首页> 外国专利> SECURE ENCRYPTION KEY MANAGEMENT IN TRUST DOMAINS

SECURE ENCRYPTION KEY MANAGEMENT IN TRUST DOMAINS

机译:信任域中的安全加密密钥管理

摘要

Implementations describe providing secure encryption key management in trust domains. In one implementation, a processing device includes a key ownership table (KOT) that is protected against software access. The processing device further includes a processing core to execute a trust domain resource manager (TDRM) to create a trust domain (TD) and a randomly-generated encryption key corresponding to the TD, the randomly-generated encryption key identified by a guest key identifier (GKID) and protected against software access from at least one of the TDRM or other TDs, the TDRM is to reference the KOT to obtain at least one unassigned host key identifier (HKID) utilized to encrypt a TD memory, the TDRM is to assign the HKID to the TD by marking the HKID in the KOT as assigned, and configure the randomly-generated encryption key on the processing device by associating the randomly-generated encryption key with the HKID.
机译:实现描述了在信任域中提供安全的加密密钥管理。在一个实施方式中,处理设备包括密钥所有权表(KOT),该密钥所有权表被保护以防止软件访问。处理设备还包括处理核心,该处理核心执行信任域资源管理器(TDRM)以创建信任域(TD)和与该TD相对应的随机生成的加密密钥,该随机生成的加密密钥由来宾密钥标识符标识(GKID),并防止从至少其中一个TDRM或其他TD进行软件访问,TDRM将引用KOT以获得至少一个未分配的主机密钥标识符(HKID),该标识符用于加密TD存储器,TDRM将分配给通过将KOT中的HKID标记为已分配,将其ID分配给TD,并通过将随机生成的加密密钥与HKID相关联,在处理设备上配置随机生成的加密密钥。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号