检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:赵毅强 魏鑫 李尧 何家骥 ZHAO Yiqiang;WEI Xin;LI Yao;HE Jiaji(School of Microelectronics,Tianjin University,Tianjin 300072,China)
出 处:《华中科技大学学报(自然科学版)》2024年第3期7-13,共7页Journal of Huazhong University of Science and Technology(Natural Science Edition)
基 金:国家重点研发计划资助项目(2021YFB3100903)。
摘 要:针对密码算法加速的指令集架构扩展可能为处理器引入侧信道泄露的风险,提出了一种硅前阶段侧信道安全评估方法,能准确定位处理器运行过程中存在侧信道泄露风险的时刻与微架构组件.基于一款32 bit顺序精简指令集计算机(RISC-V)处理器架构,实现了两种代表性的高级加密标准(AES)扩展指令与扩展硬件电路,而后应用所提出的评估方法对其开展侧信道安全评估.基于评估结果提出了扩展端口动态掩码和运算单元功耗随机化的混合防护策略,进行了硅前安全验证,最终实现了高侧信道安全的AES指令集架构扩展.实验结果表明:所提出的混合防护策略能够在4.9%的面积开销下,提升了AES扩展1 886倍以上的侧信道安全性.The instruction set architecture(ISA)extension for cryptographic algorithm acceleration may introduce the risk of side channel leakage.A side channel security evaluation process in the pre-silicon stage was proposed,which could accurately locate the time and microarchitecture components with side channel leakage risk during the processor operation.Based on a 32 bit in-order reduced instruction set compute(RISC-V)processor architecture,two representative advanced encryption standard(AES)extension instructions and extended hardware circuits were implemented,and then the proposed evaluation method was applied to evaluate the side channel security.Based on the evaluation results,a hybrid protection strategy of extension port dynamic mask and power randomization of the operation unit was proposed,and the pre-silicon security verification was carried out.Finally the AES ISA extension with high side channel security was realized.The experimental results show that the proposed hybrid protection strategy can improve the side channel security of the AES extension by 1886 times and more under the 4.9%area overhead.
关 键 词:硅前侧信道 高级加密标准(AES) 扩展指令 精简指令集计算机(RISC-V) 相关性功耗分析
分 类 号:TN47[电子电信—微电子学与固体电子学]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.49