Hardware Acceleration of OpenSSL cryptographic functions for high-performance Internet Security

被引:0
作者
Khalil-Hani, Mohamed [1 ]
Nambiar, Vishnu P. [1 ]
Marsono, M. N. [1 ]
机构
[1] Univ Teknol Malaysia, Fac Elect Engn, Skudai 81310, Johor Bahru, Malaysia
来源
UKSIM-AMSS FIRST INTERNATIONAL CONFERENCE ON INTELLIGENT SYSTEMS, MODELLING AND SIMULATION | 2010年
关键词
OpenSSL; Network Security; cryptographic algorithms; hardware acceleration; embedded system;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The Transport Layer Security (TLS) protocol is currently the predominant method of implementing Internet security. This paper proposes an FPGA-based embedded system integrating hardware that accelerates the cryptographic algorithms used in the SSL/TLS protocol. OpenSSL, an open source implementation of the SLL v3 and TLS vi protocol, is deployed in the proposed embedded system powered with a Nios-2 embedded soft-core processor. Nios2-Linux RTOS is applied, which serves to provide Ethernet connectivity, multitasking, and support for the OpenSSL library. Key cipher functions used in SSL-driven connections, which include AES-256 symmetric encryption, SHA-2 hashing, RSA-2048 public-key cryptography, are accelerated in hardware. The embedded cryptosystem is prototyped completely on an Altera Stratix II FPGA development board. Experimental results show significant improvements in performance of the SSL transactions when the proposed embedded cryptosystem is deployed in the networking system.
引用
收藏
页码:374 / 379
页数:6
相关论文
共 13 条
  • [1] Altera Corporation, 2009, AV INT SPEC
  • [2] [Anonymous], 2001, FIPS PUB
  • [3] *FIPS, 2008, FIBS PUB, V1803
  • [4] Khalgui M, 2008, INT SYM IND EMBED, P1, DOI 10.1109/SIES.2008.4577674
  • [5] MAHARAK C, 2004, TENCON 2004 2004 I C, V3, P56
  • [6] Accelerating the AES encryption function in OpenSSL for embedded systems
    Nambiar, Vishnu P.
    Khalil-Hani, M.
    Zabidi, Muhammad M.
    [J]. International Journal of Information and Communication Technology, 2009, 2 (1-2) : 83 - 93
  • [7] SHENG CW, 2001, THESIS U TEKNOLOGI M
  • [8] TAN SL, 2001, THESIS U TEKNOLOGI M
  • [9] THAMRIN NM, 2007, THESIS U TEKNOLOGI M
  • [10] Thomas S.A., 2000, SSL TLS Essentials: Securing the Web