IP Library Granted Patent US 12,069,171
Granted Patent B2
US 12,069,171 · App. 17/291,088 · Granted Aug 20, 2024

Hardware security module

Inventors: Volker Krummel (Paderborn, DE); Peter Gunther (Bielefeld, DE)
Assignee: Wincor Nixdorf International GmbH
H04L9/0877H04L9/0897H04L9/12H04L9/3236H04L9/3247H04L67/104
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,069,171
App. No.
17/291,088
Granted
Aug 20, 2024
Kind
B2
Abstract

According to one exemplary embodiment, a hardware security module is described, having a receiver, which is configured to receive instructions for performing cryptographic operations, and a control device, which is configured to take an instruction load of the hardware security module as a basis for deciding whether one or more instructions should be relocated and, if one or more instructions should be relocated, to determine another hardware security module for relocating the one or more instructions, to authenticate the other hardware security module and to request the execution of the one or more instructions by the other hardware security module.

Claims (44)

1. A hardware security module, comprising:

a receiver configured to receive one or more instructions to perform cryptographic operations, and a control device configured to:

place the one or more instructions in an instruction queue, the instruction queue having an instruction load, where the instruction load is the fill level of the instruction queue;

monitor the instruction queue, and determine when the instruction load is above a specified threshold value;

based upon the determination that the instruction load is above the specified threshold value, decide that the one or more instructions are to be relocated; identify a second hardware security module for relocating the one or more instructions;

authenticate the second hardware security module; and

request processing of the one or more instructions by the second hardware security module, and relocate the one or more instructions to the second hardware security module.

2. The hardware security module as claimed in claim 1 , wherein the control device is configured to configure the second hardware security module for executing the one or more instructions.

3. The hardware security module as claimed in claim 1 , wherein the control device is configured to clone a configuration of the hardware security module onto the second hardware security module in order to process the one or more instructions.

4. The hardware security module as claimed in claim 1 , wherein the control device is configured to send the one or more instructions to the second hardware security module by a peer-to-peer communication link.

5. The hardware security module as claimed in claim 1 , wherein the control device is configured to allocate the second hardware security module to process the one or more instructions and is configured to release the second hardware security module after processing of the one or more instructions.

6. The hardware security module as claimed in claim 1 , wherein the control device is configured to determine a number of the one or more instructions to be relocated to the second hardware security module, based on the instruction load of the hardware security module.

7. The hardware security module as claimed in claim 1 , wherein the control device is configured to relocate the one or more instructions until the instruction load falls below the specified threshold value.

8. The hardware security module as claimed in claim 1 ,

wherein the control device is configured to authenticate the second hardware security module based on a signature generated by the second hardware security module.

9. The hardware security module as claimed in claim 1 ,

wherein the hardware security module and the second hardware security module have separate hardware for performing cryptographic operations.

10. A method of operating a hardware security module comprising:

receiving, with a receiver of the hardware security module, one or more instructions to perform cryptographic operations;

placing, with a control device of the hardware security module, the one or more instructions in an instruction queue, the instruction queue having an instruction

load, where the instruction load is the fill level of the instruction queue;

monitoring, with the control device of the hardware security module, the instruction queue, and determining with the control device of the hardware security module that the

instruction load is above a specified threshold value;

based upon the determination that the instruction load is above the specified threshold value, deciding, with the control device of the hardware security module, that the one or more instructions are to be relocated;

identifying, with the control device of the hardware security module, a second hardware security module for relocating the one or more instructions;

authenticating, with the control device of the hardware security module, the second hardware security module; and

requesting, with the control device of the hardware security module, the second hardware security module process the one or more instructions and relocating the one or more instructions to the second hardware security module.

11. The method of claim 10 further comprising:

communicating with the second hardware security module, by the control device of the hardware security module, by dividing at least one communication into different, independent sessions according to a secret-sharing principle.

12. The method of claim 11 further comprising:

detecting, with the control device of the hardware security module, a forced opening of a housing of the hardware security module; and

deleting, with the control device of the hardware security module, all security-relevant information stored by the hardware security module, including cryptographic keys.

