Compact and On-the-Fly Secure Dynamic Reconfiguration for Volatile FPGAs

Author:

Kashyap Hirak1,Chaves Ricardo1

Affiliation:

1. INESC-ID, IST, Universidade de Lisboa, Lisbon, Portugal

Abstract

The dynamic partial reconfiguration functionality of FPGAs can be attacked, particularly when the FPGA is remotely located or the configuration bitstreams are sent through insecure networks. The existing FPGA technologies provide some built-in security mechanisms; however, these are often inadequate. The existing solutions still impose a significant impact on the reconfiguration process and on the available resources. This article proposes a solution to improve the security of dynamic partial reconfiguration of FPGAs, without significantly affecting the reconfiguration performance. The proposed solution changes the encryption key of the remotely received bitstream by a randomly generated key, unique for each configuration, when storing them in the external unsecured memory. The native frame-wise error detection mechanism combined with an additional CBC-MAC authentication mechanism, allows for an improved countermeasure against replay attack and wrongful bitstream usage. The proposed solution introduces an overhead of 1% of the available resources on the target FPGA and provides the lowest impact on the reconfiguration process when compared to the state of the art, achieving a reconfiguration throughput of 2.5Gbps. Regarding the built-in security mechanism provided by the Xilinx FPGAs, the solution herein proposed provides better security and improves the reconfiguration performance by more than 3 times.

Funder

FCT

ARTEMIS

Publisher

Association for Computing Machinery (ACM)

Subject

General Computer Science

Cited by 10 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

1. SmartFusion2 SoC as a security module for the IoT world;Proceedings of the 19th ACM International Conference on Computing Frontiers;2022-05-17

2. Field-programmable gate arrays in a low power vision system;Computers & Electrical Engineering;2021-03

3. SCA secure and updatable crypto engines for FPGA SoC bitstream decryption: extended version;Journal of Cryptographic Engineering;2020-12-24

4. ReCoFused partial reconfiguration for secure moving-target countermeasures on FPGAs;SN Applied Sciences;2020-07-10

5. Recent Attacks and Defenses on FPGA-based Systems;ACM Transactions on Reconfigurable Technology and Systems;2019-09-30

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3