Patent · US Expired

Process for storage and use of sensitive information in a security module and the associated security module

US6658566B1 · kind B1 · utility

90Cited by
4References
13Claims
0Family size

Assignee

Inventor

Key dates

Filing dateDec 11, 1998
Grant dateDec 2, 2003
Priority date
Expiry dateDec 11, 2018

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L2209/12
  • WIPO fieldControl
  • WIPO sectorInstruments

Abstract

The invention relates to a process for storing and using sensitive information in a security module and to a security module arranged to implement the process, and protect the sensitive information against fraudulent utilization. The sensitive information ISj is stored in a form {overscore (ISj)} encrypted using a temporary encrypting protection key CPi, whose content varies over time. The sensitive information {overscore (ISj)} is decrypted before being used in a given operation, using a temporary decrypting protection key CPid. Before the contents of the encrypting and decrypting keys are varied, the sensitive information {overscore (ISj)} is decrypted with the current decrypting key, and then it is re-encrypted with the new encryption key to obtain a new encrypted form, different from the previous one.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.