Trusted cryptographic module based on domestic TCM chip and working method of module

A cryptographic module and reliable technology, applied in instruments, electronic digital data processing, digital data protection, etc., can solve the problems of cumbersome, low operating efficiency, single form of TCM chip bus, etc., and achieve the effect of easy application

Inactive Publication Date: 2017-07-07
SHANDONG CHAOYUE DATA CONTROL ELECTRONICS CO LTD
View PDF3 Cites 7 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

TCM (Trusted Cryptography Module) security chip is an important module to realize secure and trusted computing functions. Existing TCM chips are usually embedded with special-purpose processors, which can realize complex encryption and decryption algorithms through hardware support instructions; but its powerful professional processing performance It is based on the premise of sacrificing the general interaction of the chip. Therefore, the existing TCM chip often has a single bus form and limited interface types. Rich application platform requirements, relatively cumbersome, and low operating efficiency

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Trusted cryptographic module based on domestic TCM chip and working method of module
  • Trusted cryptographic module based on domestic TCM chip and working method of module

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0024] A trusted cryptographic module based on a domestic TCM chip, including a TCM chip unit, an FPGA chip unit and a miniPCIe interface, the TCM chip unit is connected to the FPGA chip unit, and the FPGA chip unit is connected to the device to be measured through the mini PCIe interface. The FPGA chip unit includes EMC-PCIe conversion protocol and SPI-LPC conversion protocol; the FPGA chip unit is connected to the TCM chip unit through the EMC interface and the SPI bus; the FPGA chip unit is connected to the miniPCIe interface through the PCIe bus interface and the LPC interface. like figure 1 As shown, the device to be measured is a motherboard bridge chip, and the trusted cryptographic module also includes a peripheral circuit, which includes a power supply and a clock, and the peripheral circuit is respectively connected to the TCM chip unit and the FPGA chip unit for conventional communication. The TCM chip unit, FPGA chip unit and peripheral circuits jointly realize the...

Embodiment 2

[0027] A kind of trusted cryptographic module based on domestic TCM chips, its structure is as described in embodiment 1, the difference is that the conversion logic of the EMC-PCIe conversion protocol of the FPGA chip unit is used to convert the EMC interface of the 8bit bit width into a standard PCIe bus interface, in which the EMC interface leads to the dual-port buffer with a size of 2KB in the TCM chip unit, and the PCIe bus interface takes the PCIex1 signal to the mini PCIe interface. By programming inside the FPGA chip unit, the EMC-PCIe and SPI-LPC protocol conversion logic is realized, and the safe and trusted service and the trusted measurement start are drawn out in the form of a mini PCIe interface. By connecting the device to be measured, data encryption and decryption and security audit are realized. , integrity protection and other functions.

Embodiment 3

[0029] A kind of trusted cryptographic module based on the domestic TCM chip, its structure is as described in embodiment 2, the difference is that the conversion logic of the SPI-LPC conversion protocol of the FPGA chip unit is used to realize the trusted cryptographic module to the dual bus to be measured The device supports root of trust booting, and the LPC interface is connected to the reserved pin of the mini PCIe interface. Regardless of whether the device to be measured uses the SPI bus or the LPC bus to connect and start the Flash, through the SPI-LPC conversion protocol of the FPGA chip unit, the measurement, loading and control of the underlying BIOS by the trusted cryptographic module can be realized. Those skilled in the art can realize the internal programming of the EMC-PCIe and SPI-LPC conversion protocols in the FPGA chip unit.

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to a trusted cryptographic module based on a domestic TCM chip and a working method of the module, relates to domestic computing platform security and reliability, autonomous controllability, data encryption and decryption, security auditing, integrity protection, etc. and belongs to the field of computer platform design technology. The module comprises a TCM chip unit, an FPGA chip unit and a mini PCIe interface, wherein the TCM chip unit is connected with the FPGA chip unit, and the FPGA chip unit is connected with a to-be-measured device through the mini PCIe interface. The TCM chip does not provide the PCIe interface or an LPC interface, the FPGA chip unit is added to design communication protocol logic conversion, and therefore trusted computing function support of the trusted cryptographic module is completed; the trusted cryptographic module is directly arranged between another trusted cryptographic module and a mainboard bridge plate through the mini PCIe interface without other conversion links, and therefore the security and reliability of data are guaranteed.

Description

technical field [0001] The invention relates to a trusted cryptographic module based on a domestic TCM chip and a working method thereof, relates to a domestic computing platform that is safe and reliable, autonomously controllable, data encryption and decryption, safety audit, integrity protection, etc., and belongs to the technical field of computer platform design. Background technique [0002] With the rapid development of information electronization and information globalization, people's choice and emphasis on computers in work and life gradually shift from use attributes (such as hardware configuration, software compatibility, ecological environment) to security attributes (such as behavior management, information leakage, etc.) , identity authentication and other functions) transfer. TCM (Trusted Cryptography Module) security chip is an important module to realize secure and trusted computing functions. Existing TCM chips are usually embedded with special-purpose pro...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F13/38G06F13/40G06F21/72G06F21/64G06F21/60
CPCG06F13/385G06F13/4068G06F21/602G06F21/64G06F21/72G06F2213/3852
Inventor 李坤冯磊朱书杉
Owner SHANDONG CHAOYUE DATA CONTROL ELECTRONICS CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products