Author Login Editor-in-Chief Peer Review Editor Work Office Work

Computer Engineering ›› 2007, Vol. 33 ›› Issue (04): 1-3. doi: 10.3969/j.issn.1000-3428.2007.04.001

• Degree Paper •     Next Articles

A Blocklevel Storage Security Architecture

MA Shichao1,2, WANG Zhensong1   

  1. (1. Institute of Computing Technology, Chinese Academy of Sciences, Beijing 100080; 2. Graduate School, Chinese Academy of Sciences, Beijing 100080)
  • Received:1900-01-01 Revised:1900-01-01 Online:2007-02-20 Published:2007-02-20

一种扇区级存储安全体系结构

马士超1,2,王贞松1   

  1. (1. 中国科学院计算技术研究所,北京 100080;2. 中国科学院研究生院,北京 100080)

Abstract: Based on the hierarchy model of storage system, there are a few strategies and mechanisms to implement storage security. This paper analyzes several storage security implementation on application-layer or operating system layer, lists their virtue and disadvantage, brings forward a hardware security schema based on block layer, and achieves transparency and completeness in real time and without lowering performance of the system. It gives description of implementation of schema based on FPGA and analyses the performance of the two kinds of implementation structure.

Key words: Storage security, Advanced encryption standard(AES), Output-feedback(OFB), Model, Key management

摘要: 基于存储系统的分层特性,有多种策略和机制来实现安全存储。该文分析了在应用层、操作系统层等较高层的实现的优缺点,提出了一种扇区级的硬件安全方案,实现了存储安全的透明性和完备性,且在保证高安全性的同时不影响系统的性能。描述了对该方案的FPGA设计和实现,并依据实验结果对两种不同实现结构的性能进行了分析。

关键词: 存储安全, AES, OFB, 模式, 密钥管理