IP Library › Granted Patent US 8,914,647
Granted Patent B2
US 8,914,647 · App. 14/028,293 · Granted Dec 16, 2014

Method and system for protecting data

Inventor: Andrew Dellow (Minchinhampton, GB)
Assignee: Broadcom Corporation
H04L9/00H04L2209/60H04L9/0897H04L9/0637H04L9/14
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,914,647
App. No.
14/028,293
Granted
Dec 16, 2014
Kind
B2
Abstract

Methods and systems for protecting data may include controlling encryption and/or decryption and identifying a destination of corresponding encrypted and/or decrypted data, utilizing rules based on a source location of the data prior to the encryption or decryption and an algorithm that may have been previously utilized for encrypting and/or decrypting the data prior to the data being stored in the source location. The source location and/or destination of the data may comprise protected or unprotected memory. One or more of a plurality of algorithms may be utilized for the encryption and/or decryption. The rules may be stored in a key table, which may be stored on-chip, and may be reprogrammable. One or more keys for the encryption and/or decryption may be generated within the chip.

Claims (33)

1. A method comprising:

storing a descriptor in a memory, wherein the descriptor comprises a first encryption/decryption algorithm and a key pointer identifying a key slot;

storing the key slot in a key table, wherein the key slot comprises a second encryption/decryption algorithm and a key;

encrypting or decrypting data using the first encryption/decryption algorithm, the second encryption/decryption algorithm, and the key.

2. The method of claim 1 , further comprising identifying a destination of the encrypted or decrypted data based on rules using a source address of the data and the first encryption/decryption algorithm.

3. The method of claim 2 , wherein the first encryption/decryption algorithm is an algorithm that was used previously to encrypt/decrypt the data.

4. The method of claim 2 , wherein the source address is stored in unprotected memory.

5. The method of claim 2 , wherein the rues are stored in the key table.

6. The method of claim 5 , wherein the key table is reprogrammable.

7. The method of claim 1 , wherein the key is generated by a chip that stores the key table.

8. A non-transitory computer readable medium storing instructions wherein the instructions when executed are configured to perform a method, wherein the method comprises:

storing a descriptor in a memory, wherein the descriptor comprises a first encryption/decryption algorithm and a key pointer identifying a key slot;

storing the key slot in a key table, wherein the key slot comprises a second encryption/decryption algorithm and a key;

encrypting or decrypting data using the first encryption/decryption algorithm, the second encryption/decryption algorithm, and the key.

9. The non-transitory computer readable medium of claim 8 , further comprising identifying a destination of the encrypted or decrypted data based on rules using a source address of the data and the first encryption/decryption algorithm.

10. The non-transitory computer readable medium of claim 9 , wherein the first encryption/decryption algorithm is an algorithm that was used previously to encrypt/decrypt the data.

11. The non-transitory computer readable medium of claim 9 , wherein the source address is stored in unprotected memory.

12. The non-transitory computer readable medium of claim 9 , wherein the rules are stored in the key table.

13. The non-transitory computer readable medium of claim 12 , wherein the key table is reprogrammable.

14. The non-transitory computer readable medium of claim 8 , wherein the key is generated by a chip that stores the key table.

15. A system for data communication, comprising:

a memory configured to store a descriptor;

a chip storing a key table configured to store a key slot connected to the memory;

a security logic block, connected to both the memory and the key table, configured to select a final encryption/decryption algorithm; and

an encryption/decryption block, connected to the security logic block, the memory, and the key table, configured to generate an output data by encrypting/decrypting, an input data using the final encryption/decryption algorithm;

wherein:

the descriptor includes a first encryption/decryption algorithm and a key pointer; and

the key slot includes a second encryption/decryption, algorithm and a key.

16. The system of claim 15 , wherein the encryption/decryption block is further configured to identify a destination of the encrypted or decrypted input data based on rules using a source address of the input data and the first encryption/decryption algorithm.

17. The system of claim 16 , wherein the first encryption/decryption algorithm is an algorithm that was used previously to encrypt/decrypt the input data.

18. The system of claim 16 , wherein the rules are stored in the key table.

19. The system of claim 18 , wherein the key table is reprogrammable.

20. The system of claim 15 , wherein the chip generated the key.

Assignments (7)
CORRECTIVE ASSIGNMENT TO CORRECT THE PATENT NUMBER 9,385,856 TO 9,385,756 PREVIOUSLY RECORDED AT REEL: 47349 FRAME: 001. ASSIGNOR(S) HEREBY CONFIRMS THE MERGER. Recorded Mar 22, 2019
From: AVAGO TECHNOLOGIES GENERAL IP (SINGAPORE) PTE. LTD.
To: AVAGO TECHNOLOGIES INTERNATIONAL SALES PTE. LIMITED
Reel/Frame 051144/0648 →
CORRECTIVE ASSIGNMENT TO CORRECT THE EFFECTIVE DATE PREVIOUSLY RECORDED ON REEL 047229 FRAME 0408. ASSIGNOR(S) HEREBY CONFIRMS THE THE EFFECTIVE DATE IS 09/05/2018. Recorded Oct 29, 2018
From: AVAGO TECHNOLOGIES GENERAL IP (SINGAPORE) PTE. LTD.
To: AVAGO TECHNOLOGIES INTERNATIONAL SALES PTE. LIMITED
Reel/Frame 047349/0001 →
MERGER Recorded Oct 4, 2018
From: AVAGO TECHNOLOGIES GENERAL IP (SINGAPORE) PTE. LTD.
To: AVAGO TECHNOLOGIES INTERNATIONAL SALES PTE. LIMITED
Reel/Frame 047229/0408 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS Recorded Feb 3, 2017
From: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
To: BROADCOM CORPORATION
Reel/Frame 041712/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 1, 2017
From: BROADCOM CORPORATION
To: AVAGO TECHNOLOGIES GENERAL IP (SINGAPORE) PTE. LTD.
Reel/Frame 041706/0001 →
PATENT SECURITY AGREEMENT Recorded Feb 11, 2016
From: BROADCOM CORPORATION
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 037806/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 12, 2014
From: DELLOW, ANDREW
To: BROADCOM CORPORATION
Reel/Frame 034152/0479 →
Continuity (3)
Continuation 13493158 · Jun 11, 2012
Continuation 11858530 · Sep 20, 2007
Related Publication 20140019773A1 · Jan 16, 2014