首页 | 本学科首页   官方微博 | 高级检索  
     检索      

高性能密码服务系统体系结构设计
引用本文:容晓峰,李增欣,刘平,周利华.高性能密码服务系统体系结构设计[J].吉林大学学报(信息科学版),2005,23(4):408-415.
作者姓名:容晓峰  李增欣  刘平  周利华
作者单位:西安电子科技大学,计算机网络与信息安全教育部重点实验室,西安,710071;西安工业学院,计算机科学与工程学院,西安,710032;国家信息安全工程技术研究中心,北京,100093;西安电子科技大学,计算机网络与信息安全教育部重点实验室,西安,710071
摘    要:随着大型电子商务和电子政务系统中客户数量的增多,主机端密码系统的性能成为提供安全服务限制因素,针对该问题提出了一种基于高性能、可编程密码模块硬件的密码服务系统体系结构.通过设计统一设备API(Application Program Interface)接口和在模块内的芯片之间实现并行密码运算,该方法可以实现系统密码运算的高性能.该系统已在IBM Services345服务器和密码模块硬件上实现.通过对1024位RSA签名性能与并行密码模块数目间的关系进行测试分析,结果显示,基于该体系结构实现的密码服务系统是高性能的和可扩展的.

关 键 词:密码芯片  密码模块  密码服务系统  并行计算  可扩展性
文章编号:1671-5896(2005)04-0408-08
修稿时间:2004年8月4日

Design of High-Performances Cryptographic Service System Architecture
RONG Xiao-feng,LI Zeng-xin,LIU Ping,ZHOU Li-hua.Design of High-Performances Cryptographic Service System Architecture[J].Journal of Jilin University:Information Sci Ed,2005,23(4):408-415.
Authors:RONG Xiao-feng  LI Zeng-xin  LIU Ping  ZHOU Li-hua
Abstract:With more and more clients attached to a host, performance of cryptographic operations at the host has become a constraint that prevents the achievement of acceptable secure services at large e-commerce and e-governments. To overcome this limitation, the authors propose a cryptographic service system architecture, based on the hardware of high-performance, programmable secure crypto module. This architecture provides a general framework that can provide well scalability by using a general device API(Application Program Interface),and obtain high performance by carrying cryptography computations in parallel between crypto chips in crypto modules. The system is implemented on an IBM Services345 machine and hardware crypto modules. Preliminary measurements are also performed to study the trade-off between numbers of crypto modules parallel computing and performance of generate 1 024-bit RSA digital signature. Results indicate that the system implemented by the architecture with high performance and scalability.
Keywords:crypto chip  crypto module  cryptographic service system  parallel computing  scalability
本文献已被 CNKI 维普 万方数据 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号