Hardware Security Module Chip Activation

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Chip manufacturers face challenges in securing chips during shipment, as they can be altered or cloned, leading to security risks and unauthorized access.

Innovation Solution

The implementation of a Hardware Security Module (HSM) that includes processor circuitry, activation certificate generators, data certificate generators, and key generators to secure and authenticate chips by generating unique IDs, encryption keys, and certificates, ensuring secure activation and authentication processes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If chips are provided in an unlocked state during shipment, then ease of manufacture and adaptability are improved, but security and reliability deteriorate due to potential altering and cloning

Engineering Contradiction:
Improvechip adaptabilityVSAvoidchip security
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent applies preliminary action by pre-configuring chips with unique identification values and cryptographic key pairs during manufacturing, before the chips are shipped to customers. This preliminary setup includes generating public and private keys, and creating digital certificates that will later enable secure activation. The chips are prepared in advance with the necessary security infrastructure, allowing them to be securely activated later through a controlled process that prevents unauthorized use during transit.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If chips are secured during shipment through activation processes, then security and reliability are improved, but device complexity and manufacturing difficulty increase

Engineering Contradiction:
Improvechip securityVSAvoidactivation process complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces an intermediary activation server that mediates between chip manufacturers and end users. This server holds the master public key and facilitates the activation process by verifying digital certificates and distributing activation information. The intermediary simplifies the overall system by centralizing the complex cryptographic verification processes, allowing chips to remain relatively simple while still achieving high security through the mediating server's coordination of the activation process.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS9590810B2Device security
Publication Date: 2017.03.07 INFINEON TECHNOLOGIES AG
  • US9590810B2 patent drawing
  • US9590810B2 patent drawing
  • US9590810B2 patent drawing

AI summary

Methods for securing and activating chips and/or devices that can utilize a hardware security module (HSM). One or more of the methods can include generating one or more digital certificates based on an identification (ID) associated with a device, generating one or more activation certificates and one or more modified activation certificate based on one or more encryption keys, and generating one or more chip data certificates and/or one or more modified chip data certificates.