Logic Circuit Digital Signature Verification for OEM Authenticity
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Unauthorized third parties attempt to reverse engineer or counterfeit logic circuits of Original Equipment Manufacturers (OEMs) by connecting non-genuine components to host apparatus, compromising the authenticity and integrity of the communication systems.
Innovation Solution
Implementing a digital signature scheme using a private key to authenticate logic circuits, where the digital signature is generated and stored on replaceable print apparatus components, and verified by the host using a corresponding public key, ensuring only genuine components are accepted.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If digital signature verification is implemented for logic circuits, then the reliability and authenticity of components are improved, but the device complexity increases due to additional verification logic and cryptographic operations
Solution Approach 1:
The patent uses digital signatures that copy cryptographic verification data into the logic circuit's memory structure. The signature verification process copies public key information and signed data structures into the host's verification memory, allowing authentication without complex hardware modifications to the logic circuit itself.
Solution Approach 2:
The patent introduces an intermediary verification process where the logic circuit provides signed data structures containing both identification information and capability data. The host apparatus acts as the intermediary verifier, using cryptographic operations to validate the signature before accepting the component, thereby centralizing complexity in the host rather than the component.
2Reliability
If comprehensive data is signed to ensure component integrity, then the reliability of data authentication is improved, but the loss of time increases due to extended verification processes
Solution Approach 1:
The patent segments the data to be signed into distinct components: identification information (device ID, version numbers) and capability data (functional attributes). This segmentation allows the verification process to handle different data types systematically and can enable selective verification of critical fields first, reducing overall verification time while maintaining comprehensive integrity checking.
Solution Approach 2:
The logic circuit performs preliminary actions by pre-storing signed data structures in its memory during manufacturing or initialization. The signature verification can then proceed by retrieving and validating these pre-signed structures rather than performing complete authentication from scratch, reducing verification time during component operation.
3Reliability
If multiple data blocks are signed to cover all critical information, then the reliability of authentication is improved, but the device complexity increases due to multiple signature management requirements
Solution Approach 1:
The patent merges multiple data blocks into a unified signed data structure where identification information and capability data are combined in a single signature verification process. This consolidation reduces the number of separate signature management operations required, as the host can verify all critical information through one comprehensive authentication mechanism rather than multiple separate checks.
Data Source
AI summary
A logic circuitry package includes an interface to communicate with a controller and a logic circuit. The logic circuit includes a memory arrangement storing indicated data over which a manufacturing digital signature is computed, a certificate for the controller to verify the manufacturing digital signature, and manufacturing attribute data. The manufacturing attribute data includes at least one indication indicating the indicated data and the manufacturing digital signature. The logic circuit is configured to transmit, to the controller, the manufacturing attribute data in response to at least one first request from the controller. The logic circuit is configured to transmit, to the controller, the certificate and the indicated data in response to at least one second request from the controller.


