CN101534190A - A multi-channel encryption/decryption method, device and system - Google Patents

A multi-channel encryption/decryption method, device and system Download PDF

Info

Publication number
CN101534190A
CN101534190A CN200910137870A CN200910137870A CN101534190A CN 101534190 A CN101534190 A CN 101534190A CN 200910137870 A CN200910137870 A CN 200910137870A CN 200910137870 A CN200910137870 A CN 200910137870A CN 101534190 A CN101534190 A CN 101534190A
Authority
CN
China
Prior art keywords
key
round key
round
deciphering
encryption
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN200910137870A
Other languages
Chinese (zh)
Inventor
李欣
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Digital Technologies Chengdu Co Ltd
Original Assignee
Huawei Symantec Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Symantec Technologies Co Ltd filed Critical Huawei Symantec Technologies Co Ltd
Priority to CN200910137870A priority Critical patent/CN101534190A/en
Publication of CN101534190A publication Critical patent/CN101534190A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Storage Device Security (AREA)

Abstract

The embodiment of the invention relates to the field of the safety technique, provides a multi-channel encryption/decryption method, device and system. The encryption method includes: spreading the input initial cipher key to generate the required round cipher key; saving all the round cipher keys; acquiring the round cipher keys used by every round enciphering when at least two encipher units are used to encipher the plaintext, and using the round cipher key to encipher the plaintext. The invention has beneficial effects that each channel can share cipher key spreading result, and the cipher key spreading will not bring hardware source increase; during decipher operations, as the spreading of all cipher keys have been completed, no additional cipher key spreading operation is required, so that the decryption has the same treatment efficiency with the encryption.

