Request Security User Guide and Developer Software ›
EVALUATION KIT AVAILABLE
Click here for production status of specific part numbers.
DS28E39
DeepCover Secure ECDSA Bidirectional
Authenticator with ChipDNA PUF Protection
General Description
Benefits and Features
● Robust Countermeasures Protect Against Security
The DS28E39 is an ECDSA public-key-based bidirec-
tional secure authenticator that incorporates Maxim’s
patented ChipDNA™ feature, a physically unclonable
function (PUF) to provide a cost-effective solution with
the ultimate protection against security attacks. Using the
random variation of semiconductor device characteristics
that naturally occur during wafer fabrication, the ChipDNA
circuit generates a unique output value that is repeatable
over time, temperature, and operating voltage. Attempts
to probe or observe ChipDNA operation modifies the
underlying circuit characteristics, preventing discovery
of the unique value used by the chip cryptographic func-
tions. The DS28E39 utilizes the ChipDNA output as key
content to cryptographically secure all device stored data
and optionally, under user control, as the private key for
the ECDSA signing operation. With ChipDNA capabil-
ity, the device provides a core set of cryptographic tools
derived from integrated blocks including an asymmetric
(ECC-P256) hardware engine, a FIPS/NIST-compliant
true random number generator (TRNG), 2Kb of secured
EEPROM, a decrement-only counter and a unique 64-bit
ROM identification number (ROM ID). The ECC public/
private key capabilities operate from the NIST-defined
P-256 curve to provide a FIPS 186-compliant ECDSA
signature generation function. The unique ROM ID is
used as a fundamental input parameter for cryptographic
operations and serves as an electronic serial number
within the application. The DS28E39 communicates over
the single-contact 1-Wire® bus at both standard and
overdrive speeds. The communication follows the 1-Wire
protocol with the ROM ID acting as node address in the
case of a multidevice 1-Wire network.
Attacks
• Patented Physically Unclonable Function Secures
Device Data
• Actively Monitored Die Shield Detects and Reacts
to Intrusion Attempts
• All Stored Data Cryptographically Protected from
Discovery
● ECDSA Authenticated R/W of Stored Data and
Counter.
● Efficient Public-Key Authentication Solution to
Authenticate Peripherals
• FIPS 186-Compliant ECDSA P256 Signature for
Challenge/Response Authentication
• ChipDNA Generated Public/Private Key Pair.
• TRNG with NIST SP 800-90B Compliant Entropy
Source
● Supplemental Features Enable Easy Integration into
End Applications
• 17-Bit One-Time Settable, Nonvolatile Decrement-
Only Counter with Authenticated Read
• 2Kbits of EEPROM for User Data, Key, Control
Registers, and Certificate
• Unique and Unalterable Factory Programmed
64-Bit Identification Number (ROM ID)
• Single-Contact, 1-Wire Interface Communication
with Host at 11.7kbps and 62.5kbps
• Operating Range: 3.3V ±10%, -40°C to +85°C
• 6-Pin TDFN-EP Package (3mm x 3mm)
Ordering Information appears at end of data sheet.
Applications
● Authentication of Medical Sensors and Tools
● Secure Management of Limited Use Consumables
● IoT Node Authentication
DeepCover and 1-Wire are registered trademarks and
ChipDNA is a trademark of Maxim Integrated Products, Inc.
● Peripheral Authentication
● Reference Design License Management
● Printer Cartridge Identification and Authentication
19-100444; Rev 0; 12/18