IP Library Granted Patent US 9,348,995
Granted Patent B2
US 9,348,995 · App. 14/706,305 · Granted May 24, 2016

Nonvolatile memory device having authentication, and methods of operation and manufacture thereof

Inventors: Ming-Huei Shieh (Cupertino, CA); Krishna Chandra Shekar (Fremont, CA); Hui Chen (San Ramon, CA)
Assignee: WINBOND ELECTRONICS CORPORATION
G06F21/44G06F21/79G06K19/07745H01L24/49H04L9/0894H01L2224/05554H01L2224/05644H01L2224/32145H01L2224/32245H01L2224/48091H01L2224/48145H01L2224/48247H01L2224/48464H01L2224/49113H01L2224/73265H01L2224/85399H01L2924/00014H01L2924/181
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,348,995
App. No.
14/706,305
Granted
May 24, 2016
Kind
B2
Abstract

A memory device package encloses two separate die, one being a standard nonvolatile memory integrated circuit (“IC”) die, and the other being any suitable authentication IC die. Either die may be stacked upon the other, or the die may be placed side-by-side. The external contacts may correspond to the power and signal requirements of the standard nonvolatile memory IC die so that the pin-out of the memory device package may present a standard pinout. The power and signal requirements of the authentication IC die may be satisfied with some or all of the pins for the nonvolatile memory integrated circuit die, or with other unused pins of the device package. One or more additional external contacts may be added exclusively for the authentication integrated circuit die. One or more signals may be dedicated as between the standard nonvolatile memory IC die and the authentication IC die.

Claims (17)

1. A method of authenticating a nonvolatile memory integrated circuit die contained in a package body having a plurality of contacts extending from or disposed on the package body, the nonvolatile memory integrated circuit die having a first interface electrically coupled to at least some of the contacts, comprising:

storing a root key in a nonvolatile memory array of an authentication integrated circuit die contained in the package body, the authentication integrated circuit die further comprising a second interface and an authentication engine coupled to the second interface, the nonvolatile memory array being coupled to the authentication engine and to the second interface;

maintaining a monotonic count within the nonvolatile memory array of the authentication integrated circuit die;

encrypting the monotonic count within the authentication engine to generate an encrypted count; and

furnishing the encrypted count from the authentication engine to one of the contacts via the second interface, the second interface being electrically coupled to at least some of the contacts.

2. The method of claim 1 wherein the authentication integrated circuit die comprises a volatile memory register coupled to the authentication engine, further comprising storing a session key in the volatile memory register of the authentication integrated circuit die, and wherein the encrypting step comprises encrypting the count with the session key.

3. A method of authenticating a nonvolatile memory integrated circuit die contained in a package body having a plurality of contacts extending from or disposed on the package body, the nonvolatile memory integrated circuit die having a first interface electrically coupled to at least some of the contacts, comprising:

storing a root key in a nonvolatile memory array of an authentication integrated circuit die contained in the package body, the authentication integrated circuit die further comprising a second interface, an authentication engine coupled to the second interface, and a volatile memory register coupled to the authentication engine, the nonvolatile memory array being coupled to the authentication engine and to the second interface;

maintaining a monotonic count within the nonvolatile memory array of the authentication integrated circuit die;

receiving, by the authentication integrated circuit die, a request associated with a keyed-HMAC for providing the monotonic count;

furnishing the monotonic count from the authentication engine to one of the contacts via the second interface, the second interface being electrically coupled to at least some of the contacts;

receiving, by the authentication integrated circuit die, a request associated with the keyed-HMAC for incrementing the monotonic count; and

incrementing the monotonic count in the authentication integrated circuit die.

4. The method of claim 3 further comprising:

computing a derived key based upon session data and the root key; and

storing the derived key in the volatile memory register;

wherein the keyed-HMAC is based upon the derived key.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 7, 2015
From: SHIEH, MING-HUEI; SHEKAR, KRISHNA CHANDRA; CHEN, HUI
To: WINBOND ELECTRONICS CORPORATION
Reel/Frame 035589/0931 →
Continuity (2)
Division 13780803 · Feb 28, 2013
Related Publication 20150310203A1 · Oct 29, 2015