{"id":1985,"date":"2021-02-02T14:49:00","date_gmt":"2021-02-02T14:49:00","guid":{"rendered":"https:\/\/www.pufsecurity.com\/?p=1985"},"modified":"2023-01-03T06:15:43","modified_gmt":"2023-01-03T06:15:43","slug":"pufsecurity-crypto-co-processor-pufiot-passed-nist-cavp-certification","status":"publish","type":"post","link":"https:\/\/www.pufsecurity.com\/zh-hans\/pufsecurity-crypto-co-processor-pufiot-passed-nist-cavp-certification\/","title":{"rendered":"PUFsecurity Crypto Coprocessor PUFcc Passed NIST CAVP Certification"},"content":{"rendered":"\n<p style=\"font-size:16px\">PUFsecurity\u2019s\u00a0chip security coprocessor IP,\u00a0PUFiot, has passed the CAVP\u00a0certification. The certified\u00a0security algorithms include\u00a0AES, CMAC, DRBG, key wrap, SHA2, HMAC, KDF, and ECDSA.\u00a0\u00a0<\/p>\n\n\n\n<p style=\"font-size:16px\">This good news means\u00a0that\u00a0PUFcc\u00a0officially qualifies under international security standards to further meet the security needs of various application scenarios; a guarantee for chips and systems that use\u00a0PUFcc.\u00a0\u00a0<\/p>\n\n\n\n<p style=\"font-size:16px\">The&nbsp;Cryptographic Algorithm Validation Program (CAVP)&nbsp;is&nbsp;established&nbsp;by the National Institute of Standards and Technology (NIST) for technical verification. Results are published by the verification unit on the <a href=\"https:\/\/csrc.nist.gov\/projects\/cryptographic-algorithm-validation-program\/details?validation=33587\" data-type=\"URL\" data-id=\"https:\/\/csrc.nist.gov\/projects\/cryptographic-algorithm-validation-program\/details?validation=33587\" target=\"_blank\" rel=\"noreferrer noopener\">NIST official website<\/a>.&nbsp;&nbsp;&nbsp;<\/p>\n\n\n\n<p style=\"font-size:16px\">NIST&nbsp;developed&nbsp;over 1300 standard reference specifications for industry, academia, government, and other institutions. Their purpose is to &#8220;Promote U.S. innovation and industrial competitiveness by advancing measurement science, standards, and technology in ways that enhance economic security and improve our quality of life.&#8221;&nbsp;&nbsp;<\/p>\n\n\n\n<p style=\"font-size:16px\">The rapid increase of AI and IoT applications&nbsp;is&nbsp;driving the demand for self-driving technology and 5G networks. Because of this, what companies need to pay attention to when choosing security solutions is whether they comply with international safety standards and regulations for different application scenarios.