首页> 外国专利> PROTECTION OF COMMUNICATIONS BETWEEN TRUSTED EXECUTION ENVIRONMENT AND HARDWARE ACCELERATOR UTILIZING ENHANCED END-TO-END ENCRYPTION AND INTER-CONTEXT SECURITY

PROTECTION OF COMMUNICATIONS BETWEEN TRUSTED EXECUTION ENVIRONMENT AND HARDWARE ACCELERATOR UTILIZING ENHANCED END-TO-END ENCRYPTION AND INTER-CONTEXT SECURITY

机译:利用增强的端到端加密和上下文间安全性保护受信任的执行环境和硬件加速器之间的通信

摘要

Embodiments are directed to protection of communications between a trusted execution environment and a hardware accelerator utilizing enhanced end-to-end encryption and inter-context security. An embodiment of an apparatus includes one or more processors having one or more trusted execution environments (TEEs) including a first TEE to include a first trusted application; an interface with a hardware accelerator, the hardware accelerator including trusted embedded software or firmware; and a computer memory to store an untrusted kernel mode driver for the hardware accelerator, the one or more processors to establish an encrypted tunnel between the first trusted application in the first TEE and the trusted software or firmware, generate a call for a first command from the first trusted application, generate an integrity tag for the first command, and transfer command parameters for the first command and the integrity tag to the kernel mode driver to generate the first command.
机译:实施例针对利用增强的端到端加密和上下文间安全性来保护可信执行环境和硬件加速器之间的通信。一种装置的实施例包括具有一个或多个可信执行环境(TEE)的一个或多个处理器,所述TEE包括第一TEE以包括第一可信应用。与硬件加速器的接口,该硬件加速器包括可信的嵌入式软件或固件;以及用于存储用于硬件加速器的不受信任的内核模式驱动程序的计算机存储器,一个或多个处理器在第一TEE中的第一受信任的应用程序与受信任的软件或固件之间建立加密隧道,从而生成对来自第一受信任的应用程序,为第一命令生成完整性标签,并将第一命令的命令参数和完整性标签传输到内核模式驱动程序以生成第一命令。

著录项

相似文献

  • 专利
  • 外文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号