IP Library Granted Patent US 8,332,641
Granted Patent B2
US 8,332,641 · App. 12/363,259 · Granted Dec 11, 2012

Authenticated debug access for field returns

Assignee: Freescale Semiconductor, Inc.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,332,641
App. No.
12/363,259
Granted
Dec 11, 2012
Kind
B2
Abstract

Under the direction of a first party, an integrated circuit (IC) device is configured to temporarily enable access to a debug interface of the IC device via authentication of the first party by a challenge/response process using a key of the IC device and a challenge value generated at the IC device. The first party then may conduct a software evaluation of the IC device via the debug interface. In response to failing to identify an issue with the IC device from the software evaluation, the first party can permanently enable open access to the debug interface while authenticated and provide the IC device to a second party. Under the direction of the second party, a hardware evaluation of the IC device is conducted via the debug interface that was permanently opened by the first party.

Claims (69)

1. A method comprising:

conducting a challenge/response process using a first key value stored in an integrated circuit (IC) device and a challenge value generated at the IC device;

temporarily enabling configuration of the IC device to permanently enable open access to a debug interface of the IC device responsive to confirmation of authentication from the challenge/response process;

temporarily enabling access to the debug interface responsive to confirmation of authentication from the challenge/response process;

performing software evaluation of the IC device while access to the debug interface is temporarily enabled; and

configuring the IC device to permanently enable open access to the debug interface responsive to a failure to identify a defect in the IC device from the software evaluation.

2. The method of claim 1 , further comprising:

performing hardware evaluation of the IC device via the debug interface subsequent to configuring the IC device to permanently enable open access to the debug interface.

3. The method of claim 1 , wherein:

the IC device comprises a default configuration component representative of a default configuration and a customer fuse bank representative of a customer configuration; and

configuring the IC device to permanently enable open access to the debug interface further comprises configuring the IC device to operate using the default configuration represented by the default configuration component in place of the customer configuration represented by the customer fuse bank.

4. The method of claim 3 , further comprising:

receiving, at the IC device, an input directing the IC device to operate using the customer configuration represented by the customer fuse bank; and

configuring the IC device to operate using the customer configuration responsive to receiving the input.

5. The method of claim 1 , wherein:

the IC device is configured to permanently enable open access to the debug interface by placing a fuse in a blown state; and

temporarily enabling configuration of the IC device to permanently enable open access to the debug interface comprises enabling access to the fuse responsive to confirmation of authentication from the challenge/response process.

6. The method of claim 5 , further comprising:

configuring the IC device to permanently enable open access to the debug interface by blowing the fuse while access to the fuse is enabled.

7. The method of claim 1 , wherein conducting the challenge/response process comprises:

generating the challenge value at the IC device;

providing the challenge value to an external device via the debug interface of the IC device;

receiving a response value from the external device via the debug interface; and

confirming authentication using the challenge value and the first key value.

8. The method of claim 7 , further comprising:

signing, at the external device, the challenge value using a second key value to generate the response value, wherein the first key value comprises a public key of a public key infrastructure (PKI) key pair and the second key value comprises a private key of the PKI key pair.

9. The method of claim 1 , further comprising:

receiving, via the debug interface, a signed command file from an external device, the first key value accompanying the signed command file;

storing the first key value at the IC device responsive to confirming authentication of the signed command file using a root key value of the IC device;

conducting a challenge/response process using the first key value stored in the IC device and a challenge value generated at the IC device; and

wherein temporarily enabling configuration of the IC device to permanently enable open access to a debug interface of the IC device responsive to confirmation of authentication from the challenge/response process.

10. A method comprising:

under direction of a first party:

temporarily enabling access to a debug interface of an integrated circuit (IC) device via authentication of the first party by a challenge/response process using a first key of the IC device and a challenge value generated at the IC device;

conducting a software evaluation of the IC device via the debug interface;

permanently enabling open access to the debug interface while authenticated in response to failing to identify an issue with the IC device from the software evaluation; and

providing the IC device to a second party.

11. The method of claim 10 , further comprising:

under direction of the second party:

conducting a hardware evaluation of the IC device via the debug interface.

