【24h】

Secure Computing Enclaves Using FPGAs

机译:使用FPGA安全计算环路

获取原文
获取原文并翻译 | 示例
           

摘要

A new scheme for securing users' data and applications in public clouds and data centers using Field Programmable Gate Arrays (FPGAs) has been developed. This scheme incorporates all necessary protocols, hardware, and software components to provide protection against many known potential attacks including internal attacks. It achieves perfect forward secrecy, provides FPGA authentication and integrity checks, and securely establishes a symmetric session key between the user and the FPGA. A complete prototype has been implemented to show the feasibility of the proposed scheme with current FPGAs. Experimental results showed that an FPGA-based compute node can be set up in a cloud in 3.36s; 12.6 times faster than booting a medium-size conventional Virtual Machine (VM) on the same cloud. Based on the average global Internet speed, the time it takes to set up the FPGA-based machine from anywhere in the world was estimated to be 15s. Also, running an experimental secure image processing application on the FPGA took 50 percent less time than running the same application on a conventional state-of-the art processor (without a secure container).
机译:已经开发了一种用于保护用户数据和应用在公共云和数据中心中的新方案,使用现场可编程门阵列(FPGA)。该方案包括所有必要的协议,硬件和软件组件,以提供防止许多已知潜在攻击,包括内部攻击。它实现了完美的前向保密,提供FPGA认证和完整性检查,并在用户和FPGA之间安全地建立对称会话密钥。已经实施了完整的原型,以表明所提出的方案与当前FPGA的可行性。实验结果表明,基于FPGA的计算节点可以在3.36s中的云中设置;比在同一云上引导中等大小的传统虚拟机(VM)更快12.6倍。根据全球平均互联网速度,从世界任何地方设置FPGA的机器所需的时间估计为15岁。此外,在FPGA上运行实验性安全图像处理应用程序比在传统的最先进的处理器(没有安全容器)上运行相同的应用程序的时间越差。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号