Securely routing sensor data from sensors to a trusted execution environment (tee)
US-2017180386-A1 · Jun 22, 2017 · US
US10878068B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-10878068-B2 |
| Application number | US-201715667828-A |
| Country | US |
| Kind code | B2 |
| Filing date | Aug 3, 2017 |
| Priority date | Aug 3, 2016 |
| Publication date | Dec 29, 2020 |
| Grant date | Dec 29, 2020 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
An authentication system, comprising: one or more inputs, for receiving biometric input signals from a user; a routing module, configured to selectively route the biometric input signals from the one or more inputs to one or more of a plurality of components, the plurality of components including a biometric authentication module, for processing the biometric input signals and generating an authentication result; and a security module, for receiving a control instruction for the routing module, determining whether or not the control instruction complies with one or more rules, and controlling the routing module based on the control instruction responsive to a determination that the control instruction complies with the one or more rules.
Opening claim text (preview).
The invention claimed is: 1. An authentication system, comprising: one or more inputs, for receiving biometric input signals from a user; a routing module, configured to selectively route the biometric input signals from the one or more inputs to one or more of a plurality of components based on values stored in one or more control registers, the plurality of components including a biometric authentication module, for processing the biometric input signals and generating an authentication result; and a security module, for receiving a control instruction for the routing module, the control instruction mandating one or more changes to the values stored in the one or more control registers, the security module being further for determining whether or not the control instruction complies with one or more rules, and controlling the routing module based on the control instruction responsive to a determination that the control instruction complies with the one or more rules. 2. The authentication system as claimed in claim 1 , wherein the values stored in the one or more registers specify one or more inputs of the routing module at which the biometric input signals are received, and one or more respective outputs of the routing module on which the biometric input signals are output. 3. The authentication system as claimed in claim 1 , wherein the security module is configured to control the routing module by writing values to the one or more registers responsive to a determination that the control instruction complies with the one or more rules. 4. The authentication system as claimed in claim 3 , wherein the security module has sole write access to the one or more registers. 5. The authentication system as claimed in claim 1 , wherein the authentication system is selectively operable in a plurality of use cases, with each use case comprising a respective configuration of inputs and outputs in the routing module. 6. The authentication system as claimed in claim 5 , wherein the control instruction relates to the one or more use cases operative in the authentication system. 7. The authentication system as claimed in claim 6 , wherein the authentication is operative in one or more first use cases, and wherein the control instruction comprises an instruction to transition to one or more second use cases. 8. The authentication system as claimed in claim 5 , wherein the one or more rules comprise a list of one or more combinations of two or more use cases in which the authentication system is allowed to operate concurrently, or one or more combinations of two or more use cases in which the authentication system is prohibited from operating concurrently. 9. The authentication system as claimed in claim 5 , wherein the one or more rules comprise one or more allowed use-case transitions, or one or more prohibited use-case transitions. 10. The authentication system as claimed in claim 1 , wherein the plurality of components further comprises an interface for outputting the biometric input signals from the authentication system. 11. The authentication system as claimed in claim 1 , wherein the security module is operable in a plurality of security levels. 12. The authentication system as claimed in claim 11 , wherein each security level is associated with a different set of one or more rules for application by the security module. 13. The authentication system as claimed in claim 12 , wherein one of the one or more rules for a first security level prohibits the routing of biometric input signals, or any signals based thereon, to any component other than the biometric authentication module. 14. The authentication system as claimed in claim 12 , wherein one of the one or more rules for a first security level prohibits the routing of any signals other than the biometric input signals, or signals based thereon, to the biometric authentication module. 15. The authentication system as claimed in claim 11 , wherein the authentication result is configured to contain an indication of the prevailing security level when the biometric input signals were processed by the biometric authentication module. 16. The authentication system as claimed in claim 1 , wherein the biometric input signals are biometric voice input signals. 17. The authentication system as claimed in claim 1 , wherein the biometric authentication module is configured to compare one or more features of the biometric input signals to biometric data unique to the user, stored in memory. 18. The authentication system as claimed in claim 1 , wherein the authentication system is provided on a single integrated circuit. 19. The authentication system as claimed in claim 18 , wherein the biometric authentication module is also provided on the single integrated circuit. 20. An electronic device comprising an authentication system as claimed in claim 1 . 21. The electronic device as claimed in claim 20 , further comprising an application processor in communication with the authentication system. 22. The electronic device as claimed in claim 21 , wherein the control instruction is received from the application processor. 23. The electronic device as claimed in claim 20 , further comprising one or more input devices, coupled to the one or more inputs, for generating the biometric input signals. 24. The electronic device as claimed in claim 23 , wherein the one or more input devices comprise one or more microphones. 25. The electronic device as claimed in claim 20 , wherein the electronic device is at least one of: a portable device; a battery-powered device; a mobile telephone; an audio player; a video player; a personal digital assistant; a wearable device; a mobile computing platform; a laptop computer; a tablet computer; a games device; a remote control device; a toy; a domestic appliance or controller thereof; a domestic temperature or lighting control system; a security system; and a robot. 26. A speaker recognition processor integrated circuit, comprising: one or more signal inputs for receiving microphone input signals; one or more interfaces for outputting audio data; a biometric authentication module; a routing module operable to route said microphone input signals to at least one of said biometric authentication module and said one or more interfaces according to the contents of a control register; a set of storage registers containing respective predetermined control register contents for each of a plurality of use cases; and a control interface for receiving an indication of one or more requested use cases; and a controller, coupled to the control interface, the set of storage registers and the control register, for loading control register settings corresponding to the one or more requested use cases, wherein the controller is operable in a mode whereby the routing module is prohibited from routing any signals other than the microphone input signals to said biometric authentication module. 27. The speaker recognition processor according to claim 26 , wherein the controller is operable in a mode whereby the routing module is prohibited from routing said microphone input signals to said one or more interfaces. 28. An electronic device, comprising a speaker recognition processor integrated circuit as set out in claim 26 . 29. The electronic device according to claim 28 , wherein the electronic device
Protecting input, output or interconnection devices · CPC title
using biometric data, e.g. fingerprints, iris scans or voiceprints · CPC title
the user being prompted to utter a password or a predefined phrase · CPC title
using biometrical features, e.g. fingerprint, retina-scan (cryptographic mechanisms or cryptographic arrangements for entity authentication using biological data H04L9/3231) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.