Accelerating the AES encryption function in OpenSSL for embedded systems

被引:8
作者
Nambiar, Vishnu P. [1 ]
Khalil-Hani, M. [1 ]
Zabidi, Muhammad M. [1 ]
机构
[1] Department of Microelectronics and Computer Engineering, Faculty of Electrical Engineering, Universiti Teknologi Malaysia, 81310 Skudai, Johor
关键词
AES; Embedded system; Hardware acceleration; Network security; Nios2-Linux; OpenSSL; SoC; System-on-chip; uClinux;
D O I
10.1504/IJICT.2009.026432
中图分类号
学科分类号
摘要
The internet is an insecure medium and hence, there is an increasing demand for measures to guarantee data privacy and integrity in the associated computer systems and networks. However, data protection and network security comes at a very high cost in the supporting embedded systems. While there are freely available solutions such as the OpenSSL library, the performance of most embedded processors, on their own, are just not adequate enough to perform cryptography for real-time network security applications. In this paper, we focus on the implementation of a cryptographic (crypto) embedded system, deploying an Altera Nios II embedded processor working with an AES encryption hardware accelerator. The RTOS applied is uClinux, on which the OpenSSL library has been ported and cross-compiled. Experimental results show that hardware acceleration can improve, significantly, the performance of OpenSSL crypto functions and hence, of the SSL connection as well. Copyright © 2009, Inderscience Publishers.
引用
收藏
页码:83 / 93
页数:10
相关论文
共 9 条
  • [1] Nios II Processor Reference Handbook, (2008)
  • [2] Braun N., Sikora A., Design strategies for secure embedded networking, Int. Conf. on Emerging Trends in Information and Communication Security ETRICS, (2006)
  • [3] Advanced Encryption Standard (AES), (2001)
  • [4] Hallinan C., Embedded Linux Primer: A Practical Real-World Approach, Prentice Hall Open Source Software Development Series, (2006)
  • [5] Maharak C., Sowanwanichakul B., Security methods for web-based applications on embedded systems, IEEE Region 10 Conference, (2004)
  • [6] Mourad O.-C., Lotfy S.-M., AES embedded hardware implementation, Second NASA/ESA Conference on Adaptive Hardware and Systems, (2007)
  • [7] Pin L.Y., Design of 256-bit AES cryptography processor core, (2007)
  • [8] Smith A.B., Jones C.D., Roberts E.F., Remote timing attacks are practical, article David Brumley and Dan Boneh, Proceedings of the 12th Usenix Security Symposium, (2003)
  • [9] Viega J., Chandra P., Messier M., Network Security with OpenSSL, (2002)