JP5475475B2

Program execution apparatus, control method, control program and integrated circuit

Abstract

This record has no abstract on file.

Term

Projected expiry 6 January 2030.

  1. Priority
  2. Filed
  3. Granted
  4. Today
  5. Projected expiry

14 claims: 8 independent, 6 dependent

  1. 1
    A program execution device that operates by switching between normal mode and protection mode, and is a falsification detection means that detects falsification of a program that includes an instruction that instructs information security processing using a key.A protective storage means that is accessible only in the protected mode and securely stores the key in association with the program.With normal storage means accessible in normal mode, In the normal mode, when the tampering is not detected, the program operates according to the program, and when the instruction is detected in the program, an execution means for outputting an instruction for information security processing, and in the normal mode, when the instruction is received, Normal security measures that control switching to protected mode, andProtectIn protection modeFrom the protective storage meansA protective security processing means for reading the key, outputting the read key, and controlling the switching to the normal mode is provided, and the normal security processing means is provided in the normal mode.Using the output key as the second keyReceived, received saidThe second key is stored in the normal storage means, and the second key is stored.Perform the information security process usingAndThe tampering detection means further detects tampering with the program second.Further, when the falsification is detected by the second detection, the normal security processing means deletes the second key stored in the normal storage means in the normal mode and switches to the protection mode. Control andFurther, in the protection mode, the protection security processing means executes the information security processing by using the key stored in the protection storage means. A program execution device characterized by the fact that. 通常モードと保護モードとを切り替えて動作するプログラム実行装置であって、 鍵を用いる情報セキュリティ処理を指示する命令を含むプログラムの改竄を検出する改竄検出手段と、保護モードの場合のみアクセス可能であり、前記プログラムに対応付けて鍵を安全に記憶している保護記憶手段と、通常モードの場合にアクセス可能な通常記憶手段と、 通常モードにおいて、前記改竄が検出されない場合に、前記プログラムに従って動作し、前記プログラムの中から前記命令を検出すると情報セキュリティ処理の指示を出力する実行手段と、 通常モードにおいて、前記指示を受けると、保護モードに切り替えるよう制御する通常セキュリティ処理手段と、保護モードにおいて、前記保護記憶手段から前記鍵を読み出し、読み出した鍵を出力し、通常モードに切り替えるよう制御する保護セキュリティ処理手段とを備え、 前記通常セキュリティ処理手段は、通常モードにおいて、出力された前記鍵を第2鍵として受け取り、受け取った前記第2鍵を前記通常記憶手段に記憶し、前記第2鍵を用いて前記情報セキュリティ処理を実行し、前記改竄検出手段は、さらに、前記プログラムの改竄の第2の検出を行い、前記通常セキュリティ処理手段は、さらに、前記第2の検出により、前記改竄が検出された場合に、通常モードにおいて、前記通常記憶手段に記憶している前記第2鍵を削除し、保護モードに切り替えるよう制御し、前記保護セキュリティ処理手段は、さらに、保護モードにおいて、前記保護記憶手段に記憶している前記鍵を用いて、前記情報セキュリティ処理を実行する ことを特徴とするプログラム実行装置。
  2. 5
    The protective security processing means further generates a hash value of the program in the protection mode, and associates the generated hash value with the generated key.For the protective storage meansCharacterized by rememberingClaim 4The program execution device described in. 前記保護セキュリティ処理手段は、さらに、保護モードにおいて、前記プログラムのハッシュ値を生成し、生成したハッシュ値と生成した前記鍵とを対応付けて前記保護記憶手段に記憶する ことを特徴とする請求項4に記載のプログラム実行装置。
  3. 6