Description

A kind of multichannel method for encryption/decryption, Apparatus and system
Technical field
The present invention relates to the safe practice field, relate in particular to a kind of multichannel method for encryption/decryption, Apparatus and system.
Background technology
(Advanced Encryption Standard is that American National Standard and technical research institute (NIST) prepare AES), as novel encryption standard to Advanced Encryption Standard.128 plaintext obtains corresponding 128 ciphertexts through particular wheel circulation cryptographic calculation, comprise in the basic operation of wheel operation that wherein a round key adds (AddRoundKey) computing, each key of taking turns adds the required key of computing and obtains through key expansion function.
In the prior art, the throughput of data is important index in the realization of AES enciphering/deciphering, when an AES enciphering/deciphering path can not satisfy the throughput requirement of design, utilize ping-pong operation to realize that the concurrent working of the passage of multi-channel A ES is a kind of very direct mode, take being multiplied of resource but bring.
Because the otherness of AES encrypt and decrypt operation, it adds/and to produce every mode of taking turns the required key of round key add operation in the close process also different.The round key of ciphering process is that generation is when the required key of front-wheel (perhaps producing whole round key) before ciphering process when each round transformation of encrypting, and the round key of decrypting process need be taken turns (AES-128)/12 through 10 and be taken turns the expansion generation that (AES-256) taken turns in (AES-192)/14 before the deciphering beginning.
The present inventor is in realizing process of the present invention, find that there is following problem in prior art at least for the application scenarios of deciding key (promptly key can not change with difference expressly in ciphering process), after the enciphering/deciphering port number increases, need provide an independently cipher key expansion module for each passage, therefore bigger to the expense of hardware resource, efficient is low.
Summary of the invention
The embodiment of the invention provides a kind of multichannel method for encryption/decryption, Apparatus and system, be used for solving each encrypt/decrypt passage of prior art when encrypting or decipher, for each encrypt/decrypt passage is equipped with a cipher key expansion module, thereby cause the problem of the wasting of resources.
The embodiment of the invention provides a kind of multichannel encryption method, and this method comprises: the initial key to input is expanded, and generates to encrypt all required round key; Preserve described all round key; When at least two ciphering units are encrypted plaintext, obtain every the wheel and encrypt employed round key, utilize this round key to expressly encrypting.
The embodiment of the invention also provides a kind of multichannel encryption device, and this device comprises: key expansion unit, and use the initial key of input is expanded, generate and encrypt all required round key; Memory cell is used to store described all round key; At least two ciphering units are used for when plaintext is encrypted, and obtain every the wheel from described memory cell and encrypt employed round key, utilize this round key to expressly encrypting.
The embodiment of the invention also provides a kind of multi-channel encryption/decryption method, and this method comprises: the initial key to input is expanded, and generates all required round key of deciphering; Preserve described all round key; When at least two decrypting device are decrypted ciphertext, obtain every employed round key of deciphering of taking turns, utilize this round key that ciphertext is decrypted.
The embodiment of the invention also provides a kind of multi-channel encryption/decryption device, and this device comprises: key expansion unit, and use the initial key of input is expanded, generate all required round key of deciphering; Memory cell is used to store described all round key; At least two decrypting device are used for when ciphertext is decrypted, and obtain every employed round key of deciphering of taking turns from described memory cell, utilize this round key that ciphertext is decrypted.
The embodiment of the invention also provides a kind of encryption/deciphering system, and this system comprises: key expansion unit, and use the initial key of input is expanded, generate all required round key of encryption and decryption; Memory cell is used to store described all round key; Encrypting module comprises at least two ciphering units, is used for obtaining every the wheel from described memory cell and encrypting employed round key when at least two ciphering units are encrypted plaintext, utilizes this round key to expressly encrypting; Deciphering module comprises at least two decrypting device, is used for when ciphertext is decrypted, and obtains every employed round key of deciphering of taking turns from described memory cell, utilizes this round key that ciphertext is decrypted.
Each passage of the embodiment of the invention can share cipher key spreading result, and cipher key spreading can not brought the increase of hardware resource; Owing to finished the expansion of whole keys, therefore no longer need extra cipher key spreading operation during decryption oprerations, make deciphering reach and encrypt same treatment effeciency.
Description of drawings
In order to be illustrated more clearly in the embodiment of the invention or technical scheme of the prior art, to do to introduce simply to the accompanying drawing of required use in embodiment or the description of the Prior Art below, apparently, accompanying drawing in describing below only is some embodiments of the present invention, for those of ordinary skills, under the prerequisite of not paying creative work, can also obtain other accompanying drawing according to these accompanying drawings.
Figure 1 shows that the embodiment of the invention adopts the flow chart of the multichannel encryption method embodiment that decides key;
Figure 2 shows that the present invention adopts the schematic diagram of multichannel encryption device first embodiment that decides key;
Figure 3 shows that the embodiment of the invention adopts the flow chart of the multi-channel encryption/decryption method embodiment that decides key;
Figure 4 shows that the present invention adopts the schematic diagram of multi-channel encryption/decryption device first embodiment that decides key;
Figure 5 shows that the embodiment of the invention adopts the embodiment schematic diagram of the enciphering/deciphering system that decides key;
Figure 6 shows that the flow chart of embodiment of the invention ciphering process embodiment;
Figure 7 shows that the flow chart of embodiment of the invention decrypting process embodiment.
Embodiment
Below in conjunction with the accompanying drawing in the embodiment of the invention, the technical scheme in the embodiment of the invention is clearly and completely described, obviously, described embodiment only is the present invention's part embodiment, rather than whole embodiment.Based on the embodiment among the present invention, those of ordinary skills belong to the scope of protection of the invention not making the every other embodiment that is obtained under the creative work prerequisite.
The embodiment of the invention provides a kind of multichannel method for encryption/decryption and device, and the present invention is described in detail below in conjunction with accompanying drawing.
Be illustrated in figure 1 as the flow chart that the embodiment of the invention adopts the multichannel encryption method embodiment that decides key.
