Secure storage devices, with physical input device, for secure configuration in a configuration-ready mode
Abstract
A secure storage device includes a physical key input device, a secure memory and a controller. The controller arbitrates access by a host to securely configure the device based on the device's mode of operation. The controller determines whether the device is in a configuration-ready mode based on information within the device. Only when the device is in the configuration-ready mode, the device may be configured by the host. When a device is in a non-configuration-ready mode, the device is prevented from being configured by the host, but the device can be set to the configuration-ready mode, for example, by nullifying configuration data (e.g., PINs), by creating new encryption key(s), and by setting the mode to the configuration-ready mode. A null PIN is unusable to unlock the device after being locked. A new encryption key is unusable to decrypt data previously stored in the device, making such data unrecoverable.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A secure storage device, comprising:
a casing; a memory disposed within the casing and configured to store secure data; a physical key input device disposed at an outer surface of the casing and configured to receive a security identification code from a user to facilitate authentication and unlocking of the secure storage device; a communication interface configured to connect the secure storage device to a communication bus external to the casing; and a controller disposed within the casing and coupled to the memory and the physical key input device, the controller configured to cause:
determining whether the secure storage device is in a configuration-ready mode, the configuration-ready mode indicating that the secure storage device is allowed to communicate with a host, which is external to the secure storage device, to configure the secure storage device; and
receiving configuration data from the host via the communication bus for configuring the secure storage device when the secure storage device is determined to be in the configuration-ready mode, the secure storage device being prevented from receiving the configuration data from the host when the secure storage device is determined to be not in the configuration-ready mode,
wherein an indication whether the secure storage device is in the configuration-ready mode is contained within the secure storage device, and wherein prior to receiving the configuration data from the host, when the secure storage device is in the configuration-ready mode and contains a security identification code, the security identification code contained in the secure storage device is a null security identification code that is unusable to facilitate unlocking the secure storage device after the secure storage device is locked.
2 . The secure storage device of claim 1 , wherein prior to initiating a communication with the host, when the secure storage device is in the configuration-ready mode and contains an encryption key, the encryption key is a new encryption key that is unusable for decrypting encrypted data previously stored in the memory.
3 . The secure storage device of claim 1 , wherein prior to receiving the configuration data from the host, when the secure storage device is in the configuration-ready mode and contains another security identification code, the another security identification code contained in the secure storage device is another null security identification code that is unusable to create a new security identification code to unlock the secure storage device after the secure storage device is locked.
4 . The secure storage device of claim 1 , wherein prior to receiving the configuration data from the host, at least a portion of the security identification code contained in the secure storage device is not enterable via the physical key input device.
5 . The secure storage device of claim 1 , wherein the controller is configured to cause:
prior to determining whether the secure storage device is in the configuration-ready mode, setting the secure storage device into the configuration-ready mode, wherein setting the secure storage device into the configuration-ready mode comprises:
setting the security identification code in the secure storage device into the null security identification code that is unusable to unlock the secure storage device after the secure storage device is locked.
6 . The secure storage device of claim 5 , wherein setting the secure storage device into the configuration-ready mode comprises:
setting an encryption key in the secure storage device into a new encryption key that is unusable for decrypting data previously stored in the secure storage device.
7 . The secure storage device of claim 5 , wherein setting the secure storage device into the configuration-ready mode comprises:
setting the indication to indicate that the secure storage device is in the configuration-ready mode.
8 . The secure storage device of claim 1 , wherein the controller is configured to cause:
receiving an input via the physical key input device when the secure storage device is not in the configuration-ready mode, wherein based on the input, the controller is configured to place the secure storage device into the configuration-ready mode.
9 . The secure storage device of claim 8 , wherein the controller is configured to cause:
in response to the input, setting the security identification code in the secure storage device into the null security identification code, wherein at least a portion of the null security identification code is not enterable via the physical key input device; and setting an encryption key in the secure storage device into a new encryption key that is unusable for decrypting data previously stored in the memory.
10 . The secure storage device of claim 1 , wherein the configuration data from the host comprises a security identification code that is enterable using the physical key input device of the secure storage device.
11 . The secure storage device of claim 1 , wherein the controller is further configured to cause:
in response to receiving the configuration data from the host, decrypting the received configuration data; storing the configuration data in the secure storage device; and completing configuration of the secure storage device, wherein the controller is configured to store an indication that the secure storage device is not in the configuration-ready mode when the configuration of the secure storage device is complete.