&nbsp;<\/p>\n\n\n\n<p style=\"font-size:16px\">The CAVP-certified\u00a0PUFcc\u00a0provides the following features:\u00a0<\/p>\n\n\n\n<ol class=\"wp-block-list\" style=\"font-size:16px\"><li>Secure boundary for&nbsp;security&nbsp;operation,&nbsp;secure&nbsp;storage, and anti-tampering protection of confidential information.&nbsp;<\/li><\/ol>\n\n\n\n<ol class=\"wp-block-list\" start=\"2\" style=\"font-size:16px\"><li>A basis for&nbsp;inborn&nbsp;unique ID or&nbsp;secret&nbsp;keys&nbsp;generated&nbsp;in hardware chips using the&nbsp;high-security&nbsp;PUF&nbsp;&nbsp;<\/li><\/ol>\n\n\n\n<ol class=\"wp-block-list\" start=\"3\" style=\"font-size:16px\"><li>Anti-tampering secure storage OTP function&nbsp;for&nbsp;keys&nbsp;and&nbsp;sensitive information&nbsp;using&nbsp;PUF&nbsp;<\/li><\/ol>\n\n\n\n<ol class=\"wp-block-list\" start=\"4\" style=\"font-size:16px\"><li>Analog\/digital tamper-proof protection mechanism&nbsp;<\/li><\/ol>\n\n\n\n<ol class=\"wp-block-list\" start=\"5\" style=\"font-size:16px\"><li>Balanced&nbsp;performance and area&nbsp;ratio&nbsp;<\/li><\/ol>\n\n\n\n<ol class=\"wp-block-list\" start=\"6\" style=\"font-size:16px\"><li>Flexible&nbsp;cryptographic&nbsp;algorithm configuration&nbsp;<\/li><\/ol>\n\n\n\n<ol class=\"wp-block-list\" start=\"7\" style=\"font-size:16px\"><li>Correct and valid cryptographic algorithms&nbsp;that have&nbsp;passed&nbsp;CAVP&nbsp;&nbsp;<\/li><\/ol>\n\n\n\n<ol class=\"wp-block-list\" start=\"8\" style=\"font-size:16px\"><li>Support&nbsp;for&nbsp;APB\/AXI4 and&nbsp;any&nbsp;other&nbsp;AMBA&nbsp;interfaces and built-in direct&nbsp;memory&nbsp;access (DMA)&nbsp;unit&nbsp;<\/li><\/ol>\n\n\n\n<p style=\"font-size:16px\">In addition to the security algorithm passing the CAVP certification, current ongoing processes also include&nbsp;the PSA Lv2&nbsp;and&nbsp;the certifications for the design of anti-physical attack&nbsp;which&nbsp;are&nbsp;established by&nbsp;the&nbsp;new-generation security standard PSA (Platform Security Architecture)&nbsp;&nbsp;<\/p>\n\n\n\n<p style=\"font-size:16px\">The PSA certification mainly provides a security framework and a multi-level evaluation scheme. The certification covers the security software&nbsp;of&nbsp;connected device and uses the root of trust as the&nbsp;basis of hardware trust.&nbsp;&nbsp;<\/p>\n\n\n\n<p style=\"font-size:16px\">We appointed&nbsp;Riscure&nbsp;to conduct product vulnerability analysis (Vulnerability Analysis) for our&nbsp;tamper proof&nbsp;design.&nbsp;This analysis ensures that the product design can resist physical attacks and help customers protect confidential information.&nbsp;<\/p>\n\n\n\n<p style=\"font-size:16px\">By combining the CAVP-certified security algorithm, PSA chip security architecture, and anti-tampering design,&nbsp;PUFsecurity\u2019s&nbsp;solutions will help&nbsp;chips and&nbsp;devices&nbsp;with&nbsp;high-security operation protection in different application scenarios.