IP Library Granted Patent US 7,215,771
Granted Patent B1
US 7,215,771 · App. 09/608,103 · Granted May 8, 2007

Secure disk drive comprising a secure drive key and a drive ID for implementing secure communication over a public network

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,215,771
App. No.
09/608,103
Granted
May 8, 2007
Kind
B1
Abstract

A secure disk drive is disclosed comprising a disk for storing data, and an input for receiving an encrypted message from a client disk drive, the encrypted message comprising ciphertext data and a client drive ID identifying the client disk drive. The secure disk drive comprises a secure drive key and an internal drive ID. A key generator within the secure disk drive generates a client drive key based on the client drive ID and the secure drive key, and an internal drive key based on the internal drive ID and the secure drive key. The secure disk drive further comprises an authenticator for verifying the authenticity of the encrypted message and generating an enable signal, the authenticator is responsive to the encrypted message and the client drive key. The secure disk drive further comprises a data processor comprising a message input for receiving the encrypted message from the client disk drive, and a data output for outputting the ciphertext data to be written to the disk. The data processor further comprises an enable input for receiving the enable signal for enabling the data processor, and a key input for receiving the internal drive key, the internal drive key for use in generating a message authentication code. The data processor outputs reply data comprising the message authentication code. The secure disk drive outputs a reply to the client disk drive, the reply comprising the reply data and the internal drive ID.

Claims (42)

1. A secure disk drive comprising:

(a) a disk for storing data;

(b) an input for receiving an encrypted message from a client disk drive, the encrypted message comprising ciphertext data and a client drive ID identifying the client disk drive;

(c) a secure drive key;

(d) an internal drive ID;

(e) a key generator for generating a client drive key based on the client drive ID and the secure drive key, and an internal drive key based on the internal drive ID and the secure drive key;

(f) an authenticator for verifying the authenticity of the encrypted message and generating an enable signal, the authenticator responsive to the encrypted message and the client drive key;

(g) a data processor comprising:

a message input for receiving the encrypted message from the client disk drive;

a data output for outputting the ciphertext data to be written to the disk;

an enable input for receiving the enable signal for enabling the data processor;

a key input for receiving the internal drive key, the internal drive key for use in generating a message authentication code; and

a reply output for outputting reply data, the reply data comprising the message authentication code; and

(h) an output for outputting a reply to the client disk drive, the reply comprising the reply data and the internal drive ID.

2. The secure disk drive of claim 1 , wherein the secure drive key is immutable.

3. The secure disk drive of claim 1 , wherein the secure drive key is mutable.

4. The secure disk drive of claim 1 , wherein the authenticator comprises a means for verifying the access rights of the client drive ID.

5. The secure disk drive of claim 1 , wherein the secure drive key comprises tamper resistant circuitry.

6. The secure disk drive of claim 1 , wherein the key generator comprises tamper resistant circuitry.

7. The secure disk drive as recited in claim 1 , wherein the authenticator comprises tamper resistant circuitry.

8. The secure disk drive as recited in claim 1 , wherein the data processor further comprises cryptographic facilities.

9. A secure disk drive comprising:

(a) a disk for storing data;

(b) an input for receiving an encrypted message from a client disk drive, the encrypted message comprising ciphertext data and a client drive ID identifying the client disk drive;

(c) a secure drive key;

(d) an internal drive ID;

(e) a key generator for generating a client drive key based on the client drive ID and the secure drive key, and an internal drive key based on the internal drive ID and the secure drive key;

(f) an authenticator for verifying the authenticity of the encrypted message and generating an enable signal, the authenticator responsive to the encrypted message and the client drive key;

(g) a data processor comprising:

a message input for receiving the encrypted message from the client secure disk drive;

a data input for receiving ciphertext data read from the disk;

an enable input for receiving the enable signal for enabling the data processor;

a key input for receiving the internal drive key, the internal drive key for use in generating a message authentication code; and

a reply output for outputting reply data, the reply data comprising the ciphertext data read from the disk and the message authentication code; and

(h) an output for outputting a reply to the client disk drive, the reply comprising the reply data and the internal drive ID.

10. The secure disk drive of claim 9 , wherein the secure drive key is immutable.

11. The secure disk drive of claim 9 , wherein the secure drive key is mutable.

12. The secure disk drive of claim 9 , wherein the authenticator comprises a means for verifying the access rights of the client drive ID.

13. The secure disk drive of claim 9 , wherein the secure drive key comprises tamper resistant circuitry.

14. The secure disk drive of claim 9 , wherein the key generator comprises tamper resistant circuitry.

15. The secure disk drive as recited in claim 9 , wherein the authenticator comprises tamper resistant circuitry.

16. The secure disk drive as recited in claim 9 , wherein the data processor further comprises cryptographic facilities.

Assignments (5)
RELEASE OF SECURITY INTEREST AT REEL 053926 FRAME 0446 Recorded Feb 8, 2022
From: JPMORGAN CHASE BANK, N.A.
To: WESTERN DIGITAL TECHNOLOGIES, INC.
Reel/Frame 058966/0321 →
SECURITY INTEREST Recorded Sep 29, 2020
From: WESTERN DIGITAL TECHNOLOGIES, INC.
To: JPMORGAN CHASE BANK, N.A., AS AGENT
Reel/Frame 053926/0446 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 14, 2020
From: WESTERN DIGITAL CAPITAL, LLC
To: WESTERN DIGITAL TECHNOLOGIES, INC.
Reel/Frame 053208/0828 →
CHANGE OF NAME Recorded Jun 15, 2020
From: WESTERN DIGITAL CAPITAL, INC
To: WESTERN DIGITAL CAPITAL, LLC
Reel/Frame 052945/0476 →
CHANGE OF NAME Recorded Jun 11, 2020
From: WESTERN DIGITAL VENTURES, INC
To: WESTERN DIGITAL CAPITAL, INC
Reel/Frame 052919/0177 →