METHOD AND DEVICE FOR SECURE COMMUNICATIONS OVER A NETWORK USING A HARDWARE SECURITY ENGINE
A system-on-a-chip (112) apparatus comprising a system-on-a-chip (112) comprising a security engine (110) that is separate from a processor core (118) of the system-on-a-chip (112) and has a secure memory (114) accessible only by the security engine, wherein the secure memory (114) includes a securi...
Gespeichert in:
Hauptverfasser: | , , |
---|---|
Format: | Patent |
Sprache: | eng ; fre ; ger |
Schlagworte: | |
Online-Zugang: | Volltext bestellen |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | A system-on-a-chip (112) apparatus comprising a system-on-a-chip (112) comprising a security engine (110) that is separate from a processor core (118) of the system-on-a-chip (112) and has a secure memory (114) accessible only by the security engine, wherein the secure memory (114) includes a security key (150) that was encoded in the secure memory (114) during a manufacturing process of the system-on-a-chip (112), the security engine to generate a random nonce for initiating a request for a secure communication session with a remote server (104) over a network (106) using the nonce; perform a cryptographic key exchange with the remote server; generate a symmetric session key, based on the cryptographic key exchange, to encrypt messages sent to the remote server and decrypt messages received from the remote server during the secure communication session; encrypt the symmetric session key (150) based on the security key; and store the encrypted session key in the secure memory, the system-on-a-chip to establish the secure communication session with the remote server over the network using the session key. |
---|