Step 101 is expanded the initial key of input, generates to encrypt all required round key.
Step 102 is preserved described all round key.
Step 103 is obtained every the wheel and is encrypted employed round key, utilizes this round key to expressly encrypting.
As one embodiment of the present of invention, also comprise after generating described round key, preserve described round key according to round, at the round key that directly obtains corresponding round when expressly encrypting according to described round.
As one embodiment of the present of invention, described encryption type is symmetric cryptography (the used key of encryption and decryption is identical).
The embodiment of the invention is directly obtained the round key of preservation by preserving the round key of expansion in advance when follow-up encrypting plaintext, thereby can share the round key of expansion in advance, needn't carry out cipher key spreading when each the encryption, has reduced the resource consumption when encrypting.
Be illustrated in figure 2 as the schematic diagram that the present invention adopts multichannel encryption device first embodiment that decides key.
Comprise key expansion unit 201, memory cell 202, at least two ciphering units 203.
Described key expansion unit 201 is used the initial key of input is expanded, and generates to encrypt all required round key.
Described memory cell 202 is used to store described all round key.The described memory cell 202 of the embodiment of the invention is preserved described round key according to round, directly obtains the round key of corresponding round when plaintext is encrypted according to described round.
Described at least two ciphering units 203 are used for obtaining every the wheel from described memory cell 202 and encrypt employed round key, utilize this round key to expressly encrypting.
The embodiment of the invention is preserved the round key of expansion in advance by memory cell, described at least two ciphering units directly obtain the round key of preservation when subsequent plaintext, thereby realize shared same cipher key expansion module, can share round key, reduced the resource consumption when encrypting through expansion.
Be illustrated in figure 3 as the flow chart that the embodiment of the invention adopts the multi-channel encryption/decryption method embodiment that decides key.
Step 301 is expanded the initial key of input, generates all required round key of deciphering.
Step 302 is preserved described all round key.
Step 303 is obtained every employed round key of deciphering of taking turns, and utilizes this round key that ciphertext is decrypted.
As one embodiment of the present of invention, also comprise after generating described round key, preserve described round key according to round, when being decrypted, ciphertext directly obtains the round key of corresponding round according to described round.
The embodiment of the invention is directly obtained the round key of preservation by preserving the round key of expansion in advance when follow-up decrypting ciphertext, thereby can share the round key of expansion in advance, needn't carry out cipher key spreading when each deciphering, the resource consumption when having reduced deciphering.
Be illustrated in figure 4 as the schematic diagram that the present invention adopts multi-channel encryption/decryption device first embodiment that decides key.
Comprise key expansion unit 401, memory cell 402, at least two decrypting device 403.
Described key expansion unit 401 is used the initial key of input is expanded, and generates all required round key of deciphering.
Described memory cell 402 is used to store described all round key.
Described at least two decrypting device 403 are used for obtaining every employed round key of deciphering of taking turns from described memory cell 402, utilize this round key that ciphertext is decrypted.
The embodiment of the invention is preserved the round key of expansion in advance by memory cell, described at least two decrypting device are directly obtained the round key of preservation when follow-up decrypting ciphertext, thereby realize shared same cipher key expansion module, can share round key, the resource consumption when having reduced deciphering through expansion.Be illustrated in figure 5 as the embodiment schematic diagram that the embodiment of the invention adopts the enciphering/deciphering system that decides key.
Comprise key expansion unit 501, memory cell 502, encrypting module 503,507, the four first-in first-out unit 508,506, the three first-in first-out unit, 505, the second first-in first-out unit, deciphering module 504, the first first-in first-out unit.
Described key expansion unit 501 is used for generating and encrypts or decipher employed all round key.
Described memory cell 502 is used to store described all round key.
Described encrypting module 503 comprises at least two above-mentioned ciphering units shown in Figure 2, is used to utilize described round key to expressly encrypting.Wherein said ciphering process can be for example shown in Figure 6, is divided into 10 and takes turns encryption, and each round key of taking turns encryption adds and all needs corresponding round key in the step.
Described deciphering module 504 comprises at least two above-mentioned decrypting device shown in Figure 4, is used to utilize described round key that ciphertext is decrypted.Wherein said decrypting process can be for example shown in Figure 7, is divided into 10 and takes turns deciphering, and adding at each round key of taking turns deciphering all needs corresponding round key in the step.
The described first first-in first-out unit 505 is used for sending expressly to described encrypting module 503; The described second first-in first-out unit 506 is used to receive the ciphertext that described encrypting module 503 is exported; Described the 3rd first-in first-out unit 507 is used for sending ciphertext to described deciphering module 504; Described the 4th first-in first-out unit 508 is used to receive the plaintext that described deciphering module 504 is exported.
By the foregoing description, owing to fulfiled the expansion of whole keys ahead of schedule, before beginning, decryption oprerations each time do not need extra operation to come expanded keys, therefore deciphering can reach and encrypt same treatment effeciency.
Each passage of embodiments of the invention can share cipher key spreading result, and cipher key spreading can not brought the increase of hardware resource; Owing to finished the expansion of whole keys, therefore no longer need extra cipher key spreading operation during decryption oprerations, make deciphering reach and encrypt same treatment effeciency.
The invention described above embodiment sequence number is not represented the quality of embodiment just to description.
One of ordinary skill in the art will appreciate that: all or part of step that realizes said method embodiment can be finished by the relevant hardware of program command, aforesaid program can be stored in the computer read/write memory medium, this program is carried out the step that comprises said method embodiment when carrying out; And aforesaid storage medium comprises: various media that can be program code stored such as ROM, RAM, magnetic disc or CD.
Above-described embodiment; purpose of the present invention, technical scheme and beneficial effect are further described; institute is understood that; the above only is the specific embodiment of the present invention; and be not intended to limit the scope of the invention; within the spirit and principles in the present invention all, any modification of being made, be equal to replacement, improvement etc., all should be included within protection scope of the present invention.