12. The method of claim 11 , wherein permanently enabling open access to the debug interface of the IC device comprises configuring the IC device to operate using a first configuration represented by a default configuration component in place of a second configuration represented by a fuse bank configured by the first party, and the method further comprising:

under the direction of the second party:

returning the IC device to the first party in response to failing to detect an issue with the IC device via the hardware evaluation; and

under the direction of the first party:

providing a signal to the IC device to direct the IC device to operate using the second configuration represented by the fuse bank; and

configuring the IC device to operate using the second configuration in response to the signal.

13. An integrated circuit (IC) device comprising:

a storage component to store a key value;

a debug interface;

a first fuse operable to control access to the debug interface;

an authenticated debug controller configured to:

conduct a challenge/response process using the key value and a challenge value; and

temporarily enable configuration of the IC device to permanently enable open access to the debug interface by temporarily enabling access to the first fuse in response to confirmation of authentication from the challenge/response process;

a default configuration component representing a first configuration state;

a fuse bank representing a second configuration state; and

wherein the IC device is configured to:

operate using a first configuration state represented by a default configuration component responsive to the first fuse having a non-blown state; and

operate using a second configuration state represented by the fuse bank responsive to the first fuse having a blown state; and

wherein the authenticated debug controller is to configure the IC device to operate using the first configuration state in place of the second configuration state responsive to receipt of a signal at a pin of the IC device.

14. The IC device of claim 13 , wherein the authenticated debug controller is configured to conduct the challenge/response process by:

providing the challenge value to an external device via the debug interface;

receiving a response value from the external device via the debug interface; and

confirming authorization using the challenge value and the response value.

15. The IC device of claim 14 , wherein the authenticated debug controller further is configured to set an access level of the IC device based on an access level associated with the key value and responsive to confirmation of authentication.

16. The IC device of claim 13 , further comprising:

a second fuse; and

wherein the authenticated debug controller is further configured to:

conduct the challenge/response process responsive to the second fuse having a first state; and

enable open access to the debug interface without conducting the challenge/response process responsive to the second fuse having a second state.