&nbsp;<\/p>\n\n\n\n<p><\/p>\n\n\n\n<hr class=\"wp-block-separator\"\/>\n\n\n\n<p class=\"has-text-align-left\" style=\"font-size:16px\"><strong>\u71b5\u78bc\u79d1\u6280\u6676\u7247\u5b89\u5168\u8655\u7406\u5668PUFcc\u901a\u904eNIST CAVP\u9a57\u8b49<\/strong>\u00a0<\/p>\n\n\n\n<p style=\"font-size:16px\">\u672c\u6b21\u71b5\u78bc\u79d1\u6280\u6676\u7247\u5b89\u5168\u8655\u7406\u5668IP&#8211;PUFcc\u9001\u9a57\u901a\u904eCAVP\u7684\u5b89\u5168\u6f14\u7b97\u6cd5\u5305\u542b\uff1aAES\u3001CMAC\u3001DRBG\u3001key wrap\u3001SHA2\u3001HMAC\u3001KDF\u548cECDSA\u3002\u00a0<\/p>\n\n\n\n<p style=\"font-size:16px\">CAVP\u9a57\u8b49\u901a\u904e\u610f\u5473\u8457PUFcc\u80fd\u5920\u7b26\u5408\u570b\u969b\u5b89\u5168\u6a19\u6e96\u9032\u4e00\u6b65\u6eff\u8db3\u5404\u7a2e\u61c9\u7528\u5834\u666f\u4e0b\u7684\u5b89\u5168\u9700\u6c42\uff0c\u5c0d\u4f7f\u7528PUFcc\u77fd\u667a\u8ca1\u7684\u6676\u7247\u8207\u7cfb\u7d71\u4f7f\u7528\u8005\u4f86\u8aaa\u662f\u4e00\u5927\u5b89\u5fc3\u4fdd\u969c\u3002\u00a0<\/p>\n\n\n\n<p style=\"font-size:16px\">Cryptographic Algorithm Validation Program&nbsp;\uff08CAVP\uff09\u662f\u7f8e\u570b\u570b\u5bb6\u6a19\u6e96\u66a8\u6280\u8853\u7814\u7a76\u9662\uff08NIST\uff09\u5bc6\u78bc\u6f14\u7b97\u6cd5\u8a8d\u8b49\u8a08\u756b\u8207\u6280\u8853\u9a57\u8b49\uff0c\u4e26\u7531\u5be9\u9a57\u55ae\u4f4d\u5728<a href=\"https:\/\/csrc.nist.gov\/projects\/cryptographic-algorithm-validation-program\" target=\"_blank\" rel=\"noreferrer noopener\">NIST\u5b98\u7db2<\/a>\u4e0a\u516c\u958b\u767c\u5e03\u9a57\u8b49\u7d50\u679c\u3002&nbsp;<\/p>\n\n\n\n<p style=\"font-size:16px\">NIST\u70ba\u7522\u696d\u754c\u3001\u5b78\u8853\u754c\u3001\u653f\u5e9c\u53ca\u5176\u4ed6\u7528\u6236\u63d0\u4f9b\u4e86\u8d85\u904e1300\u7a2e\u6a19\u6e96\u53c3\u8003\u898f\u7bc4\u3002\u5176\u5b97\u65e8\u662f&#8221;Promote U.S. innovation and industrial competitiveness by advancing measurement science, standards, and technology in ways that enhance economic security and improve our quality of life.&#8221;&nbsp;<\/p>\n\n\n\n<p style=\"font-size:16px\">\u96a8\u8457AI\u8207IoT\u7684\u61c9\u7528\u6fc0\u589e\uff0c\u5e36\u52d5\u8eca\u8f1b\u81ea\u99d5\u6280\u8853\u82075G\u9ad8\u901f\u884c\u52d5\u7db2\u7d61\u7684\u9700\u6c42\uff0c\u4f01\u696d\u5728\u9078\u64c7\u76f8\u61c9\u7684\u5b89\u5168\u89e3\u6c7a\u65b9\u6848\u6642\uff0c\u9700\u8981\u7559\u610f\u7684\u662f\u5404\u5bb6\u89e3\u6c7a\u65b9\u6848\u5728\u4e0d\u540c\u61c9\u7528\u5834\u666f\u4e0b\u7684\u8edf\u786c\u9ad4\u5b89\u5168\u662f\u5426\u7b26\u5408\u5b89\u5168\u76f8\u95dc\u570b\u969b\u6a19\u6e96\u8a8d\u8b49\u8207\u898f\u7bc4\u3002&nbsp;<\/p>\n\n\n\n<p