A study of HSM based key protection in encryption file system.
IEEE Conference on Communications and Network Security(2016)
摘要
Encryption file system is designed to protect sensitive data stored on storage media. However, file encryption key is normally saved in memory with plaintext in the current known solutions. This brings potential security vulnerability such as the cold boot attack which can steal the file encryption key and in the end the encrypted file can be decrypted by the stolen key. This paper studies the current widely used encryption file systems, and proposes a key protection solution based on the Hardware Security Module (HSM) and our experiment on top of Linux Ext4 file system.
更多查看译文
关键词
Key Protection,Encryption File System,HSM
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要