Invention Grant
US08929544B2 Scalable and secure key management for cryptographic data processing
有权
可扩展和安全的密钥管理用于加密数据处理
- Patent Title: Scalable and secure key management for cryptographic data processing
- Patent Title (中): 可扩展和安全的密钥管理用于加密数据处理
-
Application No.: US13853880Application Date: 2013-03-29
-
Publication No.: US08929544B2Publication Date: 2015-01-06
- Inventor: Mark Buer , Zheng Qi
- Applicant: Broadcom Corporation
- Applicant Address: US CA Irvine
- Assignee: Broadcom Corporation
- Current Assignee: Broadcom Corporation
- Current Assignee Address: US CA Irvine
- Agency: Sterne Kessler Goldstein & Fox P.L.L.C.
- Main IPC: H04L9/00
- IPC: H04L9/00 ; H04L9/08 ; G06F21/60 ; H04L9/32

Abstract:
A method and system for secure and scalable key management for cryptographic processing of data is described herein. In the method, a General Purpose Cryptographic Engine (GPE) receives key material via a secure channel from a key server and stores the received Key encryption keys (KEKs) and/or plain text keys in a secure key cache. When a request is received from a host to cryptographically process a block of data, the requesting entity is authenticated using an authentication tag included in the request. The GPE retrieves a plaintext key or generate a plaintext using a KEK if the authentication is successful, cryptographically processes the data using the plaintext key and transmits the processed data. The system includes a key server that securely provides encrypted keys and/or key handles to a host and key encryption keys and/or plaintext keys to the GPE.
Public/Granted literature
- US20130230165A1 Scalable and Secure Key Management for Cryptographic Data Processing Public/Granted day:2013-09-05
Information query