[Cryptech Tech] Some updates on the Novena FPGA

Joachim Strömbergson joachim at secworks.se
Mon May 12 10:43:20 UTC 2014


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Aloha!

Randy Bush wrote:
> saw.  wanna get the dev path to the fpga in the short term if we
> can. but is any of us gonna have the time to go down that path in the
> short term?  maybe i should not suggest postponing side-channel
> monitoring, as it is tantamount to trying to paint security on
> afterward.

I would say that it is a two step dance.

We do need to consider side-channel issues when we design stuff and
decide on design solutions. But we need to test for side issues in lab,
and should plan for at least one iteration to update implementations to
counter what we find. These iterations and tests can not be done until
we have something to test and thus is not in near term.

Getting help on best practice for side channel silent design and side
channel resting, mitigation mechanism is more important in the short term.

- -- 
Med vänlig hälsning, Yours

Joachim Strömbergson - Alltid i harmonisk svängning.
========================================================================
 Joachim Strömbergson          Secworks AB          joachim at secworks.se
========================================================================
-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2.0.22 (Darwin)
Comment: GPGTools - http://gpgtools.org
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/
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=5V7x
-----END PGP SIGNATURE-----


More information about the Tech mailing list