Title :
Cryptographic key protection module in hardware for the Need2Know system
Author :
Fields, Scott ; Bouldin, Don
Author_Institution :
Dept. of Electr. & Comput. Eng., Tennessee Univ., Knoxville, TN
Abstract :
Traditional public key cryptographic methods provide access control to sensitive data by allowing the message sender to grant a single recipient permission to read the encrypted message. The Need2Knowreg system (N2K) improves upon these methods by providing role-based access control. N2K defines data access permissions similar to those of a multiuser file system, but N2K strictly enforces access through cryptographic standards. Since custom hardware can efficiently implement many cryptographic algorithms and can provide additional security, N2K stands to benefit greatly from a hardware implementation. To this end, the main N2K algorithm, the Key Protection Module (KPM), is being specified in VHDL. The design is being built and tested incrementally: this first phase implements the core control logic of the KPM without integrating its cryptographic sub-modules. Both RTL simulation and formal verification are used to test the design. This is the first N2K implementation in hardware, and it promises to provide an accelerated and secured alternative to the software-based system. A hardware implementation is a necessary step toward highly secure and flexible deployments of the N2K system
Keywords :
access control; hardware description languages; message authentication; public key cryptography; N2K hardware implementation; Need2Know system; RTL simulation; VHDL; core control logic; cryptographic key protection module; data access permission; formal verification; multiuser file system; public key cryptography; role-based access control; Access control; Data security; File systems; Formal verification; Hardware; Logic design; Logic testing; Permission; Protection; Public key cryptography;
Conference_Titel :
Circuits and Systems, 2005. 48th Midwest Symposium on
Conference_Location :
Covington, KY
Print_ISBN :
0-7803-9197-7
DOI :
10.1109/MWSCAS.2005.1594225