12 . The secure storage device of claim 11 , wherein the controller is configured to cause:
ending communication with the host when the configuration of the secure storage device is completed; and preventing a new configuration of the secure storage device by the host subsequent to ending the communication with the host, based on the indication that the secure storage device is not in the configuration-ready mode.
13 . The secure storage device of claim 1 , wherein prior to receiving the configuration data from the host, when the secure storage device is in the configuration-ready mode, the secure storage device contains no security identification code that is usable to unlock the secure storage device after the secure storage device is locked.
14 . The secure storage device of claim 1 , wherein when the secure storage device is determined to be in the configuration-ready mode, the controller is configured to send an instruction prior to receiving the configuration data from the host, the instruction for providing identifier information associated with the secure storage device to the communication interface for provision to the host.
15 . The secure storage device of claim 14 , wherein the identifier information comprises a product identifier and a vendor identifier of the secure storage device, and
wherein in response to a query from the host, the controller is configured to provide, for transmission to the host, the indication whether the secure storage device is in the configuration-ready mode.
16 . The secure storage device of claim 1 , wherein when the secure storage device is determined to be in the configuration-ready mode, the controller is configured to cause:
prior to receiving the configuration data, facilitating a handshake process with the host; prior to receiving the configuration data, facilitating establishment of a configuration encryption key for the configuration data; after receiving the configuration data, decrypting the configuration data based on the configuration encryption key; storing the configuration data in the secure storage device; and setting the secure storage device into a non-configuration-ready mode, wherein the configuration encryption key is different from a data transfer encryption key for encrypting data to the memory or decrypting data from the memory, and wherein when the secure storage device is set to a second configuration-ready mode after the non-configuration-ready mode, the secure storage device is configured to use a second configuration encryption key that is different from the configuration encryption key.
17 . The secure storage device of claim 1 , wherein the configuration data from the host comprises a security identification code and one or more other configuration settings associated with configuration of the secure storage device, and
wherein the security identification code of the configuration data from the host is usable to facilitate unlocking the secure storage device after the secure storage device is locked.
18 . The secure storage device of claim 1 , comprising:
an output device disposed at the outer surface of the casing and configured to display an indication of a mode of operation of the secure storage device, wherein the indication of the mode of operation includes a signal indicating the configuration-ready mode when the secure storage device is in the configuration-ready mode.
19 . A secure storage device, comprising:
a casing; a memory disposed within the casing and configured to store encrypted data; a physical input device disposed at an outer surface of the casing and configured to receive a security identification code to facilitate unlocking of the secure storage device; and a controller disposed within the casing and coupled to the memory and the physical input device, the controller configured to cause:
determining whether the secure storage device is in a configuration-ready mode, the configuration-ready mode indicating that the secure storage device is allowed to communicate with a host, which is external to the secure storage device, to configure the secure storage device; and
receiving configuration data from the host for configuring the secure storage device when the secure storage device is determined to be in the configuration-ready mode, the secure storage device being prevented from receiving the configuration data from the host when the secure storage device is determined to be not in the configuration-ready mode,
wherein prior to receiving the configuration data from the host, when the secure storage device is in the configuration-ready mode and contains a security identification code, the security identification code contained in the secure storage device is a null security identification code, at least a portion of which is not enterable via the physical input device.
20 . A secure storage device, comprising:
a housing; a memory disposed within the housing and configured to store secure data; a physical input device disposed at an outer surface of the housing and configured to receive a security identification code to facilitate unlocking of the secure storage device; and a controller disposed within the housing and coupled to the memory and the physical input device, the controller configured to cause:
determining that the secure storage device is in a configuration-ready mode, the configuration-ready mode indicating that the secure storage device is allowed to communicate with a host, which is external to the secure storage device, to configure the secure storage device; and
receiving configuration data from the host for configuring the secure storage device when the secure storage device is in the configuration-ready mode, the secure storage device being prevented from receiving the configuration data from the host when the secure storage device is not in the configuration-ready mode,
wherein an indication that the secure storage device is in the configuration-ready mode is contained within the secure storage device.Join the waitlist — get patent alerts
Track US2020117777A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.