style=\"font-size:16px\">\u672c\u6b21\u901a\u904eCAVP\u7684\u5b89\u5168\u6f14\u7b97\u6cd5\u9a57\u8b49\u7684PUFcc\u63d0\u4f9b\u4ee5\u4e0b\u7279\u8272\u8207\u529f\u80fd\uff1a\u00a0<\/p>\n\n\n\n<ol class=\"wp-block-list\" style=\"font-size:16px\"><li>\u5b89\u5168\u908a\u754c(Secure boundary)\u63d0\u4f9b\u5b89\u5168\u904b\u884c\u3001\u5b89\u5168\u5b58\u5132\u8207\u6a5f\u5bc6\u8a0a\u606f\u9632\u7be1\u6539\u4fdd\u8b77&nbsp;<\/li><\/ol>\n\n\n\n<ol class=\"wp-block-list\" start=\"2\" style=\"font-size:16px\"><li>\u904b\u7528\u9ad8\u5b89\u5168\u6027\u7684PUF(Physical Unclonable Function)\u63d0\u4f9b\u786c\u9ad4\u6676\u7247\u81ea\u751f\u5b89\u5168\u8b58\u5225\u78bc(unique ID)\u6216\u5bc6\u9470\u7684\u57fa\u790e&nbsp;<\/li><\/ol>\n\n\n\n<ol class=\"wp-block-list\" start=\"3\" style=\"font-size:16px\"><li>\u904b\u7528PUF\u9054\u6210\u5bc6\u9470\/\u654f\u611f\u8a0a\u606f\u7684anti-tampering\u5b89\u5168\u5b58\u5132(Secure Storage OTP)\u529f\u80fd&nbsp;<\/li><\/ol>\n\n\n\n<ol class=\"wp-block-list\" start=\"4\" style=\"font-size:16px\"><li>\u985e\u6bd4\/\u6578\u4f4d\u9632\u7be1\u6539\u4fdd\u8b77\u6a5f\u5236&nbsp;<\/li><\/ol>\n\n\n\n<ol class=\"wp-block-list\" start=\"5\" style=\"font-size:16px\"><li>\u5747\u8861\u7684\u6027\u80fd\u8207\u9762\u7a4d\u6bd4&nbsp;<\/li><\/ol>\n\n\n\n<ol class=\"wp-block-list\" start=\"6\" style=\"font-size:16px\"><li>\u5f48\u6027\u7684\u5bc6\u78bc\u7b97\u6cd5\u914d\u7f6e&nbsp;<\/li><\/ol>\n\n\n\n<ol class=\"wp-block-list\" start=\"7\" style=\"font-size:16px\"><li>\u5bc6\u78bc\u7b97\u6cd5\u5747\u901a\u904eCAVP\u9a57\u8b49\u7b97\u6cd5\u6b63\u78ba\u6027\u8207\u6709\u6548\u6027&nbsp;<\/li><\/ol>\n\n\n\n<ol class=\"wp-block-list\" start=\"8\" style=\"font-size:16px\"><li>\u652f\u6301APB\/AXI4\u7b49\u4ecb\u9762\u4e26\u5167\u7f6e\u8a18\u61b6\u9ad4\u76f4\u63a5\u5b58\u53d6(DMA)&nbsp;<\/li><\/ol>\n\n\n\n<p style=\"font-size:16px\">\u9664\u4e86\u5b89\u5168\u6f14\u7b97\u6cd5\u901a\u904eCAVP\u8a8d\u8b49\u4e4b\u5916\uff0c\u76ee\u524d\u9032\u884c\u4e2d\u7684\u8a8d\u8b49\u8a08\u5283\u9084\u5305\u542b\u57fa\u65bc\u7269\u806f\u7db2\u88dd\u7f6e\u5b89\u5168\u70ba\u4e3b\u7684\u65b0\u4e00\u4ee3\u5b89\u5168\u6a19\u6e96PSA (platform security architecture)\u6240\u63d0\u4f9bPSA Lv2 \u7684\u9a57\u8b49\u8a08\u5283\u4ee5\u53ca\u6297\u653b\u64ca\u8a2d\u8a08\u7684\u8a8d\u8b49\u3002&nbsp;<\/p>\n\n\n\n<p style=\"font-size:16px\">PSA\u8a8d\u8b49\u4e3b\u8981\u63d0\u4f9b\u4e00\u500b\u5b89\u5168\u6846\u67b6\u548c\u591a\u7d1a\u8a55\u4f30\u65b9\u6848\uff0c\u8a72\u8a8d\u8b49\u6db5\u84cb\u7531\u9023\u63a5\u8a2d\u5099\u7684\u5b89\u5168\u8edf\u9ad4\u9a45\u52d5\uff0c\u4e26\u4ee5\u4fe1\u4efb\u6839\u70ba\u786c\u9ad4\u4fe1\u4efb\u529f\u80fd\u3002&nbsp;&nbsp;<\/p>\n\n\n\n<p