    The protective security processing means further, in the protected mode,From the protective storage meansThe hash value is read together with the key, the hash value is output together with the key, and the normal security processing means further, in the normal mode,As the second keyThe hash value is received together with the key, and the hash value is associated with the hash value.No. 2The keyTo the normal storage meansCharacterized by rememberingClaim 5The program execution device described in. 前記保護セキュリティ処理手段は、さらに、保護モードにおいて、前記保護記憶手段から前記鍵とともに前記ハッシュ値を読み出し、前記鍵とともに前記ハッシュ値を出力し、 前記通常セキュリティ処理手段は、さらに、通常モードにおいて、前記第2鍵としての前記鍵とともに前記ハッシュ値を受け取り、前記ハッシュ値に対応付けて前記第2鍵を前記通常記憶手段に記憶する ことを特徴とする請求項5に記載のプログラム実行装置。
  4. 7
    In the normal mode, the normal security processing means further receives an instruction for information security processing from another program, calculates a hash value of the other program, and obtains the calculated hash value.To the normal storage meansJudge whether it matches the stored hash value, and if it does not match,To the normal storage meansI remember the aboveNo. 2Characterized by deleting the keyClaim 6The program execution device described in. 前記通常セキュリティ処理手段は、さらに、通常モードにおいて、他のプログラムから情報セキュリティ処理の指示を受け、当該他のプログラムのハッシュ値を算出し、算出したハッシュ値が前記通常記憶手段に記憶しているハッシュ値と一致しているか否かを判断し、一致していなければ、前記通常記憶手段に記憶している前記第2鍵を削除する ことを特徴とする請求項6に記載のプログラム実行装置。
  5. 8
    The normal security processing means further, when the execution of the program is requested, in the normal mode,To the normal storage meansCorresponds to the programNo. 2Determine if you have the key and hold itIWhen it is determined that the program does not have a key generation instruction, the key generation instruction of the program is output and controlled to switch to the protection mode. Further, when the protection security processing means receives the key generation instruction in the protection mode, the key generation instruction is received.For the protective storage meansWhen determining whether or not the key corresponding to the program is retained and determining that the key is retained,From the protective storage meansIt is characterized in that the key is read, the read key is output, and control is performed so as to switch to the normal mode.Claim 4The program execution device described in. 前記通常セキュリティ処理手段は、さらに、前記プログラムの実行が要求されたとき、通常モードにおいて、前記通常記憶手段に当該プログラムに対応する第2鍵を保持しているか否かを判断し、保持していないと判断する場合に、当該プログラムの鍵の生成指示を出力し、保護モードに切り替えるよう制御し、 前記保護セキュリティ処理手段は、さらに、保護モードにおいて、前記鍵の生成指示を受けると、前記保護記憶手段に当該プログラムに対応する鍵を保持しているか否かを判断し、保持していると判断する場合に、前記保護記憶手段から前記鍵を読み出し、読み出した前記鍵を出力し、通常モードに切り替えるように制御する ことを特徴とする請求項4に記載のプログラム実行装置。
  6. 12
    It is provided with a protected storage means that can be accessed only in the protected mode and that securely stores the key in association with the program and a normal storage means that can be accessed in the normal mode.A control method used in a program execution device that operates by switching between normal mode and protection mode, in which a tampering detection step for detecting tampering of a program including an instruction for instructing information security processing using a key and a tampering detection step in normal mode When the tampering is not detected, the program operates according to the program, and when the instruction is detected in the program, an execution step of outputting an information security processing instruction is performed. In the normal mode, when the instruction is received, the mode is switched to the protection mode. With normal security processing steps to controlProtectIn protection modeFrom the protective storage meansA protective security