发明名称 DEVICE AND METHOD WITH REDUCED INFORMATION LEAKAGE
摘要 The invention is directed to a data-processing system comprising a processor and first encrypted information in a first persistent memory whose level of information leakage is higher than that of a second persistent memory. In the second persistent memory is stored a first cryptographic key for decrypting the first encrypted information, thereby generating therefrom first unencrypted information that is usable by the processor for executing an operation. The same cryptographic key may also be used for encrypting the first unencrypted information, thereby generating the first encrypted information. It is also directed to a method of processing such a data-processing system with an operating system, comprising a writing step for writing first unencrypted information into the first persistent memory, an encryption step for encrypting the first unencrypted information under use of the first cryptographic key, creating therefrom first encrypted information in the first persistent memory, and an access-limitation step for setting the data-processing system to a state in which writing into the first persistent memory is controlled by the operating system. It also relates to a method of executing an operation on such a data-processing system comprising a decryption step for decrypting the first encrypted information under use of the first cryptographic key, thereby generating therefrom first unencrypted information and an execution step for executing an operation by the processor, using the first unencrypted information.
申请公布号 EP1449045(A2) 申请公布日期 2004.08.25
申请号 EP20020781474 申请日期 2002.11.05
申请人 INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 BAENTSCH, MICHAEL;BUHLER, PETER;EIRICH, THOMAS;HOERING, FRANK;OESTREICHER, MARCUS;WEIGOLD, THOMAS, D.
分类号 G06F21/24;G06F1/00;G06F21/00;G06F21/06;G06K19/073;H04L9/10;H04L9/32;H04L29/06;(IPC1-7):G06F1/00 主分类号 G06F21/24
代理机构 代理人
主权项
地址