首页> 外文会议>International Workshop on Intelligent Solutions in Embedded Systems >High-level security services based on a hardware NoC Firewall module
【24h】

High-level security services based on a hardware NoC Firewall module

机译:基于硬件NOC防火墙模块的高级安全服务

获取原文

摘要

Security services are typically based on deploying different types of modules, e.g. firewall, intrusion detection or prevention systems, or cryptographic function accelerators. In this study, we focus on extending the functionality of a hardware Network-on-Chip (NoC) Firewall on the Zynq 7020 FPGA of a Zedboard. The NoC Firewall checks the physical address and rejects untrusted CPU requests to on-chip memory, thus protecting legitimate processes running in a multicore SoC from the injection of malicious instructions or data to shared memory. Based on a validated kernel-space Linux system driver of the NoC Firewall which is seen as a reconfigurable, memory-mapped device on top of AMBA AXI4 interconnect fabric, we develop higher-layer security services that focus on physical address protection based on a set of rules. While our primary scenario concentrates on monitors and actors related to protection from malicious (or corrupt) drivers, other interesting use cases related to healthcare ethics, are also put into the context.
机译:安全服务通常基于部署不同类型的模块,例如,防火墙,入侵检测或预防系统或加密功能加速器。在这项研究中,我们专注于在ZeDboard的Zynq 7020 FPGA上扩展硬件网络上(NOC)防火墙的功能。 NoC防火墙检查物理地址并拒绝不受信任的CPU请求对片上存储器,从而保护在多核SoC中运行的合法进程从注入恶意指令或数据到共享内存。基于NoC防火墙的经过验证的内核空间Linux系统驱动程序,它被视为Amba Axi4互连结构顶部的可重构内存映射设备,我们开发了基于集合的专注于物理地址保护的高层安全服务规则。虽然我们的主要情景集中在与保护中的监视器和行动者身上,但与医疗保健伦理有关的其他有趣用途案例也将进入上下文。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号