Claims (10)

1. multichannel encryption method is characterized in that this method comprises:
Initial key to input is expanded, and generates to encrypt all required round key;
Preserve described all round key;
When at least two ciphering units are encrypted plaintext, obtain every the wheel and encrypt employed round key, utilize this round key to expressly encrypting.
2. method according to claim 1 is characterized in that, described all round key of described preservation comprise: preserve described round key according to round.
3. multichannel encryption device is characterized in that this device comprises:
Key expansion unit is used the initial key of input is expanded, and generates to encrypt all required round key;
Memory cell is used to store described all round key;
At least two ciphering units are used for when plaintext is encrypted, and obtain every the wheel from described memory cell and encrypt employed round key, utilize this round key to expressly encrypting.
4. multichannel encryption device according to claim 3 is characterized in that described memory cell is preserved described round key according to round.
5. multi-channel encryption/decryption method is characterized in that this method comprises:
Initial key to input is expanded, and generates all required round key of deciphering;
Preserve described all round key;
When at least two decrypting device are decrypted ciphertext, obtain every employed round key of deciphering of taking turns, utilize this round key that ciphertext is decrypted.
6. method according to claim 5 is characterized in that, described all round key of described preservation comprise, preserve described round key according to round.
7. multi-channel encryption/decryption device is characterized in that this device comprises:
Key expansion unit is used the initial key of input is expanded, and generates all required round key of deciphering;
Memory cell is used to store described all round key;
At least two decrypting device are used for when ciphertext is decrypted, and obtain every employed round key of deciphering of taking turns from described memory cell, utilize this round key that ciphertext is decrypted.
8. encryption/deciphering system is characterized in that this system comprises:
Key expansion unit is used the initial key of input is expanded, and generates all required round key of encryption and decryption;
Memory cell is used to store described all round key;
Encrypting module comprises at least two ciphering units, is used for obtaining every the wheel from described memory cell and encrypting employed round key when at least two ciphering units are encrypted plaintext, utilizes this round key to expressly encrypting;
Deciphering module comprises at least two decrypting device, is used for when ciphertext is decrypted, and obtains every employed round key of deciphering of taking turns from described memory cell, utilizes this round key that ciphertext is decrypted.
9. encryption/deciphering system according to claim 8 is characterized in that, also comprises
The first first-in first-out unit is used for sending expressly to described encrypting module;
The second first-in first-out unit is used to receive the ciphertext that described encrypting module is exported.
10. encryption/deciphering system according to claim 8 is characterized in that, also comprises
The 3rd first-in first-out unit is used for sending ciphertext to described deciphering module;
The 4th first-in first-out unit is used to receive the plaintext that described deciphering module is exported.
CN200910137870A 2009-05-05 2009-05-05 A multi-channel encryption/decryption method, device and system Pending CN101534190A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN200910137870A CN101534190A (en) 2009-05-05 2009-05-05 A multi-channel encryption/decryption method, device and system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN200910137870A CN101534190A (en) 2009-05-05 2009-05-05 A multi-channel encryption/decryption method, device and system

Publications (1)

Publication Number Publication Date
CN101534190A true CN101534190A (en) 2009-09-16

Family

ID=41104599

Family Applications (1)

Application Number Title Priority Date Filing Date
CN200910137870A Pending CN101534190A (en) 2009-05-05 2009-05-05 A multi-channel encryption/decryption method, device and system

Country Status (1)

Country Link
CN (1) CN101534190A (en)

Cited By (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101945383A (en) * 2010-09-06 2011-01-12 苏州国芯科技有限公司 Implementation method of area-compact arithmetic hardware for wireless local area network
CN104917610A (en) * 2015-06-15 2015-09-16 上海交通大学 Communication relay server safety system and method based on quantum true random number
CN105740721A (en) * 2016-01-21 2016-07-06 浪潮电子信息产业股份有限公司 Device, method and system for encrypting and decrypting data
CN105897406A (en) * 2016-06-02 2016-08-24 北京赛思信安技术股份有限公司 AES encryption and decryption device having equal-length plaintexts and ciphertexts
CN106157961A (en) * 2015-04-09 2016-11-23 展讯通信(上海)有限公司 Audio signal processing method and device
CN108933653A (en) * 2018-06-28 2018-12-04 郑州云海信息技术有限公司 A kind of AES encrypting and deciphering system and method based on large-scale data
CN111950039A (en) * 2020-08-17 2020-11-17 海光信息技术有限公司 Data processing device and method, memory controller, processor and electronic equipment
CN112511318A (en) * 2021-02-07 2021-03-16 浙江地芯引力科技有限公司 Parallel secret communication method and system of multi-channel security chip