processing step that reads the key, outputs the read key, and controls switching to the normal mode.Including, In the normal security processing step, in the normal mode,Using the output key as the second keyReceived, received saidThe second key is stored in the normal storage means, and the second key is stored.To execute the information security process usingIn the tampering detection step, a second detection of tampering with the program is further performed.In the normal security processing step, when the tampering is detected by the second detection, in the normal mode, the second key stored in the normal storage means is deleted and the mode is switched to the protection mode. Control andIn the protection security processing step, further, in the protection mode, the information security processing is executed by using the key stored in the protection storage means. A control method characterized by that. 保護モードの場合のみアクセス可能であり、前記プログラムに対応付けて鍵を安全に記憶している保護記憶手段及び通常モードの場合にアクセス可能な通常記憶手段を備え、通常モードと保護モードとを切り替えて動作するプログラム実行装置で用いられる制御方法であって、 鍵を用いる情報セキュリティ処理を指示する命令を含むプログラムの改竄を検出する改竄検出ステップと、 通常モードにおいて、前記改竄が検出されない場合に、前記プログラムに従って動作し、前記プログラムの中から前記命令を検出すると情報セキュリティ処理の指示を出力する実行ステップと、 通常モードにおいて、前記指示を受けると、保護モードに切り替えるよう制御する通常セキュリティ処理ステップと、保護モードにおいて、前記保護記憶手段から前記鍵を読み出し、読み出した鍵を出力し、通常モードに切り替えるよう制御する保護セキュリティ処理ステップとを含み、 前記通常セキュリティ処理ステップにおいて、通常モードにおいて、出力された前記鍵を第2鍵として受け取り、受け取った前記第2鍵を前記通常記憶手段に記憶し、前記第2鍵を用いて前記情報セキュリティ処理を実行し、前記改竄検出ステップにおいて、さらに、前記プログラムの改竄の第2の検出を行い、前記通常セキュリティ処理ステップにおいて、さらに、前記第2の検出により、前記改竄が検出された場合に、通常モードにおいて、前記通常記憶手段に記憶している前記第2鍵を削除し、保護モードに切り替えるよう制御し、前記保護セキュリティ処理ステップにおいて、さらに、保護モードにおいて、前記保護記憶手段に記憶している前記鍵を用いて、前記情報セキュリティ処理を実行する ことを特徴とする制御方法。
  7. 13
    It is provided with a protected storage means that can be accessed only in the protected mode and that securely stores the key in association with the program and a normal storage means that can be accessed in the normal mode.A control program used in a program execution device that operates by switching between normal mode and protection mode and recorded on a computer-readable recording medium, including instructions for instructing the computer to perform information security processing using a key. A tampering detection step that detects tampering with a program, and an execution step that operates according to the program when the tampering is not detected in the normal mode and outputs an instruction for information security processing when the instruction is detected from the program. In the normal mode, when the instruction is received, a normal security processing step that controls to switch to the protection mode andProtectIn protection modeFrom the protective storage meansThe key is read, the read key is output, and a protective security processing step that controls switching to the normal mode is executed. In the normal security processing step, in the normal mode,Using the output key as the second keyReceived, received saidThe second key is stored in the normal storage means, and the second key is stored.To execute the information security process usingIn the tampering detection step, a second detection of tampering with the program is further performed.In the normal security processing step, when the tampering is detected by the second detection, in the normal mode, the second key stored in the normal storage means is deleted and the mode is switched to the protection mode. Control andIn the protection security processing step, further, in the protection mode, the information security processing is executed by using the key stored in the protection storage means. Control program for. 