IP Library › Granted Patent US 9,208,330
Granted Patent B2
US 9,208,330 · App. 14/176,773 · Granted Dec 8, 2015

System for execution of security related functions

Inventors: Krishnan Srinivasan (San Jose, CA); Igor Kucherenko (Moscow, RU); Nikola Radovanovic (San Jose, CA)
Assignee: Avago Technologies General IP (Singapore) Pte. Ltd.
G06F21/602G06F21/606G06F21/76H04L9/0841H04L9/30
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,208,330
App. No.
14/176,773
Granted
Dec 8, 2015
Kind
B2
Abstract

An apparatus having a first memory circuit, a plurality of arithmetic modules, and a plurality of second memory circuits. The first memory circuit may be configured to read or write data to or from a host. The plurality of arithmetic modules each may be configured to be enabled or disabled in response to control signals received from the first memory circuit. The plurality of second memory circuits may be configured to read or write data to or from the first memory circuit through a data exchange layer. The arithmetic modules provide cryptographic protection of the data.

Claims (29)

1. An apparatus comprising:

a first memory circuit configured to read or write data to or from a host;

an arithmetic logic circuit communicatively coupled to said first memory circuit, said arithmetic logic circuit comprising a plurality of arithmetic modules each configured to be enabled or disabled in response to control signals received from said first memory circuit and each having a number of multipliers proportional to a size of a public key; and

a plurality of second memory circuits configured to read or write data to or from said first memory circuit through a data exchange layer having a separate read channel and a separate write channel, wherein said arithmetic modules provide cryptographic protection of said data by generating results of two or more arithmetic operations to implement said public key.

2. The apparatus according to claim 1 , wherein said public key includes at least one of a Diffie Hellman Key Exchange function, an RSA function, and an elliptic curve cryptography function.

3. The apparatus according to claim 1 , wherein said apparatus is configured to provide functional and performance debugging during simulation and after hardware is designed.

4. The apparatus according to claim 1 , wherein said apparatus is configured to provide scalability to implement a plurality of key lengths.

5. The apparatus according to claim 4 , wherein said scalability provides a trade-off between performance and gate count.

6. The apparatus according to claim 1 , wherein said cryptographic protection is accelerated by implementing a software architecture.

7. The apparatus according to claim 6 , wherein said software architecture is configured to transparently accelerate targeted cryptographic functions.

8. The apparatus according to claim 1 , wherein said apparatus includes a single code base configured to seamlessly instantiate a high performance and low gate count design.

9. The apparatus according to claim 1 , wherein said apparatus includes a firmware implemented with a high level software programming language to operate said apparatus.

10. The apparatus according to claim 9 , wherein said high level software programming language comprises C.

11. The apparatus according to claim 1 , wherein said apparatus is configured to implement parallelism.

12. The apparatus according to claim 1 , wherein said arithmetic modules operate on 8192 bit numbers.

13. The apparatus according to claim 1 , wherein said apparatus is configured to provide an efficient pipeline architecture.

14. The apparatus according to claim 1 , wherein said apparatus is implemented as one or more integrated circuits.

15. The apparatus according to claim 1 , wherein said firmware implements a command FIFO for facilitating communications between the host and the arithmetic logic circuit.

16. The apparatus according to claim 15 , wherein said plurality of second memory circuits includes a plurality of targets, and for each target said data exchange layer implements at least one of a read FIFO control or a write FIFO instruction.

17. The apparatus according to claim 1 , wherein said plurality of second memory circuits comprise connected memory circuits and disconnected memory circuits, and wherein said data exchange layer facilitates communication to both connected and disconnected memory circuits.

18. The apparatus according to claim 1 , wherein said plurality of arithmetic modules include one or more carry and save adders and more than four multipliers.

19. A computer implemented method for providing cryptographic protection of data, comprising a memory with one or more instructions and a processor to implement the instructions to perform the steps of:

(A) reading or writing said data in a first memory circuit to or from a host;

(B) enabling or disabling a number of multipliers of a plurality of arithmetic modules in response to control signals received from said first memory circuit to implement a public key, wherein the number of multipliers enabled or disabled is proportional to a size of said public key; and

(C) reading or writing said data in a second memory circuit to or from said first memory circuit through a data exchange layer with a separate read channel and a separate write channel, wherein said arithmetic modules provide cryptographic protection of said data by generating results of two or more arithmetic operations to implement said public key.

20. An apparatus comprising:

a driver for reading or writing data in a first memory circuit to or from a host;

one or more hardware accelerators communicatively coupled to said driver and configured to enable or disable a plurality of arithmetic modules in response to control signals received from said first memory circuit; and

one or more bus networks for reading or writing said data in a second memory circuit to or from said first memory circuit through a data exchange layer having separate read and write channels, wherein said arithmetic modules provide cryptographic protection of said data by computing two or more arithmetic operations to authenticate a public key, and wherein said data exchange layer comprises a tree of data exchange layers corresponding to said plurality of arithmetic modules.

Assignments (8)
CORRECTIVE ASSIGNMENT TO CORRECT THE EXECUTION DATE PREVIOUSLY RECORDED AT REEL: 047422 FRAME: 0464. ASSIGNOR(S) HEREBY CONFIRMS THE MERGER. Recorded Mar 6, 2019
From: AVAGO TECHNOLOGIES GENERAL IP (SINGAPORE) PTE. LTD.
To: AVAGO TECHNOLOGIES INTERNATIONAL SALES PTE. LIMITED
Reel/Frame 048883/0702 →
MERGER Recorded Oct 5, 2018
From: AVAGO TECHNOLOGIES GENERAL IP (SINGAPORE) PTE. LTD.
To: AVAGO TECHNOLOGIES INTERNATIONAL SALES PTE. LIMITED
Reel/Frame 047422/0464 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS Recorded Feb 3, 2017
From: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
To: AVAGO TECHNOLOGIES GENERAL IP (SINGAPORE) PTE. LTD.
Reel/Frame 041710/0001 →
PATENT SECURITY AGREEMENT Recorded Feb 11, 2016
From: AVAGO TECHNOLOGIES GENERAL IP (SINGAPORE) PTE. LTD.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 037808/0001 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENT RIGHTS (RELEASES RF 032856-0031) Recorded Feb 2, 2016
From: DEUTSCHE BANK AG NEW YORK BRANCH, AS COLLATERAL AGENT
To: LSI CORPORATION; AGERE SYSTEMS LLC
Reel/Frame 037684/0039 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 3, 2015
From: LSI CORPORATION
To: AVAGO TECHNOLOGIES GENERAL IP (SINGAPORE) PTE. LTD.
Reel/Frame 035390/0388 →
PATENT SECURITY AGREEMENT Recorded May 8, 2014
From: LSI CORPORATION; AGERE SYSTEMS LLC
To: DEUTSCHE BANK AG NEW YORK BRANCH, AS COLLATERAL AGENT
Reel/Frame 032856/0031 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 10, 2014
From: SRINIVASAN, KRISHNAN; KUCHERENKO, IGOR; RADOVANOVIC, NIKOLA
To: LSI CORPORATION
Reel/Frame 032185/0573 →
Continuity (2)
Provisional Application 61934940 · Feb 3, 2014
Related Publication 20150220744A1 · Aug 6, 2015