- Patent Title: Portable storage device with internal secure controller that performs self-verification and self-generates encryption key(s) without using host or memory controller and that securely sends encryption keys(s) via side channel
-
Application No.: US16833440Application Date: 2020-03-27
-
Publication No.: US11310048B2Publication Date: 2022-04-19
- Inventor: Paul Cameron Brown , Roy Walter Younggren
- Applicant: APRICORN
- Applicant Address: US CA Poway
- Assignee: APRICORN
- Current Assignee: APRICORN
- Current Assignee Address: US CA Poway
- Agency: Morgan, Lewis & Bockius LLP
- Main IPC: H04L9/32
- IPC: H04L9/32 ; H04L9/08

Abstract:
Highly secure portable storage device may include a security controller, a data transfer controller and a memory controller. The security controller self-verifies, without a host, an access code. After the verification, the security controller may retrieve a concealed encryption key and a transformation key that were previously self-generated by the security controller. The encryption keys are not generated by the host, a user, or the memory controller. The transformation key is sent to the memory controller via a side channel during a first time period. The concealed encryption key is sent to the memory controller via the side channel during a different time period. After extracting an operating encryption key, the memory controller may notify the data transfer controller to initiate an enumeration process with the host. Data transfer from and to the host is performed via interfaces different from the side channel. Other methods and implementations are also described.
Public/Granted literature
Information query