US20150074427A1

System and method to secure on-board bus transactions

Claim Score by NHIP

Read claim 11, the broadest

Abstract

A technique for securing on-board bus transactions in a computing device is discussed. A shared key is generated and then programmed into the read-only non-volatile write-once storage of two on-board components. The shared key may be generated during the manufacturing process. Once complete, all transactions between the two on-board components are encrypted by the components using the shared key without exposing the key on any external bus.

US20150074427A1, drawing sheet 1
Sheet 1 of 6

Term

8 yearsto projected expiry

Projected expiry 10 September 2034, counted from filing; an application has no term until it is granted.

  1. Priority
  2. Filed
  3. Published
  4. Today
  5. Projected expiry

22 claims: 3 independent, 19 dependent

  1. 1
    A computing device-implemented method for securing on-board bus transactions:retrieving a shared key from a write-once non-volatile storage of a first on-board component of a computing device;encrypting data at the first on-board component using the retrieved key;transmitting the encrypted data across a bus in the computing device to a second on-board component of the computing device;retrieving a shared key from a write-once non-volatile storage of the second on-board component;and decrypting the encrypted data using the shared key retrieved from the write-once non-volatile storage of the second on-board component, wherein the first on-board component and second on-board component each include a crypto-engine capable of performing encryption and decryption operations.
  2. 11
    Broadest claimClaim Score 63, broad(NHIP)A computing system providing secure on-board bus transactions, comprising:a peripheral controller, the peripheral controller including: a write-once non-volatile storage, the write-once non-volatile storage holding a shared key, and a peripheral bus host controller that includes a crypto-engine capable of performing encryption and decryption operations encrypting or decrypting data using the shared key held in the write-once non-volatile storage of the peripheral controller;a peripheral bus;and a peripheral in communication over the peripheral bus with the peripheral controller, the peripheral including: a write-once non-volatile storage, the write-once non-volatile storage holding the shared key, and a crypto-engine capable of performing encryption and decryption operations encrypting or decrypting data using the shared key held in the write-once non-volatile storage of the peripheral.
  3. 15
    A non-transitory medium, holding computer-executable instructions for securing on-board bus transactions on a computing device, the instructions when executed causing the computing device to:retrieve a shared key from a write-once non-volatile storage of a first on-board component of the computing device;encrypt data at the first on-board component using the retrieved key;transmit the encrypted data across a bus in the computing device to a second on-board component of the computing device;retrieve a shared key from a write-once non-volatile storage of the second on-board component;and decrypt the encrypted data using the shared key retrieved from the write-once non-volatile storage of the second on-board component, wherein the first on-board component and second on-board component each include a crypto-engine capable of performing encryption and decryption operations.