US2020244443A1PendingUtilityA1
Control device and method for securing data
Est. expiryApr 13, 2036(~9.7 yrs left)· nominal 20-yr term from priority
H04L 9/0643G06F 21/79G06F 21/44G06F 21/64H04L 9/00H04L 9/3247G06F 21/85H04L 2209/84H04L 9/004H04L 2209/127G06F 21/78G06F 21/34G06F 21/554
54
PatentIndex Score
0
Cited by
0
References
0
Claims
Abstract
According to various embodiments, a control device is described including an application core including a processor, a memory and a direct memory access controller and a security module coupled to the application core via a computer bus. The direct memory access controller is configured to read data from the memory, generate a hash value for the data and provide the hash value to the security module via the computer bus. The security module is configured to process the hash value.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A control device, comprising:
an application core comprising a processor, a memory and a direct memory access controller; and a security module coupled to the application core via a computer bus; wherein the direct memory access controller is configured to:
read data from the memory,
generate, in response to reading data from the memory, a hash value from the data read from the memory, and
provide the hash value to the security module via the computer bus; and
wherein the security module is configured to process the hash value.
2 . The control device of claim 1 ,
wherein the security module is configured to compare the hash value with a reference hash value.
3 . The control device of claim 1 ,
wherein the security module is configured to verify an integrity of the data based on the hash value.
4 . The control device of claim 1 ,
wherein the direct memory access controller is configured to provide the hash value to the security module via a private channel.
5 . The control device of claim 1 ,
wherein the security module comprises an interface to connect to the computer bus and a firewall arranged between the interface and further components of the security module.
6 . The control device of claim 1 ,
wherein the security module comprises at least one processor and at least one memory.
7 . The control device of claim 1 ,
wherein the security module comprises a memory encryption unit.
8 . The control device of claim 1 ,
wherein the security module comprises one or more cryptographic accelerators.
9 . The control device of claim 1 ,
wherein the control device is a vehicle electronic control unit.
10 . The control device of claim 1 ,
wherein the control device is configured to control a component of a vehicle.
11 . The control device of claim 1 ,
wherein the data are vehicle component control data.
12 . The control device of claim 1 ,
wherein the data are data to be sent to another control device connected to the control device by a second computer bus.
13 . The control device of claim 12 ,
wherein the control device comprises a bridge to connect to the second computer bus.
14 . The control device of claim 12 ,
wherein the second computer bus is an in-vehicle bus.
15 . The control device of claim 1 ,
wherein the security module is a hardware security module.
16 . The control device of claim 1 ,
wherein the security module comprises a countermeasure against a physical attack.
17 . The control device of claim 16 ,
wherein the countermeasure is an active sensor to a detect fault and glitching attacks.
18 . The control device of claim 1 ,
wherein the security module is configured to secure a communication between the memory and the direct memory access controller.
19 . The control device of claim 18 ,
wherein the security module is configured to secure the communication by means of providing at least one cryptographic key for encrypting data exchanged between the memory and the direct memory access controller.
20 . The control device of claim 1 , further comprising:
a chip comprising the application core and the security module.
21 . A method for securing data, the method comprising:
reading, by a direct memory access controller, data from a memory of an application core which comprises the memory, the direct memory access controller and a processor; generating, by the direct memory access controller in response to reading data from the memory, a hash value from the data read from the memory; and providing the hash value to a security module via a computer bus coupling the application core and the security module.Join the waitlist — get patent alerts
Track US2020244443A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.