首页> 外国专利> An apparatus and method of controlling access to data stored in a non-trusted memory

An apparatus and method of controlling access to data stored in a non-trusted memory

机译:控制存储在非值得信任内存中的数据的访问的装置和方法

摘要

Message authentication codes (MAC) are generated for data blocks stored in a non-trusted memory 40. The authentication codes may be stored in a trusted memory 65 or in the non-trusted memory or in both. The authentication codes stored in trusted memory are shorter than those stored in non-trusted memory. The authentication codes may be generated using secret data. The secret data used for authentication codes stored in the trusted memory may be different from those stored in the non-trusted memory. The authentication code stored in the trusted memory may be generated by truncating the authentication code stored in the non-trusted memory. An authentication code may be evicted from the trusted memory. In this case, the authentication code for the non-trusted memory may be generated, if it is not already in the non-trusted memory. When reading data from the non-trusted memory, the authentication code in non-trusted memory may be used to generate an authentication code to be used in trusted memory. This may be compared with the authentication code generated from the data to authenticate the data.
机译:消息认证代码(MAC)被生成存储在非值得信任存储器40中的数据块。认证代码可以存储在可信存储器65中或在非值得信任的存储器中或两者中。存储在可信存储器中的认证代码短于存储在非值得信任存储器中的身份验证代码。可以使用秘密数据生成认证代码。用于存储在受信任存储器中的认证代码的秘密数据可以与存储在非值得信任存储器中的身份验证代码不同。可以通过截断存储在不可信任的存储器中的认证码来生成存储在可信存储器中的认证码。可以从可信内存中逐步探测认证码。在这种情况下,如果它尚未在不可信任的存储器中,则可以生成非值得信任存储器的认证码。当从非值得信赖的存储器读取数据时,非值得信任存储器中的认证码可用于生成要在可信存储器中使用的认证码。这可以与从数据生成的认证码进行比较以对数据进行身份验证。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号