首页> 外文会议>IEEE Conference on Communications and Network Security >A study of HSM based key protection in encryption file system
【24h】

A study of HSM based key protection in encryption file system

机译:基于HSM的加密文件系统密钥保护研究

获取原文

摘要

Encryption file system is designed to protect sensitive data stored on storage media. However, file encryption key is normally saved in memory with plaintext in the current known solutions. This brings potential security vulnerability such as the cold boot attack which can steal the file encryption key and in the end the encrypted file can be decrypted by the stolen key. This paper studies the current widely used encryption file systems, and proposes a key protection solution based on the Hardware Security Module (HSM) and our experiment on top of Linux Ext4 file system.
机译:加密文件系统旨在保护存储在存储介质上的敏感数据。但是,在当前已知的解决方案中,文件加密密钥通常以明文形式保存在内存中。这带来了潜在的安全漏洞,例如冷启动攻击,它可以窃取文件加密密钥,最后可以用被盗的密钥解密加密的文件。本文研究了当前广泛使用的加密文件系统,并提出了基于硬件安全模块(HSM)的密钥保护解决方案以及我们在Linux Ext4文件系统之上的实验。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号