13. The method of claim 12 further comprising:

outputting, with the control device of the hardware security module, a result of processing the one or more of the instructions and a status that indicates that an error occurred, wherein the exact error details are not output.

14. The method of claim 13 further comprising:

protecting keys stored in a crypto-unit with at least one hardware-based protective measure; and

sending, with the control device of the hardware security module, in response to

compromising of the crypto-unit, a message to a configurable receiver over one of a network, a mobile network, a telephone network, and a satellite for external monitoring of the hardware security module.

15. The method of claim 14 further comprising:

fetching, with the control device of the hardware security module, the one or more of the instructions from the instruction queue, wherein the instruction queue is not stored on a secure hardware area of the hardware security module.

16. The method of claim 14 further comprising:

storing, with the control device of the hardware security module, the one or more of the instructions redundantly on copies of the instruction queue maintained by the hardware security module and at least the second hardware security module.

17. The method of claim 16 wherein said authenticating further comprises:

authenticating, with the control device of the hardware security module, the second hardware security module such that the second hardware security module discloses no information regarding a computer system that currently occupies the second hardware security module.

Assignments (10)
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS (NEW TERM LOAN REEL/FRAME 062511/0172) Recorded Aug 18, 2023
From: GLAS AMERICAS LLC, AS COLLATERAL AGENT
To: WINCOR NIXDORF INTERNATIONAL GMBH; DIEBOLD NIXDORF SYSTEMS GMBH
Reel/Frame 064642/0354 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS (2026 NOTES REEL/FRAME 062511/0246) Recorded Aug 18, 2023
From: GLAS AMERICAS LLC, AS COLLATERAL AGENT
To: WINCOR NIXDORF INTERNATIONAL GMBH; DIEBOLD NIXDORF SYSTEMS GMBH
Reel/Frame 064642/0462 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS (R/F 062511/0095) Recorded Jun 13, 2023
From: GLAS AMERICAS LLC
To: WINCOR NIXDORF INTERNATIONAL GMBH; DIEBOLD NIXDORF SYSTEMS GMBH
Reel/Frame 063988/0296 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS Recorded Jun 7, 2023
From: JPMORGAN CHASE BANK, N.A.
To: WINCOR NIXDORF INTERNATIONAL GMBH; DIEBOLD NIXDORF SYSTEMS GMBH
Reel/Frame 063908/0001 →
SECURITY INTEREST Recorded Jan 27, 2023
From: WINCOR NIXDORF INTERNATIONAL GMBH; DIEBOLD NIXDORF SYSTEMS GMBH
To: JPMORGAN CHASE BANK, N.A.. AS COLLATERAL AGENT
Reel/Frame 062525/0409 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 26, 2023
From: WINCOR NIXDORF INTERNATIONAL GMBH
To: DIEBOLD NIXDORF SYSTEMS GMBH
Reel/Frame 062518/0054 →
PATENT SECURITY AGREEMENT - 2026 NOTES Recorded Jan 25, 2023
From: WINCOR NIXDORF INTERNATIONAL GMBH; DIEBOLD NIXDORF SYSTEMS GMBH
To: GLAS AMERICAS LLC, AS COLLATERAL AGENT
Reel/Frame 062511/0246 →
PATENT SECURITY AGREEMENT - SUPERPRIORITY Recorded Jan 25, 2023
From: WINCOR NIXDORF INTERNATIONAL GMBH; DIEBOLD NIXDORF SYSTEMS GMBH
To: GLAS AMERICAS LLC, AS COLLATERAL AGENT
Reel/Frame 062511/0095 →
PATENT SECURITY AGREEMENT - TERM LOAN Recorded Jan 25, 2023
From: WINCOR NIXDORF INTERNATIONAL GMBH; DIEBOLD NIXDORF SYSTEMS GMBH
To: GLAS AMERICAS LLC, AS COLLATERAL AGENT
Reel/Frame 062511/0172 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 15, 2021
From: KRUMMEL, VOLKER; GUENTHER, PETER
To: WINCOR NIXDORF INTERNATIONAL GMBH
Reel/Frame 056541/0334 →
Priority Claims (1)
EP 18204257 · Nov 5, 2018 · regional
Continuity (1)
Related Publication 20210409210A1 · Dec 30, 2021