Caliptra e senotsoe, lebokose le bulehileng la IP bakeng sa ho aha li-chips tse tšepahalang

Google, AMD, NVIDIA le Microsoft, joalo ka karolo ea projeke ea Caliptra, ba thehile block chip design block (IP block) bakeng sa lisebelisoa tsa ho theha likarolo tse tšepahalang tsa hardware (RoT, Root of Trust) hore e be li-chips. Caliptra ke yuniti e arohaneng ea lisebelisoa tse nang le memori ea eona, processor le ts'ebetso ea li-cryptographic primitives, e fanang ka netefatso ea ts'ebetso ea boot, firmware e sebelisitsoeng le sebopeho sa sesebelisoa se bolokiloeng mohopolong o sa fetoheng.

Calitra e ka sebelisoa ho kopanya yuniti e ikemetseng ea lisebelisoa ho li-chips tse fapaneng, tse lekola bots'epehi le ho netefatsa ts'ebeliso ea firmware e netefalitsoeng le e lumelletsoeng ke moetsi sesebelisoa. Calitra e ka nolofatsa haholo le ho kopanya ho kopanngoa ha mekhoa ea netefatso ea li-cryptographic e kentsoeng ho li-CPU, li-GPU, li-SoCs, li-ASIC, li-adapter tsa marang-rang, li-drive tsa SSD le lisebelisoa tse ling.

The cryptographic integrity le bonnete ba lisebelisoa tsa ho netefatsa tse fanoeng ke sethaleng li tla sireletsa likarolo tsa hardware ho tloha ho kenyelletsoa ha liphetoho tse mpe ho firmware le ho boloka ts'ebetso ea ho kenya le ho boloka litlhophiso ho thibela tsamaiso e kholo hore e se ke ea senyeha ka lebaka la litlhaselo tsa likarolo tsa hardware kapa ho nkela sebaka sa diphetoho tse mpe tsa diketane tsa phepelo ya chip. Caliptra e boetse e fana ka bokhoni ba ho netefatsa bonnete ba liapdeite tsa firmware le data e amanang le sethala (RTU, Root of Trust for Update), ho bona firmware e senyehileng le data ea bohlokoa (RTD, Root of Trust for Detection), khutlisetsa firmware e senyehileng le data (RTRec). , Motso oa Tšepo Bakeng sa Pholiso).

Caliptra e ntse e ntlafatsoa setšeng sa morero oa kopanelo oa Open Compute, o reretsoeng ho hlahisa lintlha tse bulehileng tsa hardware bakeng sa ho hlomella litsi tsa data. Litlhaloso tse amanang le Caliptra li ajoa ho sebelisoa Tumellano ea Open Web Foundation (OWFa), e etselitsoeng kabo ea litekanyetso tse bulehileng (tse tšoanang le laesense ea mohloli o bulehileng bakeng sa litlhaloso). Tšebeliso ea OWFa e etsa hore ho khonehe ho iketsetsa lihlahisoa tsa bona le ts'ebetsong e nkiloeng ho latela tlhaloso ntle le ho lefa meputso le ho lumella mokhatlo ofe kapa ofe ho kenya letsoho ntlafatsong ea litlhaloso.

Ts'ebetsong ea mantlha ea block block ea IP e hahiloe holim'a processor e bulehileng ea RISC-V SWeRV EL2 mme e na le 384KB ea RAM (128KB DCCM, 128KB ICCM0 le 128KB SRAM) le 32KB ROM. Li-algorithms tse tšehetsoeng tsa cryptographic li kenyelletsa SHA256, SHA384, SHA512 ECC Secp384r1, HMAC-DRBG, HMAC SHA384, AES256-ECB, AES256-CBC le AES256-GCM.

Caliptra e senotsoe, lebokose le bulehileng la IP bakeng sa ho aha li-chips tse tšepahalang
Caliptra e senotsoe, lebokose le bulehileng la IP bakeng sa ho aha li-chips tse tšepahalang


Source: opennet.ru

Eketsa ka tlhaloso