- Alexander Kornbrust Oracle Security Blog - http://blog.red-database-security.com -

Improve Oracle TDE with Intel AES-NI

Dieser Eintrag stammt von Alexander Kornbrust Am 13 Apr 2010 @ 11:52 In Oracle Security | Kommentarfunktion deaktiviert

I found an interesting whitepaper “[1] Securing the Enterprise with Intel AES-NI” from Intel.

This white paper explains how the new [2] AES-NI instructions in Intel Xeon 5600 series can improve the AES encryption/decryption. When I read the first time about this feature I was impressed.

[3] OpenSSL (AES part) is up to 7 times faster with this new instruction set.

Intel did also some tests with Oracle 11g and [4] Transparent Data Encryption (TDE) in AES-256 CBC mode. The usage of the optimized Intel Integrated Performance Primitives (IPP) shows an 89 percent reduction (3.33 GHz Xeon X5680 vs 2.8 Intel Xeon X5560) against a previous processor.

This is a huge advantage and if you use TDE you should think about using such a new processor.


Dieser Artikel wurde ausgedruckt ab Alexander Kornbrust Oracle Security Blog: http://blog.red-database-security.com

URL zum Artikel: http://blog.red-database-security.com/2010/04/13/improve-oracle-tde-with-intel-aes-ni/

URLs in this post:
[1] Securing the Enterprise with Intel AES-NI: http://www.intel.com/Assets/en_US/PDF/whitepaper/323587.pdf
[2] AES-NI: http://en.wikipedia.org/wiki/AES_instruction_set
[3] OpenSSL: http://software.intel.com/en-us/articles/boosting-openssl-aes-encryption-with-in
tel-ipp/

[4] Transparent Data Encryption: http://www.oracle.com/technology/obe/10gr2_db_vmware/security/tde/tde.htm

Klicken hier zum Drucken.