ABRIDGED DATA SHEET
Evaluation Kit
Available
Design
Resources
Tools
and Models
Support
Click here to ask an associate for production status of specific part numbers.
DeepCover Secure Authenticator with
1-Wire SHA-256 and 2Kb User EEPROM
DS28E22
General Description
DeepCover embedded security solutions cloak sensitive
Features
● Symmetric Key-Based Bidirectional Secure
M
data under multiple layers of advanced physical security to
provide the most secure key storage possible.
Authentication Model Based on SHA-256
● Dedicated Hardware-Accelerated SHA Engine for
The DeepCover Secure Authenticator (DS28E22) com-
bines crypto-strong, bidirectional, secure challenge-and-
response authentication functionality with an implemen-
tation based on the FIPS 180-3-specified Secure Hash
Algorithm (SHA-256). A 2Kb user-programmable EEPROM
array provides nonvolatile storage of application data and
additional protected memory holds a read-protected secret
for SHA-256 operations and settings for user memory
control. Each device has its own guaranteed unique 64-bit
ROM identification number (ROM ID) that is factory pro-
grammed into the chip. This unique ROM ID is used as a
fundamental input parameter for cryptographic operations
and also serves as an electronic serial number within
the application. A bidirectional security model enables
two-way authentication between a host system and slave-
embedded DS28E22. Slave-to-host authentication is used
by a host system to securely validate that an attached or
embedded DS28E22 is authentic. Host-to-slave authenti-
cation is used to protect DS28E22 user memory from being
modified by a nonauthentic host. The SHA-256 message
authentication code (MAC), which the DS28E22 gener-
ates, is computed from data in the user memory, an on-
chip secret, a host random challenge, and the 64-bit ROM
ID. The DS28E22 communicates over the single-contact
Generating SHA-256 MACs
● Strong Authentication with a High Bit Count, User-
Programmable Secret, and Input Challenge
● 2048 Bits of User EEPROM Partitioned Into 8 Pages
of 256 Bits
● User-Programmable and Irreversible EEPROM
Protection Modes Including Authentication, Write and
Read Protect, and OTP/EPROM Emulation
● Unique, Factory-Programmed 64-Bit Identification
Number
● Single-Contact 1-Wire Interface Communicates with
Host at Up to 76.9kbps
● Operating Range: 3.3V ±10%, -40NC to +85NC
● Low-Power 5µA (typ) Standby
● ±8kV Human Body Model ESD Protection (typ)
● 6-Pin TDFN, 6-Lead TSOC Packages
Typical Application Circuit
3.3V
R
P
M
1-Wire bus at overdrive speed. The communication fol-
lows the 1-Wire protocol with the ROM ID acting as node
address in the case of a multiple-device 1-Wire network.
R
= 1.1kΩ
P
V
CC
2
MAXIMUM I C BUS CAPACITANCE 320pF
SDA
SCL
2
(I C PORT)
DS2465
µC
Applications
1-Wire LINE
SLPZ
IO
●
●
●
●
●
●
●
Authentication of Network-Attached Appliances
Printer Cartridge ID/Authentication
DS28E22
Reference Design License Management
System Intellectual Property Protection
Sensor/Accessory Authentication and Calibration
Secure Feature Setting for Configurable Systems
Key Generation and Exchange for Cryptographic
Systems
Ordering Information appears at end of data sheet.
DeepCover and 1-Wire are registered trademarks of Maxim Integrated Products, Inc.
219-0020; Rev 3; 7/21
©
2021 Analog Devices, Inc. All rights reserved. Trademarks and registered trademarks are the property of their respective owners.
One Analog Way, Wilmington, MA 01887 U.S.A.
|
Tel: 781.329.4700
|
© 2021 Analog Devices, Inc. All rights reserved.