Video surveillance systems using out of band key exchange
US-12177293-B2 · Dec 24, 2024 · US
US2015195258A1 · US · A1
| Field | Value |
|---|---|
| Publication number | US-2015195258-A1 |
| Application number | US-201514666601-A |
| Country | US |
| Kind code | A1 |
| Filing date | Mar 24, 2015 |
| Priority date | Sep 28, 2012 |
| Publication date | Jul 9, 2015 |
| Grant date | — |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
An information processing apparatus includes a secure module and a first control circuit provided external to the secure module and configured to input encrypted data to the secure module through a first communication channel. The secure module includes memory, a second control circuit, and an input unit. The memory is configured not to allow the first control circuit to read and write data therefrom and thereto and to store a key for decrypting the encrypted data. The second control circuit is configured to decrypt the encrypted data using the key and output the decrypted data to the first control circuit through the first communication channel. The input unit is configured to store, in the memory, the key input through a second communication channel provided separately from the first communication channel.
Opening claim text (preview).
1 . An information processing apparatus comprising: a secure module; and a first control circuit provided external to the secure module and configured to input encrypted data to the secure module through a first communication channel, wherein the secure module includes: a memory configured not to allow the first control circuit to read and write data therefrom and thereto and to store a key for decrypting the encrypted data, a second control circuit configured to decrypt the encrypted data using the key and output the decrypted data to the first control circuit through the first communication channel, and an input unit configured to store, in the memory, the key input through a second communication channel provided separately from the first communication channel. 2 . The information processing apparatus according to claim 1 , wherein: the encrypted data is a decryption key being encrypted, which is used to decrypt encrypted content data including at least image or audio data; and the first control circuit receives the decryption key obtained by decrypting the encrypted data from the second control circuit and decrypts the encrypted content data using the received decryption key. 3 . The information processing apparatus according to claim 1 , wherein: the memory stores therein an exclusive-use program for executing a process including control of the decryption of the encrypted data; and the second control circuit includes a processor configured to execute the exclusive-use program. 4 . The information processing apparatus according to claim 3 , wherein: the second control circuit receives an encrypted renewal exclusive-use program from the first control circuit, decrypts the encrypted renewal exclusive-use program using the key, and overwrites the exclusive-use program stored in the memory with the decrypted renewal exclusive-use program. 5 . The information processing apparatus according to claim 1 , wherein: the second control circuit has a function of outputting a random number, performs, via the first control circuit, a mutual authentication process using the output random number with a transmission apparatus external to the information processing apparatus, which transmission apparatus transmits the encrypted data, and receives the encrypted data via the first control circuit when the mutual authentication process is successful. 6 . The information processing apparatus according to claim 1 , wherein: the input unit includes an authentication circuit configured to compare authentication information input through the second communication channel with authentication information preliminarily stored in the secure module, and temporarily allow information input from the second communication channel to be output from the input unit to the memory when the input authentication information matches the stored authentication information. 7 . The information processing apparatus according to claim 1 , wherein: the input unit includes a decryption circuit configured to decrypt information input through the second communication channel using input unit-dedicated key information preliminarily stored in the secure module. 8 . A semiconductor apparatus comprising: a secure module; and a first control circuit provided external to the secure module and configured to input encrypted data to the secure module through a first communication channel, wherein the secure module includes: a memory configured not to allow the first control circuit to read data therefrom and write data thereto and to store a key for decrypting the encrypted data, a second control circuit configured to decrypt the encrypted data using the key and output the decrypted data to the first control circuit through the first communication channel, and an input unit configured to store, in the memory, the key input through a second communication channel provided separately from the first communication channel. 9 . The semiconductor apparatus according to claim 8 , wherein: the encrypted data is a decryption key being encrypted, which is used to decrypt encrypted content data including at least image or audio data; and the first control circuit receives the decryption key obtained by decrypting the encrypted data from the second control circuit and decrypts the encrypted content data using the received decryption key. 10 . The semiconductor apparatus according to claim 8 , wherein: the memory stores therein an exclusive-use program for executing a process including control of the decryption of the encrypted data; and the second control circuit includes a processor configured to execute the exclusive-use program. 11 . The semiconductor apparatus according to claim 10 , wherein: the second control circuit receives an encrypted renewal exclusive-use program from the first control circuit, decrypts the encrypted renewal exclusive-use program using the key, and overwrites the exclusive-use program stored in the memory with the decrypted renewal exclusive-use program. 12 . The semiconductor apparatus according to claim 8 , wherein: the second control circuit has a function of outputting a random number, performs, via the first control circuit, a mutual authentication process using the output random number with a transmission apparatus external to the information processing apparatus, which transmission apparatus transmits the encrypted data, and receives the encrypted data via the first control circuit when the mutual authentication process is successful. 13 . The semiconductor apparatus according to claim 8 , wherein: the input unit includes an authentication circuit configured to compare authentication information input through the second communication channel with authentication information preliminarily stored in the secure module, and temporarily allow information input from the second communication channel to be output from the input unit to the memory when the input authentication information matches the stored authentication information. 14 . The semiconductor apparatus according to claim 8 , wherein: the input unit includes a decryption circuit configured to decrypt information input through the second communication channel using input unit-dedicated key information preliminarily stored in the secure module.
for key distribution, e.g. centrally by trusted party (cryptographic mechanisms or cryptographic arrangements for key distribution involving a central third party H04L9/0819) · CPC title
wherein the data content is protected, e.g. by encrypting or encapsulating the payload · CPC title
in cryptographic circuits · CPC title
Apparatus or methods whereby a given sequence of signs, e.g. an intelligible text, is transformed into an unintelligible sequence of signs by transposing the signs or groups of signs or by replacing them by others according to a predetermined system (cryptographic typewriters G09C3/00) · CPC title
Trusted platform modules [TPM] · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.