IP Library Granted Patent US 10,019,603
Granted Patent B2
US 10,019,603 · App. 14/254,254 · Granted Jul 10, 2018

Secured memory system and method therefor

Inventors: Andrew Alexander Elias (Ottawa, CA); Neil Farquhar Hamilton (Kanata, CA); Neil Leckett (Ottawa, CA); Michael James Lewis (Ottawa, CA)
Assignee: Synopsys, Inc.
G06F21/72G06F21/64G06F21/79G06F2212/1052
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,019,603
App. No.
14/254,254
Granted
Jul 10, 2018
Kind
B2
Abstract

There is disclosed a cache memory controller for storing cache data within a cache, the cache data comprising an unsecured version data to corresponding secured first data.

Claims (12)

1. A secure memory access system comprising:

an integrated circuit chip comprising:

an advanced integrity controller (AIC) comprising:

a cache memory comprising blocks of executable instructions; and

an authentication processor coupled to the cache memory, the authentication processor having circuitry for controlling the caching of executable instructions within the cache memory, including receiving a read data request for executable instructions, if a cache miss occurs, retrieving a block of unauthenticated encrypted executable instructions together with retrieval of an unencrypted message authentication code (MAC) tag, decrypting the received instructions, authenticating the unauthenticated executable instructions using the unencrypted MAC tag retrieved from the cache memory, and storing the executable instructions in the cache memory; and

a central processing unit (CPU) coupled to the AIC, the CPU providing the authentication processor with a read data request, executing instructions from the cache memory if the requested data had been previously successfully authenticated by the authentication processor and after decryption of the authenticated instructions by the authentication processor; and

an unsecured first memory coupled to the integrated circuit chip, the first memory comprising unencrypted MAC tags stored therein and blocks of authenticated and encrypted executable instructions stored therein, each block of instructions associated with one of the unencrypted MAC tags, the unencrypted MAC tags being used by the authentication processor for authentication of the block of executable instructions.

2. A secure memory access system according to claim 1 further comprising an indexing circuit for indexing the MAC tags to associate the MAC tags with a corresponding block of encrypted executable instructions, the indexed MAC tags being stored within the cache memory.

3. A secure memory access system according to claim 1 further comprising an indexing circuit for indexing the MAC tags to associate the MAC tags with a corresponding block of encrypted executable instructions, the indexed MAC tags being stored within the first memory.

4. A secure memory access system according to claim 1 wherein the blocks of authenticated and encrypted executable instructions are sized for being cached such that the blocks of authenticated and encrypted executable instructions occupy within the cache memory less than one fourth of the storage space therein.

5. A secure memory access system according to claim 1 further comprising a cache flushing circuit for, automatically at intervals, encrypting blocks of executable instructions present within the cache memory, generating MAC tags for each block of encrypted executable instructions and storing the encrypted executable instructions and associated MAC tags in the unsecured first memory.

6. A secure memory access system according to claim 1 comprising a cache flushing circuit for, in response to a flush event, encrypting blocks of executable instructions present within the cache memory, generating MAC tags for each block of encrypted executable instructions and storing the encrypted executable instructions and associated MAC tags in the unsecured first memory.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 8, 2015
From: ELLIPTIC TECHNOLOGIES INC.
To: SYNOPSYS INC.
Reel/Frame 036761/0474 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 16, 2014
From: ELIAS, ANDREW ALEXANDER; HAMILTON, NEIL FARQUHAR; LECKETT, NEIL; LEWIS, MICHAEL JAMES
To: ELLIPTIC TECHNOLOGIES INC.
Reel/Frame 032686/0603 →
Continuity (1)
Related Publication 20150301957A1 · Oct 22, 2015
Cited By (1)
US 12,387,011