ABRIDGED DATA SHEET
Evaluation Kit
Available
Design
Resources
Tools
and Models
Support
Click here to ask an associate for production status of specific part numbers.
DeepCover Secure Authenticator with
1-Wire SHA-256 and 4Kb User EEPROM
DS28E25
General Description
DeepCover™ embedded security solutions cloak sensi-
tive data under multiple layers of advanced physical
security to provide the most secure key storage possible.
Features
● Symmetric Key-Based Bidirectional Secure
Authentication Model Based on SHA-256
● Dedicated Hardware-Accelerated SHA Engine for
The DeepCover Secure Authenticator (DS28E25) com-
bines crypto-strong, bidirectional, secure challenge-
and-response authentication functionality with an imple-
mentation based on the FIPS 180-3-specified Secure
Hash Algorithm (SHA-256). A 4Kb user-programmable
EEPROM array provides nonvolatile storage of applica-
tion data and additional protected memory holds a read-
protected secret for SHA-256 operations and settings for
user memory control. Each device has its own guaranteed
unique 64-bit ROM identification number (ROM ID) that is
factory programmed into the chip. This unique ROM ID is
used as a fundamental input parameter for cryptographic
operations and also serves as an electronic serial num-
ber within the application. A bidirectional security model
enables two-way authentication between a host system
and slave-embedded DS28E25. Slave-to-host authenti-
cation is used by a host system to securely validate that
an attached or embedded DS28E25 is authentic. Host-
to-slave authentication is used to protect DS28E25 user
memory from being modified by a nonauthentic host. The
SHA-256 message authentication code (MAC), which the
DS28E25 generates, is computed from data in the user
memory, an on-chip secret, a host random challenge, and
the 64-bit ROM ID. The DS28E25 communicates over the
Generating SHA-256 MACs
● Strong Authentication with a High Bit Count, User-
Programmable Secret, and Input Challenge
● 4096 Bits of User EEPROM Partitioned Into 16
Pages of 256 Bits
● User-Programmable and Irreversible EEPROM
Protection Modes Including Authentication, Write and
Read Protect, and OTP/EPROM Emulation
● Unique, Factory-Programmed 64-Bit Identification
Number
● Single-Contact 1-Wire Interface Communicates with
Host at Up to 76.9kbps
● Operating Range: 3.3V ±10%, -40°C to +85°C
● Low-Power 5µA (typ) Standby
● ±8kV Human Body Model ESD Protection (typ)
● 2-Pin SFN, 2-Pin TO-92, 6-Pin TDFN, and 6-Pin
TSOC Packages
Typical Application Circuit
3V
®
R
P
single-contact 1-Wire bus at overdrive speed. The com-
R
= 1.1kΩ
P
V
CC
munication follows the 1-Wire protocol with the ROM ID
acting as node address in the case of a multiple-device
1-Wire network.
2
MAXIMUM I C BUS CAPACITANCE 320pF
SDA
SCL
2
(I C PORT)
DS2465
µC
1-Wire LINE
Applications
SLPZ
IO
● Authentication of Network-Attached Appliances
● Printer Cartridge ID/Authentication
DS28E25
● Reference Design License Management
● System Intellectual Property Protection
● Sensor/Accessory Authentication and Calibration
● Secure Feature Setting for Configurable Systems
● Key Generation and Exchange for Cryptographic
Systems
Ordering Information appears at end of data sheet.
DeepCover is a trademark and 1-Wire is a registered trademark of Maxim Integrated Products, Inc.
219-0019; Rev 4; 6/21
©
2021 Analog Devices, Inc. All rights reserved. Trademarks and registered trademarks are the property of their respective owners.
One Analog Way, Wilmington, MA 01887 U.S.A.
|
Tel: 781.329.4700
|
© 2021 Analog Devices, Inc. All rights reserved.