Encyrption Technologies 1.4 Flashcards
1
Q
Describe a TRUSTED PLATFORM MODULE
A
- A chip on the motherboard
- Assist with key generation and storage
- Assists in random number generation
- Password protected
2
Q
Hardware Security Module (HSM)
A
- Used to manage or store encryption keys
- Provides cryptographic functions for many more devices
- Used in large environments
3
Q
Cryptographic Functions of the HSM
A
- Many HSMs have a separate piece of hardware that can be connected to HSM and perform fast cryptographic functions.
4
Q
Cryptographic Accelerators
A
- Offload that CPU overhead from other devices.
- Allows HSMs to encrypt and decrypt in real time.
5
Q
Key Management
A
- Manages all keys from a centralized manager
- Can be a system on the premises or on a cloud base system.
6
Q
Challenges In Keeping Data Private
A
- Our data is located in many different places.
- Attackers are always finding new techniques.
- Data is constantly changing.
7
Q
Secure Enclave
A
- A separate process or built-in to most devices.
- Dedicated soley to privacy of data regardless of what device or location.
8
Q
Features of a Security Enclave
A
- Own boot ROM
- Monitors system boot process
- True random number generator
- Real-Time memory encryption
- Root cryptographic keys
- Performs AES encryption in hardware