4 ms·
I'd love to know what the "security hardware" is - It's tacked on the end as a bullet point but I want to know what they mean by that...
by JonRB 9y ago
I'd love to know what the "security hardware" is - It's tacked on the end as a bullet point but I want to know what they mean by that...
- eberkund 9y agoProbably hardware accelerated encryption
- monk_e_boy 9y agoIs this pitched for SSL and HTTPS? Isn't this already done in hardware?
- ktta 9y agoMaybe SHA instructions like Intel?
- vengefulduck 9y agoIt also might be referring to their platform security processer
- dom0 9y agoZen has SHA1/2 extensions compatible to the Intel SHA extensions, yes. These are kinda new on desktops, but since they existed for some years some software already supports them out of the box (like OpenSSL and cryptopp); so applications will automatically profit. With this extension Zen does SHA1 @ 2 cpb, SHA-256 @ 3 cpb and SHA-512 @ 2 cpb (off the top of my head). (All of which are faster than the fastest BLAKE2 implementation I know on Haswell).
- ktta 9y agoDo you by chance have hard numbers about SHA2 with/without hardware instructions and BLAKE2 on a specific Intel CPU? I've wondered about trade off between SHA256 vs BLAKE2. In the future there'll be no debate since more and more computers will have SHA instructions. But right now I'm wondering about the speedup of BLAKE2 vs SHA256 with hardware. On the other hand, many computers, especially servers don't have SHA2 instructions for the foreseeable future which will make BLAKE2 a very good option.
- dom0 9y agoHere are a some benchmarks across a wide range of CPUs: https://github.com/borgbackup/borg/issues/45#issuecomment-221234832 https://github.com/borgbackup/borg/issues/45#issuecomment-22... However, none with SHAEXT; they just weren't there yet. But the Zen numbers should give you a good idea. Note that these benchmarks are made using a plain C implementation of BLAKE2 (the reference one), which is not vectorized by any compiler. The fastest (AVX2) BLAKE2 implementation is about 40 % faster than the scalar C implementation (on Haswell). As far as I'm aware no mainstream crypto library ships optimized BLAKE2 versions. I believe some Go packages do/did make up their own version (not the one from Samuel Neves), but at least one of them mixed SSE and VEX/AVX insns with the predictably bad results (60 MB/s or so) - perhaps this is fixed by now. So in summary, BLAKE2b is imho the best candidate on perf, and if you use a good implementation it should be within ~30% of SHA2 (512) with SHAEXT — with the numbers we have so far. I understand that Zen's aggressive (=good) power mgt makes it somewhat difficult to benchmark hot loops consistently, so we'll have to wait and see for practical results, I guess.
- Moto7451 9y agoPast AMD CPUs have had an ARM core with TrustZone. http://www.amd.com/en-us/innovations/software-technologies/security http://www.amd.com/en-us/innovations/software-technologies/s...
- nullc 9y agoSame kinds of hardware backdoors as Intel. Of course. :)
- anonymousDan 9y agoProbably Secure Memory Encryption (SME) and/or Secure Encrypted Virtualization (SEV). See e.g. http://amd-dev.wpengine.netdna-cdn.com/wordpress/media/2013/12/AMD_Memory_Encryption_Whitepaper_v7-Public.pdf http://amd-dev.wpengine.netdna-cdn.com/wordpress/media/2013/... Think of it as AMD's answer to Intel SGX, albeit with a quite different design.