Cited By (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101945383A (en) * 2010-09-06 2011-01-12 苏州国芯科技有限公司 Implementation method of area-compact arithmetic hardware for wireless local area network
CN101945383B (en) * 2010-09-06 2013-09-25 苏州国芯科技有限公司 Implementation method of area-compact arithmetic hardware for wireless local area network
CN106157961A (en) * 2015-04-09 2016-11-23 展讯通信(上海)有限公司 Audio signal processing method and device
CN104917610A (en) * 2015-06-15 2015-09-16 上海交通大学 Communication relay server safety system and method based on quantum true random number
CN104917610B (en) * 2015-06-15 2018-03-06 上海交通大学 Communication relay server security system and method based on quantum true random number
CN105740721A (en) * 2016-01-21 2016-07-06 浪潮电子信息产业股份有限公司 Device, method and system for encrypting and decrypting data
CN105897406A (en) * 2016-06-02 2016-08-24 北京赛思信安技术股份有限公司 AES encryption and decryption device having equal-length plaintexts and ciphertexts
CN105897406B (en) * 2016-06-02 2019-04-12 北京赛思信安技术股份有限公司 A kind of device for the AES encryption and decryption that bright ciphertext is isometric
CN108933653A (en) * 2018-06-28 2018-12-04 郑州云海信息技术有限公司 A kind of AES encrypting and deciphering system and method based on large-scale data
CN111950039A (en) * 2020-08-17 2020-11-17 海光信息技术有限公司 Data processing device and method, memory controller, processor and electronic equipment
CN112511318A (en) * 2021-02-07 2021-03-16 浙江地芯引力科技有限公司 Parallel secret communication method and system of multi-channel security chip
CN112511318B (en) * 2021-02-07 2021-05-07 浙江地芯引力科技有限公司 Parallel secret communication method and system of multi-channel security chip

Similar Documents

Publication Publication Date Title
CN102710415B (en) Method and table look-up device for encrypting and decrypting data by using symmetric cryptographic algorithm
CN101534190A (en) A multi-channel encryption/decryption method, device and system
US9712319B2 (en) Method and apparatus to encrypt plaintext data
KR101068367B1 (en) Method and apparatus for optimizing advanced encryption standard aes encryption and decryption in parallel modes of operation
CN101350714B (en) Efficient advanced encryption standard (AES) data path using hybrid RIJNDAEL S-BOX
US10721059B2 (en) Apparatus and method for data encryption, apparatus and method for data decryption
CN103152168A (en) Flexible architecture and instruction for advanced encryption standard (AES)
EP1779584A1 (en) Stream cipher combining system and method
CN102035641A (en) Device and method for implementing AES encryption and decryption
CN103580851A (en) Information encryption and decryption method
CN105406969A (en) Apparatus And Method For Data Encryption
CN102546156A (en) Method, system and device for grouping encryption
CN103488915A (en) Double-secret-key-encryption resource encryption and decryption method with combination of software and hardware
CN103427981B (en) A kind of realize encryption, deciphering method and device
CN103001766A (en) Symmetrical encryption and decryption method for supporting non-aligned data and system thereof
CN102790672A (en) Self-adapting data encrypting and decrypting method
CN104320248A (en) Method and system for inter-system secret key synchronization
CN101877849A (en) Communication method between wireless module and external equipment
JP2015022269A (en) Encryption device, decryption device, encryption method, decryption method, and program
CN103491384A (en) Encrypting method and device of video and decrypting method and device of video
Sharma et al. Investigation of Efficient Cryptic Algorithm for Storing Video Files in Cloud
Surameery Modified advanced encryption standard for boost image encryption
WO2015173905A1 (en) Encryption device, storage system, decryption device, encryption method, decryption method, encryption program, and decryption program
CN106357391B (en) Secure information decentralized encryption algorithm
CN101465729A (en) Method for implementing coexistence of various cryptographic algorithm in wireless LAN

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C12 Rejection of a patent application after its publication
RJ01 Rejection of invention patent application after publication

Open date: 20090916