| CPC G06F 21/31 (2013.01) [G06F 21/6218 (2013.01); G06F 21/78 (2013.01); H04L 63/083 (2013.01); H04W 12/06 (2013.01); H04W 12/068 (2021.01); H04W 12/069 (2021.01)] | 15 Claims |

|
1. A secure access device comprising:
a memory;
an interface controller coupled to the memory and for coupling to an external data channel, the interface controller configured to disable access to the memory via the external data channel until a user is authenticated;
an encryption engine in the interface controller for encrypting data to be stored in the memory;
a wireless transceiver for wireless communication outside the external data channel; and
an authentication subsystem configured to receive user authentication information via the wireless transceiver, the authentication subsystem further configured to send an unlock command to the interface controller to enable access to the memory via the external data channel after authenticating the user authentication information;
wherein, the encryption engine, while the external data channel is unlocked, performs operations comprising:
encrypting, with an encryption key, data received through the external data channel before storing the encrypted data in the memory; and
decrypting, with the encryption key, data read from the memory before sending the decrypted data through the external data channel.
|