METHOD AND APPARATUS FOR MEMORY ENCRYPTION WITH INTEGRITY CHECK AND PROTECTION AGAINST REPLAY ATTACKS
    1.
    发明公开
    METHOD AND APPARATUS FOR MEMORY ENCRYPTION WITH INTEGRITY CHECK AND PROTECTION AGAINST REPLAY ATTACKS 有权
    方法和设备用于加密一个程序完整性测试和保护免受攻击PLAY

    公开(公告)号:EP2726991A4

    公开(公告)日:2015-04-08

    申请号:EP11868426

    申请日:2011-06-29

    申请人: INTEL CORP

    IPC分类号: G06F12/14 G06F21/00 G06F21/72

    摘要: A method and apparatus to provide cryptographic integrity checks and replay protection to protect against hardware attacks on system memory is provided. A mode of operation for block ciphers enhances the standard XTS-AES mode of operation to perform memory encryption by extending a tweak to include a “time stamp” indicator. A tree-based replay protection scheme uses standard XTS-AES to encrypt contents of a cache line in the system memory. A Message-Authentication Code (MAC) for the cache line is encrypted using enhanced XTS-AES and a “time stamp” indicator associated with the cache line. The “time stamp indicator” is stored in a processor.

    摘要翻译: 一种方法和装置,以提供加密的完整性检查和重放保护,以防止硬件攻击上提供系统内存。 操作的块密码A模式增强操作的标准XTS-AES模式通过扩展一个调整为包括“时间戳”指示器来执行存储器加密。 基于树的重放保护方案采用标准的XTS-AES加密系统内存的缓存行的内容。 用于高速缓存线A的消息认证码(MAC)是使用增强XTS-AES和与高速缓存行关联的“时间戳”指示器加密。 的“时间戳指示符”被存储在处理器中。