保護モードの場合のみアクセス可能であり、前記プログラムに対応付けて鍵を安全に記憶している保護記憶手段及び通常モードの場合にアクセス可能な通常記憶手段を備え、通常モードと保護モードとを切り替えて動作するプログラム実行装置で用いられ、コンピュータ読み取り可能な記録媒体に記録されている制御プログラムであって、 コンピュータに、 鍵を用いる情報セキュリティ処理を指示する命令を含むプログラムの改竄を検出する改竄検出ステップと、 通常モードにおいて、前記改竄が検出されない場合に、前記プログラムに従って動作し、前記プログラムの中から前記命令を検出すると情報セキュリティ処理の指示を出力する実行ステップと、 通常モードにおいて、前記指示を受けると、保護モードに切り替えるよう制御する通常セキュリティ処理ステップと、保護モードにおいて、前記保護記憶手段から前記鍵を読み出し、読み出した鍵を出力し、通常モードに切り替えるよう制御する保護セキュリティ処理ステップとを実行させ、 前記通常セキュリティ処理ステップにおいて、通常モードにおいて、出力された前記鍵を第2鍵として受け取り、受け取った前記第2鍵を前記通常記憶手段に記憶し、前記第2鍵を用いて前記情報セキュリティ処理を実行し、前記改竄検出ステップにおいて、さらに、前記プログラムの改竄の第2の検出を行い、前記通常セキュリティ処理ステップにおいて、さらに、前記第2の検出により、前記改竄が検出された場合に、通常モードにおいて、前記通常記憶手段に記憶している前記第2鍵を削除し、保護モードに切り替えるよう制御し、前記保護セキュリティ処理ステップにおいて、さらに、保護モードにおいて、前記保護記憶手段に記憶している前記鍵を用いて、前記情報セキュリティ処理を実行する ための制御プログラム。
  8. 14
    An integrated circuit for executing a program that operates by switching between a normal mode and a protection mode, and a tampering detection means for detecting tampering of a program including an instruction for instructing information security processing using a key.A protective storage means that is accessible only in the protected mode and securely stores the key in association with the program.With normal storage means accessible in normal mode, In the normal mode, when the tampering is not detected, the program operates according to the program, and when the instruction is detected in the program, an execution means for outputting an instruction for information security processing, and in the normal mode, when the instruction is received, Normal security measures that control switching to protected mode, andProtectIn protection modeFrom the protective storage meansA protective security processing means for reading the key, outputting the read key, and controlling the switching to the normal mode is provided, and the normal security processing means is provided in the normal mode.Using the output key as the second keyReceived, received saidThe second key is stored in the normal storage means, and the second key is stored.Execute the information security process usingAndThe tampering detection means further detects tampering with the program second.Further, when the falsification is detected by the second detection, the normal security processing means deletes the second key stored in the normal storage means in the normal mode and switches to the protection mode. Control andFurther, in the protection mode, the protection security processing means executes the information security processing by using the key stored in the protection storage means. An integrated circuit characterized by that. 通常モードと保護モードとを切り替えて動作するプログラム実行のための集積回路であって、 鍵を用いる情報セキュリティ処理を指示する命令を含むプログラムの改竄を検出する改竄検出手段と、保護モードの場合のみアクセス可能であり、前記プログラムに対応付けて鍵を安全に記憶している保護記憶手段と、通常モードの場合にアクセス可能な通常記憶手段と、 通常モードにおいて、前記改竄が検出されない場合に、前記プログラムに従って動作し、前記プログラムの中から前記命令を検出すると情報セキュリティ処理の指示を出力する実行手段と、 通常モードにおいて、前記指示を受けると、保護モードに切り替えるよう制御する通常セキュリティ処理手段と、保護モードにおいて、前記保護記憶手段から前記鍵を読み出し、読み出した鍵を出力し、通常モードに切り替えるよう制御する保護セキュリティ処理手段とを備え、 前記通常セキュリティ処理手段は、通常モードにおいて、出力された前記鍵を第2鍵として受け取り、受け取った前記第2鍵を前記通常記憶手段に記憶し、前記第2鍵を用いて前記情報セキュリティ処理を実行し、前記改竄検出手段は、さらに、前記プログラムの改竄の第2の検出を行い、前記通常セキュリティ処理手段は、さらに、前記第2の検出により、前記改竄が検出された場合に、通常モードにおいて、前記通常記憶手段に記憶している前記第2鍵を削除し、保護モードに切り替えるよう制御し、前記保護セキュリティ処理手段は、さらに、保護モードにおいて、前記保護記憶手段に記憶している前記鍵を用いて、前記情報セキュリティ処理を実行する ことを特徴とする集積回路。