Ama-Chromebook aqala ukuhlanganisa ama-chip e-OpenTitan open-source.

I-Google imemezele ukwethulwa kwama-chip asekelwe epulatifomu yomthombo ovulekile ye-OpenTitan kumadivayisi e-Chromebook. Ama-Chromebook angamadivayisi okuqala atholakala kwezentengiselwano afakwe i-OpenTitan. I-Google ihlela ukuqala ukusebenzisa izinhlelo zeseva ezisekelwe ku-OpenTitan ezikhungweni zayo zedatha kamuva kulo nyaka. I-Nuvoton ihlela ukukhiqizwa ngobuningi kwama-chip. Umsebenzi usuqalile futhi enguqulweni yesibili ye-chip, ezokwenza kube lula ukusetshenziswa kwama-algorithms okubethela i-ML-DSA kanye ne-ML-KEM ngemuva kwe-quantum ukuze kuqalwe futhi kuqinisekiswe ngokuphepha. Lawa ma-algorithms asebenzisa izindlela ze-cryptographic ezisekelwe ku-lattice theory.

 Ama-Chromebook aqala ukuhlanganisa ama-chip e-OpenTitan open-source.

Iphrojekthi ye-OpenTitan inikeza ipulatifomu yokwakha izingxenye zehadiwe ezithembekile (i-RoT, noma i-Root of Trust) ezisetshenziselwa ukuqinisekisa ubuqotho bezingxenye zehadiwe yesistimu kanye nesofthiwe. I-OpenTitan yasungulwa yi-Google ngo-2018, kodwa yadluliselwa enhlanganweni engenzi nzuzo i-lowRISC ngo-2019. Kusukela ngaleso sikhathi, izinkampani ezifana ne-Western Digital, i-Seagate, i-Nuvoton Technology, i-Winbond, i-Rivos, i-zeroRISC, kanye ne-G+D Mobile Security zijoyine ukuthuthukiswa kwayo. Imininingwane yekhodi yephrojekthi kanye nezingxenye zehadiwe ishicilelwe ngaphansi kwelayisensi ye-Apache 2.0. Izixazululo ezisetshenziswa ku-OpenTitan zisekelwe kubuchwepheshe obuvele busetshenziswa kumathokheni e-USB e-cryptographic e-Google Titan kanye nama-chip e-TPM ebhuthini eliqinisekisiwe elifakiwe ku- amaseva kwingqalasizinda ye-Google, kanye nakumadivayisi e-Chromebook kanye ne-Pixel.

Ngokungafani nokuqaliswa okukhona kwe-Root of Trust, i-OpenTitan ithuthukiswa ngefilosofi "yokuphepha ngokubeka izinto obala", okusho ukwenza ikhodi nemiklamo kutholakale futhi kusetshenziswa inqubo yokuthuthukisa evuleleke ngokuphelele engaboshelwe kubathengisi abathile noma abakhiqizi bama-chip. I-OpenTitan ingumthombo wokuqala ovulekile wokuqalisa ukusetshenziswa kwe-Root of Trust ozokhishelwa emakethe esekela indlela yokuqalisa evikelekile ye-post-quantum esekelwe ku-SLH-DSA (Sphincs+) i-algorithm yokukhiqiza isiginesha yedijithali, ekwazi ukumelana namandla onya kumakhompyutha e-quantum.

Ama-chip asekelwe ku-OpenTitan angasetshenziswa kuma-motherboard eseva, amakhadi enethiwekhi, amadivayisi abathengi, ama-router, kanye namadivayisi e-IoT ukuqinisekisa i-firmware kanye nezingxenye eziqalisayo (ukuvikela izingxenye zesistimu ezibalulekile ekuguqulweni), ukukhiqiza izihlonzi zesistimu ezihlukile ngokwe-cryptographic (ukuvikela ekuphazamisekeni kwehadiwe), ukuhlinzeka ngezinsizakalo ezihlobene nokuphepha, ukuvikela okhiye be-cryptographic (ukuhlukanisa okhiye uma kwenzeka umhlaseli ethola ukufinyelela ngokomzimba kumishini), kanye nokugcina ilogi yokuhlola ehlukanisiwe engenakuhlelwa noma isuswe.

I-OpenTitan ihlanganisa amabhulokhi anengqondo adingekayo kuma-chips e-RoT, njenge-microprocessor evulekile esekelwe ekwakhiweni kwe-RISC-V (RV32IMCB Ibex), ama-cryptographic coprocessors, i-hardware engahleliwe generator inombolo, umphathi obalulekile onokusekelwa kwe-DICE, indlela yokugcina idatha evikelekile kumemori ehlala njalo nesebenzayo, ubuchwepheshe bokuphepha, i-I/O block kanye nezingxenye zokuqalisa ezivikelekile. Idivayisi iphinde ihlinzeke ngamabhulokhi ngokusetshenziswa kwama-algorithms okubethela ajwayelekile afana ne-AES ne-HMAC-SHA256, kanye nesisheshisi sokusebenza kwezibalo esisetshenziswa kuma-algorithms okusebenza ngamasiginesha edijithali asuselwe kokhiye basesidlangalaleni.

 Ama-Chromebook aqala ukuhlanganisa ama-chip e-OpenTitan open-source.


Source: opennet.ru

Engeza amazwana