发明名称 Method and apparatus for key provisioning of hardware devices
摘要 Keying materials used for providing security in a platform are securely provisioned both online and offline to devices in a remote platform. The secure provisioning of the keying materials is based on a revision of firmware installed in the platform.
申请公布号 US9043604(B2) 申请公布日期 2015.05.26
申请号 US201313987807 申请日期 2013.09.05
申请人 Intel Corporation 发明人 Brickell Ernest F.;Gueron Shay;Li Jiangtao;Rozas Carlos V.;Nemiroff Daniel;Scarlata Vincent R.;Savagaonkar Uday R.;Johnson Simon P.
分类号 H04L9/08;H04L9/32;G06F21/73;G06F21/60 主分类号 H04L9/08
代理机构 代理人 Cho Lawrence
主权项 1. A method for provisioning a device unique key between a key generation server and a remote hardware device, comprising: generating, by the hardware device, the device unique key, wherein the hardware device stores an asymmetric public-private key pair which is also known to the key generation server; deriving, by the hardware device, a provisioning identifier (ID) and a provisioning key associated with the provisioning ID from the device unique key using one-way functions such that the device unique key cannot be derived from the provisioning ID or the provisioning key; encrypting, by the hardware device, the provisioning ID and provisioning key using the asymmetric public-private key pair; sending the encrypted provisioning ID and provisioning key to the key generation server; decrypting, by the key generation server, the encrypted provisioning ID and provisioning key using the asymmetric public-private key pair and storing the provisioning ID and provisioning key in a provisioning database associated with the key generation sever such that the hardware device is provisioned with the device unique key which is never transmitted outside the hardware device.
地址 Santa Clara CA US