Assignments (26)
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 11759915 AND REPLACE IT WITH APPLICATION 11759935 PREVIOUSLY RECORDED ON REEL 040925 FRAME 0001. ASSIGNOR(S) HEREBY CONFIRMS THE RELEASE OF SECURITY INTEREST. Recorded Feb 17, 2020
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: NXP, B.V. F/K/A FREESCALE SEMICONDUCTOR, INC.
Reel/Frame 052917/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 11759915 AND REPLACE IT WITH APPLICATION 11759935 PREVIOUSLY RECORDED ON REEL 040928 FRAME 0001. ASSIGNOR(S) HEREBY CONFIRMS THE RELEASE OF SECURITY INTEREST. Recorded Jan 17, 2020
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: NXP B.V.
Reel/Frame 052915/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 11759915 AND REPLACE IT WITH APPLICATION 11759935 PREVIOUSLY RECORDED ON REEL 037486 FRAME 0517. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT AND ASSUMPTION OF SECURITY INTEREST IN PATENTS. Recorded Dec 10, 2019
From: CITIBANK, N.A.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 053547/0421 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 12298143 PREVIOUSLY RECORDED ON REEL 042985 FRAME 0001. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT SUPPLEMENT. Recorded Oct 22, 2019
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 051029/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 12298143 PREVIOUSLY RECORDED ON REEL 039361 FRAME 0212. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT SUPPLEMENT. Recorded Oct 22, 2019
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 051029/0387 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 12298143 PREVIOUSLY RECORDED ON REEL 042762 FRAME 0145. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT SUPPLEMENT. Recorded Oct 22, 2019
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 051145/0184 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 12298143 PREVIOUSLY RECORDED ON REEL 038017 FRAME 0058. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT SUPPLEMENT. Recorded Oct 22, 2019
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 051030/0001 →
RELEASE OF SECURITY INTEREST Recorded Sep 10, 2019
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: NXP B.V.
Reel/Frame 050744/0097 →
RELEASE OF SECURITY INTEREST Recorded Sep 10, 2019
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: NXP B.V.
Reel/Frame 050745/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE TO CORRECT THE APPLICATION NO. FROM 13,883,290 TO 13,833,290 PREVIOUSLY RECORDED ON REEL 041703 FRAME 0536. ASSIGNOR(S) HEREBY CONFIRMS THE THE ASSIGNMENT AND ASSUMPTION OF SECURITY INTEREST IN PATENTS.. Recorded Feb 20, 2019
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: SHENZHEN XINGUODU TECHNOLOGY CO., LTD.
Reel/Frame 048734/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 12681366 PREVIOUSLY RECORDED ON REEL 038017 FRAME 0058. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT SUPPLEMENT. Recorded May 9, 2017
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 042985/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 12681366 PREVIOUSLY RECORDED ON REEL 039361 FRAME 0212. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT SUPPLEMENT. Recorded May 9, 2017
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 042762/0145 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENTS 8108266 AND 8062324 AND REPLACE THEM WITH 6108266 AND 8060324 PREVIOUSLY RECORDED ON REEL 037518 FRAME 0292. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT AND ASSUMPTION OF SECURITY INTEREST IN PATENTS. Recorded Feb 1, 2017
From: CITIBANK, N.A.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 041703/0536 →
MERGER Recorded Jan 3, 2017
From: FREESCALE SEMICONDUCTOR, INC.
To: NXP USA, INC.
Reel/Frame 041144/0363 →
RELEASE OF SECURITY INTEREST Recorded Nov 7, 2016
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: NXP B.V.
Reel/Frame 040928/0001 →
RELEASE OF SECURITY INTEREST Recorded Sep 21, 2016
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: NXP, B.V., F/K/A FREESCALE SEMICONDUCTOR, INC.
Reel/Frame 040925/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 12092129 PREVIOUSLY RECORDED ON REEL 038017 FRAME 0058. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT SUPPLEMENT. Recorded Jul 14, 2016
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 039361/0212 →
SUPPLEMENT TO THE SECURITY AGREEMENT Recorded Jun 16, 2016
From: FREESCALE SEMICONDUCTOR, INC.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 039138/0001 →
SECURITY AGREEMENT SUPPLEMENT Recorded Mar 7, 2016
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 038017/0058 →
ASSIGNMENT AND ASSUMPTION OF SECURITY INTEREST IN PATENTS Recorded Jan 13, 2016
From: CITIBANK, N.A.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 037518/0292 →
ASSIGNMENT AND ASSUMPTION OF SECURITY INTEREST IN PATENTS Recorded Jan 12, 2016
From: CITIBANK, N.A.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 037486/0517 →
PATENT RELEASE Recorded Dec 21, 2015
From: CITIBANK, N.A., AS COLLATERAL AGENT
To: FREESCALE SEMICONDUCTOR, INC.
Reel/Frame 037354/0793 →
SECURITY AGREEMENT Recorded Nov 6, 2013
From: FREESCALE SEMICONDUCTOR, INC.
To: CITIBANK, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 031591/0266 →
SECURITY AGREEMENT Recorded Jun 18, 2013
From: FREESCALE SEMICONDUCTOR, INC.
To: CITIBANK, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 030633/0424 →
SECURITY AGREEMENT Recorded May 19, 2009
From: FREESCALE SEMICONDUCTOR, INC.
To: CITIBANK, N.A.
Reel/Frame 022703/0405 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 2, 2009
From: CASE, LAWRENCE L.; ASHKENAZI, ASAF; CHHABRA, RUCHIR; COVEY, CARLIN R.; HARTLEY, DAVID H.; MACKIE, TROY E.; MUIR, ALISTAIR N.; REDMAN, MARK D.; TKACIK, THOMAS E.; VAGLICA, JOHN J.; ZIOLKOWSKI, RODNEY D.
To: FREESCALE SEMICONDUCTOR, INC.
Reel/Frame 022186/0948 →
Continuity (1)
Related Publication 20100199077A1 · Aug 5, 2010