首页 | 本学科首页   官方微博 | 高级检索  
     

基于动态资源使用策略的SMT执行端口侧信道安全防护
引用本文:岳晓萌, 杨秋松, 李明树. 基于动态资源使用策略的SMT执行端口侧信道安全防护[J]. 计算机研究与发展, 2022, 59(2): 403-417. DOI: 10.7544/issn1000-1239.20200537
作者姓名:岳晓萌  杨秋松  李明树
作者单位:1.1(基础软件国家工程研究中心(中国科学院软件研究所) 北京 100190);2.2(中国科学院大学 北京 100049) (xiaomeng@iscas.ac.cn)
基金项目:“核高基”国家科技重大专项基金项目(2014ZX01029101-002);
摘    要:同时多线程(simultaneous multi-threading, SMT)技术是提升线程级并行度的重要微架构优化技术之一,SMT技术能够在1个物理核上实现2个逻辑核,提升处理器的整体性能.然而,以共享执行端口为代表的SMT环境下特有的时间侧信道安全问题也陆续出现.提出了一种基于动态资源使用策略的SMT环境下执行端口时间侧信道攻击防护方法,基于SMT技术对数据结构资源的不同处理方式设计动态策略调整算法,通过改进处理器端口绑定及调度选择算法以防护SMT环境下执行端口时间侧信道攻击.防护设计实现了端口冲突矩阵、分支过滤器和动态资源使用策略修改器3个组件,该方法在防护有效性上可以达到关闭SMT技术的防护效果且性能开销大大降低,同时硬件开销可控,具有较高的应用价值.

关 键 词:同时多线程  时间信道  侧信道  执行端口  安全防护

SMT Port Side Channel Defending Method Based on Dynamic Resource Usage Strategy
Yue Xiaomeng, Yang Qiusong, Li Mingshu. SMT Port Side Channel Defending Method Based on Dynamic Resource Usage Strategy[J]. Journal of Computer Research and Development, 2022, 59(2): 403-417. DOI: 10.7544/issn1000-1239.20200537
Authors:Yue Xiaomeng  Yang Qiusong  Li Mingshu
Affiliation:1.1(National Engineering Research Center for Fundamental Software (Institute of Software, Chinese Academy of Sciences), Beijing 100190);2.2(University of Chinese Academy of Sciences, Beijing 100049)
Abstract:Simultaneous multi-threading (SMT) technology is one of the important micro-architecture optimization technologies to improve thread-level parallelism. SMT can realize two logical cores on one physical core and improve the overall performance of the processor. However, some timing channel security problems represented by sharing execution ports in SMT environment appeared. A port timing channel attack defending method is proposed based on dynamic resource usage strategy in SMT environment. Dynamic strategy adjustment algorithm is designed for different processing modes of data structure resources, and improved processor port binding and scheduling selection algorithm are adopted to protect the port side channel attack in SMT environment. Defending method used modular design has realized the port conflict matrix, branch filters and dynamic resource editor strategy. Respectively judgment model for port conflict, branch information filtering and SMT dynamic resource use strategy changes, the final modification strategy can be directly applied to the execution port binding and scheduling algorithm. The defending method in this paper can achieve the effect of close SMT technology and reduce the performance cost greatly. At the same time, its hardware cost is controllable. Therefore, the method proposed in this study has high application value.
Keywords:SMT  timing channel  side channel  execution port  security defending
本文献已被 维普 等数据库收录!
点击此处可从《计算机研究与发展》浏览原始摘要信息
点击此处可从《计算机研究与发展》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号