METHOD AND DEVICE FOR SECURE COMMUNICATIONS OVER A NETWORK USING A HARDWARE SECURITY ENGINE

A system-on-a-chip (112) apparatus comprising a system-on-a-chip (112) comprising a security engine (110) that is separate from a processor core (118) of the system-on-a-chip (112) and has a secure memory (114) accessible only by the security engine, wherein the secure memory (114) includes a securi...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: KABIR, Farhana, KHOSRAVI, Hormuzd M, EPP, Edward C
Format: Patent
Sprache:eng ; fre ; ger
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:A system-on-a-chip (112) apparatus comprising a system-on-a-chip (112) comprising a security engine (110) that is separate from a processor core (118) of the system-on-a-chip (112) and has a secure memory (114) accessible only by the security engine, wherein the secure memory (114) includes a security key (150) that was encoded in the secure memory (114) during a manufacturing process of the system-on-a-chip (112), the security engine to generate a random nonce for initiating a request for a secure communication session with a remote server (104) over a network (106) using the nonce; perform a cryptographic key exchange with the remote server; generate a symmetric session key, based on the cryptographic key exchange, to encrypt messages sent to the remote server and decrypt messages received from the remote server during the secure communication session; encrypt the symmetric session key (150) based on the security key; and store the encrypted session key in the secure memory, the system-on-a-chip to establish the secure communication session with the remote server over the network using the session key.