style=\"font-size:16px\">\u6297\u653b\u64ca\u8a2d\u8a08\u8a8d\u8b49\u5247\u59d4\u8a17Riscure\u9032\u884c\u7522\u54c1\u6f0f\u6d1e\u5206\u6790\u6aa2\u6e2c\uff08Vulnerability Analysis\uff09\uff0c\u4ee5\u78ba\u4fdd\u7522\u54c1\u6297\u653b\u64ca\u8a2d\u8a08\u80fd\u62b5\u6297\u60e1\u610f\u653b\u64ca\uff0c\u5e6b\u52a9\u5ba2\u6236\u4fdd\u8b77\u6a5f\u5bc6\u8cc7\u8a0a\u3002&nbsp;<\/p>\n\n\n\n<p style=\"font-size:16px\">\u7d50\u5408CAVP\u8a8d\u8b49\u904e\u7684\u5b89\u5168\u6f14\u7b97\u6cd5\u3001PSA\u6676\u7247\u5b89\u5168\u67b6\u69cb\u3001\u6297\u7269\u7406\u653b\u64ca\u8a2d\u8a08 (anti-tampering)\uff0c\u71b5\u78bc\u79d1\u6280\u7684\u5b89\u5168\u89e3\u6c7a\u65b9\u6848\u5c07\u5728\u4e0d\u540c\u61c9\u7528\u5834\u666f\u5e6b\u52a9\u5ba2\u6236\u7522\u54c1\u63d0\u4f9b\u9ad8\u5b89\u5168\u6027\u7684\u904b\u4f5c\u8207\u9632\u8b77\u6a5f\u5236\u3002&nbsp;&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The certified\u00a0security algorithms include\u00a0AES, CMAC, DRBG, key wrap, SHA2, HMAC, KDF, and ECDSA.\u00a0\u00a0<\/p>\n","protected":false},"author":3,"featured_media":1874,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[1],"tags":[217],"class_list":["post-1985","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized","tag-crypto-coprocessor"],"acf":[],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/www.pufsecurity.com\/zh-hans\/wp-json\/wp\/v2\/posts\/1985"}],"collection":[{"href":"https:\/\/www.pufsecurity.com\/zh-hans\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.pufsecurity.com\/zh-hans\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.pufsecurity.com\/zh-hans\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.pufsecurity.com\/zh-hans\/wp-json\/wp\/v2\/comments?post=1985"}],"version-history":[{"count":4,"href":"https:\/\/www.pufsecurity.com\/zh-hans\/wp-json\/wp\/v2\/posts\/1985\/revisions"}],"predecessor-version":[{"id":4697,"href":"https:\/\/www.pufsecurity.com\/zh-hans\/wp-json\/wp\/v2\/posts\/1985\/revisions\/4697"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.pufsecurity.com\/zh-hans\/wp-json\/wp\/v2\/media\/1874"}],"wp:attachment":[{"href":"https:\/\/www.pufsecurity.com\/zh-hans\/wp-json\/wp\/v2\/media?parent=1985"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.pufsecurity.com\/zh-hans\/wp-json\/wp\/v2\/categories?post=1985"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.pufsecurity.com\/zh-hans\/wp-json\/wp\/v2\/tags?post=1985"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}