发明授权
US08411867B2 Scalable and secure key management for cryptographic data processing
有权
可扩展和安全的密钥管理用于加密数据处理
- 专利标题: Scalable and secure key management for cryptographic data processing
- 专利标题(中): 可扩展和安全的密钥管理用于加密数据处理
-
申请号: US12418967申请日: 2009-04-06
-
公开(公告)号: US08411867B2公开(公告)日: 2013-04-02
- 发明人: Mark Buer , Zheng Qi
- 申请人: Mark Buer , Zheng Qi
- 申请人地址: US CA Irvine
- 专利权人: Broadcom Corporation
- 当前专利权人: Broadcom Corporation
- 当前专利权人地址: US CA Irvine
- 代理机构: Sterne, Kessler, Goldstein & Fox, P.L.L.C.
- 主分类号: H04L9/08
- IPC分类号: H04L9/08 ; G06F21/00
摘要:
A method and system for secure and scalable key management for cryptographic processing of data is described herein. In the method, a General Purpose Cryptographic Engine (GPE) receives key material via a secure channel from a key server and stores the received Key encryption keys (KEKs) and/or plain text keys in a secure key cache. When a request is received from a host to cryptographically process a block of data, the requesting entity is authenticated using an authentication tag included in the request. The GPE retrieves a plaintext key or generate a plaintext using a KEK if the authentication is successful, cryptographically processes the data using the plaintext key and transmits the processed data. The system includes a key server that securely provides encrypted keys and/or key handles to a host and key encryption keys and/or plaintext keys to the GPE.
公开/授权文献
信息查询