US Patent Application 18245678. Secure Provisioning with Hardware Verification simplified abstract

From WikiPatents
Jump to navigation Jump to search

Secure Provisioning with Hardware Verification

Organization Name

Google LLC


Inventor(s)

Andrei Tudor Stratan of San Jose CA (US)


Randall R. Spangler of San Jose CA (US)


Secure Provisioning with Hardware Verification - A simplified explanation of the abstract

  • This abstract for appeared for US patent application number 18245678 Titled 'Secure Provisioning with Hardware Verification'

Simplified Explanation

The abstract describes a method for securely provisioning sensitive data to an integrated circuit (IC) device. The provisioning data is divided into fragments and encrypted using cryptographic keys. The IC device generates corresponding cryptographic keys. The encrypted fragments are transferred to the IC device through a secure process that involves sending a seed value, validating integrity data of the IC device, and transferring the encrypted fragment. Once the secure transfer is complete, the IC device can reconstruct the provisioning data using the encrypted fragments and cryptographic keys.


Original Abstract Submitted

The present disclosure describes various aspects of secure provisioning with hardware verification. In some aspects, sensitive data are provisioned to an integrated circuit (IC) device through a provisioning process. Provisioning data for the IC device are divided into a plurality of fragments, and each fragment is encrypted in one of a plurality of cryptographic keys. Corresponding cryptographic keys are generated at the IC device. The encrypted fragments are transferred to the IC device in respective secure transfer operations, each including sending a seed value to the IC device, validating integrity data configured to characterize integrated circuitry within a portion of the IC device specified by the seed value, and transferring the encrypted fragment to the IC device in response to validating the integrity data. In response to completing the secure transfer operation, the IC device may reconstruct the provisioning data from the encrypted fragments and corresponding cryptographic keys.