrypted with the first encryption key; 
 receive embedded code or data encrypted with the second encryption key; 
 decrypt the received encrypted second encryption key using the first encryption key; and 
 generate decrypted embedded code or data using the decrypted second encryption key. 
   
     
     
         2 . The device of  claim 1 , wherein the decrypted embedded code comprises embedded software code to program the device. 
     
     
         3 . The device of  claim 1 , wherein the secure boot loader is further configured to:
 store the decrypted embedded code or data in a data storage of the device.   
     
     
         4 . The device of  claim 3 , wherein the data storage comprises a flash memory. 
     
     
         5 - 7 . (canceled) 
     
     
         8 . The device of  claim 1 , wherein the device is a semiconductor device. 
     
     
         9 . The device of  claim 1 , wherein a firmware is stored on the device, the firmware comprising the secure boot loader. 
     
     
         10 . (canceled) 
     
     
         11 . The device of  claim 1 , wherein the first encryption key is based on an identification number (ID) associated with the device. 
     
     
         12 . A system for securely decrypting embedded code or data, the system comprising:
 a device comprising a boot loader; and   a first encryption key,   wherein the boot loader is configured to:
 receive a second encryption key encrypted with the first encryption key; and 
 decrypt the received encrypted second encryption key using the first encryption key. 
   
     
     
         13 . The system of  claim 12 , wherein the boot loader is further configured to:
 receive embedded code or data designed for the device and encrypted with the second encryption key; and   decrypt the embedded code or data using the decrypted second encryption key.   
     
     
         14 . The system of  claim 13 , comprising:
 a plurality of devices, each of the plurality of devices comprising a respective boot loader configured to:
 receive the second encryption key encrypted with the first encryption key; 
 receive the embedded code or data encrypted with the second encryption key; 
 decrypt the received encrypted second encryption key using the first encryption key; and 
 decrypt the embedded code or data using the decrypted second encryption key. 
   
     
     
         15 . A method for decrypting embedded code or data by a device comprising a boot loader, the method comprising:
 receiving a second encryption key encrypted with a first encryption key;   receiving embedded code or data encrypted with the second encryption key;   decrypting the received encrypted second encryption key using the first encryption key; and   generating, by the boot loader of the device, decrypted embedded code or data using the decrypted second encryption key.   
     
     
         16 . The method of  claim 15 , wherein the first encryption key is generated based on an identification number of the device. 
     
     
         17 . The method of  claim 15 , wherein the second encryption key is generated by a manufacturer of the device. 
     
     
         18 . The method of  claim 15 , wherein the decrypted embedded code comprises code to enable a feature set of the device. 
     
     
         19 . The method of  claim 15 , wherein the decrypted embedded code comprises code to enable or disable special hardware features of the device. 
     
     
         20 . The method of  claim 15 , wherein the decrypted embedded code comprises peripheral activation code (PAC). 
     
     
         21 . The device of  claim 1 , wherein the decrypted embedded code comprises code to enable a feature set of the device. 
     
     
         22 . The device of  claim 1 , wherein the decrypted embedded code comprises code to enable or disable special hardware features of the device. 
     
     
         23 . The device of  claim 1 , wherein the decrypted embedded code comprises peripheral activation code (PAC).

Join the waitlist — get patent alerts

Track US2015347758A1 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.