IP Library Granted Patent US 9,214,183
Granted Patent B2
US 9,214,183 · App. 12/602,500 · Granted Dec 15, 2015

Secure storage

Inventor: Sander M. Van Rijnswou (Veldhoven, NL)
Assignee: NXP B.V.
G11B20/00086G11B20/0021G11B20/00173G11B20/00492G11B20/00876H04L9/0866H04L9/3278G11B2220/2537G11B2220/60H04L2209/60
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,214,183
App. No.
12/602,500
Granted
Dec 15, 2015
Kind
B2
Abstract

A system 100 for securely storing digital data includes a data storage 110 and a physical uncloneable function 120 (PUF), including an input ( 122 ) for receiving a challenge and an output ( 124 ) for producing a response to the challenge. Means 130 determine an identifier associated with the data storage. Means 140 supply a representation of the identifier to the PUF as a challenge and retrieve a corresponding response from the PUF. A cryptographic unit 150 performs a cryptographic operation for securing or verifying a digital content item stored in the data storage, where the cryptographic operation is performed under control of a cryptographic key derived from the received response.

Claims (39)

1. A system for storing digital data, the system comprising:

a data storage unit;

a physical uncloneable function (PUF) unit comprising an input for receiving a challenge and an output for producing a response to the received challenge;

an identification unit that determines an identifier associated with the data storage unit;

a representation unit that supplies a representation of the determined identifier to the PUF unit as the challenge and retrieving a corresponding response from the PUF unit, wherein the data storage unit is linked to a hard property embedded in hardware through the PUF unit;

a cryptographic unit that performs a cryptographic operation for at least one of securing and verifying a digital content item stored in the data storage unit, wherein the cryptographic operation is performed under control of a cryptographic key derived from the retrieved response.

2. The system as in claim 1 , wherein the cryptographic operation is authenticating.

3. The system as in claim 1 , wherein the identifier is derived from the data storage unit.

4. The system as in claim 1 , wherein the cryptographic unit includes a processor, the system further comprises a computer program for causing the processor to perform at least a part of the cryptographic operation and the identifier is derived from at least a representation of the computer program.

5. The system as in claim 1 , further comprising

a calculation unit for calculating a hash of the identifier associated with the data storage unit and using the hash as the representation supplied to the PUF unit.

6. A system for storing digital data, the system comprising:

a data storage unit;

a physical uncloneable function (PUF) unit comprising an input for receiving a challenge and an output for producing a response to the received challenge;

an identification unit that determines an identifier associated with the data storage unit;

a representation unit that supplies a representation of the determined identifier to the PUF unit as the challenge and retrieving a corresponding response from the PUF unit, wherein the data storage unit is linked to a hard property embedded in hardware through the PUF unit;

a cryptographic unit that performs a cryptographic operation for at least one of securing and verifying a digital content item stored in the data storage unit, wherein the cryptographic operation is performed under control of a cryptographic key derived from the retrieved response; and

a plurality of applications; each said application using an associated digital content item stored in the data storage unit and being arranged to perform a cryptographic operation for one of securing and verifying security of the associated digital content item under control of the cryptographic key; the identifier associated with the data storage unit being derived from at least one of the application and the digital content item associated with the application such that the identifier is unique for the application.

7. The system as in claim 1 , wherein the PUF unit is physically integrated with the data storage unit.

8. The system as in claim 7 , wherein the data storage unit is of an optical type, the PUF unit is of an optical type, and the PUF unit is integrated in an optical carrier of the data storage unit.

9. The system as in claim 7 , wherein the data storage unit is implemented on a semiconductor device and the PUF unit is integrated on the semiconductor device.

10. The system as in claim 9 , wherein the PUF unit is of an electronic type.

11. A storage device for use in a system as in claim 1 , wherein the PUF unit is physically integrated with the data storage unit.

12. A method of storing digital data in a data storage unit, the method comprising;

determining an identifier associated with the data storage unit;

supplying a representation of the determined identifier as a challenge to a physical undone able function (PUF) unit, wherein the data storage unit is linked to a hard property embedded in hardware through the PUF unit;

retrieving a corresponding response from the PUF unit; and

performing a cryptographic operation for at least one of securing and verifying a digital content item stored in the data storage unit, wherein the cryptographic operation is performed under control of a cryptographic key derived from the received response.

13. The system of claim 1 , wherein the identifier is derived from a user of the system.

14. The system of claim 1 , wherein the identifier is derived from the digital content item.

15. The system of claim 1 , further comprising:

a pre-processing unit.

16. The system of claim 1 , further comprising:

a post-processing unit.

17. The system of claim 1 , further comprising:

a probing unit.

18. The system of claim 1 , wherein the cryptographic operation is verifying authentication.

19. The system of claim 1 , wherein the cryptographic operation is encrypting.

20. The system of claim 1 , wherein the cryptographic operation is decrypting.

Assignments (10)
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 12298143 PREVIOUSLY RECORDED ON REEL 042985 FRAME 0001. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT SUPPLEMENT. Recorded Oct 22, 2019
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 051029/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 12298143 PREVIOUSLY RECORDED ON REEL 039361 FRAME 0212. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT SUPPLEMENT. Recorded Oct 22, 2019
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 051029/0387 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 12298143 PREVIOUSLY RECORDED ON REEL 038017 FRAME 0058. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT SUPPLEMENT. Recorded Oct 22, 2019
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 051030/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 12298143 PREVIOUSLY RECORDED ON REEL 042762 FRAME 0145. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT SUPPLEMENT. Recorded Oct 22, 2019
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 051145/0184 →
RELEASE OF SECURITY INTEREST Recorded Sep 10, 2019
From: MORGAN STANLEY SENIOR FUNDING, INC.
To: NXP B.V.
Reel/Frame 050745/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 12681366 PREVIOUSLY RECORDED ON REEL 039361 FRAME 0212. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT SUPPLEMENT. Recorded May 9, 2017
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 042762/0145 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 12681366 PREVIOUSLY RECORDED ON REEL 038017 FRAME 0058. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT SUPPLEMENT. Recorded May 9, 2017
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 042985/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE APPLICATION 12092129 PREVIOUSLY RECORDED ON REEL 038017 FRAME 0058. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY AGREEMENT SUPPLEMENT. Recorded Jul 14, 2016
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 039361/0212 →
SECURITY AGREEMENT SUPPLEMENT Recorded Mar 7, 2016
From: NXP B.V.
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 038017/0058 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 1, 2009
From: VAN RIJNSWOU, SANDER M.
To: NXP, B.V.
Reel/Frame 023582/0706 →
Priority Claims (1)
EP 07110082 · Jun 12, 2007 · regional
Continuity (1)
Related Publication 20100199103A1 · Aug 5, 2010