首页 | 本学科首页   官方微博 | 高级检索  
     

抗量子可信计算安全支撑平台技术
引用本文:李为,齐兵,秦宇,冯伟.抗量子可信计算安全支撑平台技术[J].计算机系统应用,2022,31(5):65-74.
作者姓名:李为  齐兵  秦宇  冯伟
作者单位:中国科学院大学, 北京 100049;中国科学院 软件研究所 可信计算与信息保障实验室, 北京 100190,中国科学院 软件研究所 可信计算与信息保障实验室, 北京 100190
基金项目:国家重点研发计划;国家自然科学基金;中国科学院青年创新促进会项目
摘    要:随着科技的发展,量子计算机大规模部署逐渐变为可能,基于部分计算困难问题的公钥密码算法将被量子算法有效求解.传统的可信硬件芯片如TCM/TPM等由于广泛使用了RSA、SM3、ECC等公钥密码体制,其安全性将受到严重影响;而绝大部分具有抗量子能力的密码算法并不适配现有TCM/TPM芯片有限的计算能力,因此需要对抗量子可信计...

关 键 词:抗量子密码算法  抗量子可信密码模块  TPM/TCM  可信计算安全支撑平台  远程证明  信息安全
收稿时间:2021/7/2 0:00:00
修稿时间:2021/8/17 0:00:00

Technology of Quantum-resistant Trusted Computing Security Support Platform
LI Wei,QI Bing,QIN Yu,FENG Wei.Technology of Quantum-resistant Trusted Computing Security Support Platform[J].Computer Systems& Applications,2022,31(5):65-74.
Authors:LI Wei  QI Bing  QIN Yu  FENG Wei
Affiliation:University of Chinese Academy of Sciences, Beijing 100049, China;Trusted Computing and Information Assurance Laboratory, Institute of Software, Chinese Academy of Sciences, Beijing 100190, China
Abstract:With the development of science and technology, the deployment of large-scale quantum computers is becoming possible, and the public-key cryptographic algorithms based on some difficult problems will be solved by quantum algorithms effectively. The security of traditional trusted hardware chips such as TCM/TPM will be seriously affected due to the wide use of public-key cryptosystems such as RSA, SM3, and ECC, and most of the quantum-resistant (QR) cryptographic algorithms cannot be implemented on hardware chips with limited computational resources. Therefore, it is necessary to redesign the QR trusted computing platform. In this study, considering the security challenges faced by trusted computing in quantum computing models, we summarize the present situation of QR trusted computing research and propose a QR trusted computing technology system. Combined with the existing post-quantum cryptographic protocol and trusted computing software and hardware technology framework, we transplant the QR cryptographic algorithms and protocol on the trusted computing platform and implement a prototype system of a QR trusted computing security support platform based on TCM. The work includes the design of the primitive root key and QR extensions such as TCM cipher library, remote attestation, and LDAA. Finally, the results of function and performance tests on the emulator for the above TCM modules show that the prototype system is resistant to attacks by quantum algorithms, with acceptable application performance overhead.
Keywords:quantum-resistant cryptographic algorithm  quantum-resistant trusted cryptographic platform  TPM/TCM  trusted computing security support platform  remote attestation  information security
本文献已被 万方数据 等数据库收录!
点击此处可从《计算机系统应用》浏览原始摘要信息
点击此处可从《计算机系统应用》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号