发明名称 Scalable and Secure Key Management For Cryptographic Data Processing
摘要 A method and system for secure and scalable key management for cryptographic processing of data is described herein. In the method, a General Purpose Cryptographic Engine (GPE) receives key material via a secure channel from a key server and stores the received Key encryption keys (KEKs) and/or plain text keys in a secure key cache. When a request is received from a host to cryptographically process a block of data, the requesting entity is authenticated using an authentication tag included in the request. The GPE retrieves a plaintext key or generate a plaintext using a KEK if the authentication is successful, cryptographically processes the data using the plaintext key and transmits the processed data. The system includes a key server that securely provides encrypted keys and/or key handles to a host and key encryption keys and/or plaintext keys to the GPE.
申请公布号 US2010254537(A1) 申请公布日期 2010.10.07
申请号 US20090418967 申请日期 2009.04.06
申请人 BROADCOM CORPORATION 发明人 BUER MARK;QI ZHENG
分类号 H04L9/08;G06F21/00 主分类号 H04L9/08
代理机构 代理人
主权项
地址