ååã®èšäºã§ã¯ãç£æ¥çšã¹ã€ããã®ãã¡ãŒã ãŠã§ã¢ã»ãã¥ãªãã£ã®ç 究ã®é²å±ã«ã€ããŠèª¬æããŸããã çºèŠãããã¢ãŒããã¯ãã£äžã®æ¬ é¥ã«ããããã¡ãŒã ãŠã§ã¢ã€ã¡ãŒãžãåœè£ ãããããã§ã¹ã€ãããæŽæ°ãããããã§ã³ãŒããå®è¡ããããšã容æã«ãªãããšã瀺ããŸããïŒå Žåã«ãã£ãŠã¯ãã¹ã€ããã«æ¥ç¶ããã¯ã©ã€ã¢ã³ãã§ãïŒã ããã«ãåã蟌ã¿ã³ãŒããããã€ã¹ã«åºå®ããæ©èœã«ã€ããŠã説æããŸããã 圌ãã¯ããã¡ãŒã ãŠã§ã¢ã³ãŒãã®äœå質ãšããã€ããªè匱æ§ã®æªçšã«å¯Ÿããä¿è·ã¡ã«ããºã ã®æ¬ åŠã匷調ããŸããã
匷åãªãã¡ãŒã ãŠã§ã¢ã»ãã¥ãªãã£ã¢ãã«ã®å®éã®äŸãæäŸããããšãçŽæããŸãããå®è¡å¯èœã³ãŒãã®å€æŽã¯ãæœåšçãªæ»æè ã«ãšã£ãŠéåžžã«éèŠãªã¿ã¹ã¯ã§ãã
ææ°ã®x86ãã©ãããã©ãŒã ã®ã¢ãŒããã¯ãã£ã®æãç¥ç§çãªã³ã³ããŒãã³ãã§ããIntel Management Engineãµãã·ã¹ãã ãã芧ãã ããã
ã¯ããã«
ãŸããäž»é¡åéãå®å šã«ç解ããŸãã ããã¯äœã§ãã©ãã§ããªãããããæ¥ãã®ã§ããïŒ
2005幎ã«ãIntelã¯Active Management TechnologyïŒAMTïŒããŒãžã§ã³1.0ãå°å ¥ããŸãã-ãªã¢ãŒã管çïŒç®¡çãã€ã³ãã³ããªãæŽæ°ã蚺æããã©ãã«ã·ã¥ãŒãã£ã³ã°ãªã©ïŒãšãã€ã³ããªãžã§ã³ããã©ãããã©ãŒã 管çã€ã³ã¿ãŒãã§ã€ã¹ãã¯ãããžã®äžçš®ã§ãããã¹ã¯ãããã³ã³ãã¥ãŒã¿ã·ã¹ãã ã®ä¿è·ã®ããã®ãœãªã¥ãŒã·ã§ã³ïŒIPMIïŒãµãŒããŒã§äœ¿çšãããŸãã
[ ããããã®å³é¢]
AMT 1.0ã®ã¢ãŒããã¯ãã£ã¯ããããã»ããã«çµ±åããããã€ã¯ãã³ã³ãããŒã©ãŒïŒç®¡çãšã³ãžã³ïŒã«åºã¥ããŠããã次ã®ãããªéåžžã«åªããæ©èœãåããŠããŸãã
- ã¡ã€ã³CPUãšå ±æãããããã¯ãŒã¯ã€ã³ã¿ãŒãã§ã€ã¹ïŒã€ãŒãµãããïŒãžã®åž¯åå€ã¢ã¯ã»ã¹ããã ããç¬èªã®ãªã³ã¯ã¬ãã«ã³ã³ãããŒã©ãŒãæã¡ããã±ããããã«ããããããã¹ãŠã®çä¿¡ãããã¯ãŒã¯ãã©ãã£ãã¯ãç£èŠããŸãïŒãã±ãããã£ã«ã¿ãŒã䜿çšïŒåœŒã®ããã«èšèšãããŸããã OSã®å ŽåïŒã¡ãªã¿ã«ãAMTã®åäœã«åœ±é¿ãäžããªããã¬ãŒã³ã¹ãšã¹ããŒã¿ã¹ïŒããã®ãã©ãã£ãã¯ã¯è¡šç€ºãããªããªããŸãã
- TLSæå·åãåããå éšWebãµãŒããŒã
- åšèŸºæ©åšãžã®ã¢ã¯ã»ã¹ãäžæ®çºæ§ã¡ã¢ãªïŒãã¡ãŒã ãŠã§ã¢ãšåãå ŽæïŒã§ã®åšèŸºæ©åšã«é¢ããæ å ±ã®åä¿¡ãšä¿åã
ãŸãããã®ãã€ã¯ãã³ã³ãããŒã©ãŒã¯ãã³ã³ãã¥ãŒã¿ãŒã·ã¹ãã ã®ãã¶ãŒããŒãã«é»åãäŸçµŠããããšãïŒã€ãŸãããŠãŒã¶ãŒãé»æºãã¿ã³ãæŒãåã§ãã£ãŠãã³ã³ãã¥ãŒã¿ãŒãé»æ°ãããã¯ãŒã¯ã«æ¥ç¶ããããšãïŒã«åäœãéå§ããŸãã
ãã®ããã管çãšã³ãžã³ã¯åžžã«ãªã³ã«ãªã£ãŠããŸãããAMTæ©èœã䜿çšããã«ã¯ãBIOSã»ããã¢ãããããæ£ç¢ºã«ã¯MEBxã»ããã¢ããã§ã®ã¢ã¯ãã£ããŒã·ã§ã³ïŒãã¹ã¯ãŒãããããã¯ãŒã¯ãã©ã¡ãŒã¿ãŒã®èšå®ãªã©ïŒãå¿ èŠã§ãã
[ ããããã®ã¹ã¯ãªãŒã³ã·ã§ãã]
æåã®ãšã³ããªã®ããã©ã«ãã®ãã¹ã¯ãŒãïŒãadminãïŒã¯ãç¹å®ã®èŠä»¶ãæºããæ°ãããã¹ã¯ãŒãã«å€æŽããå¿ èŠããããŸããå°ãªããšã8æåããã®ãã¡å°ãªããšã1æ¡ã倧æåãç¹æ®æåãå¿ èŠã§ãã ã·ã³ãã«ã
AMTäºæã³ã³ãã¥ãŒã¿ãŒã·ã¹ãã ãã»ããã¢ããããåŸããªã¢ãŒã管çè
ãããã¯ãŒã¯æ©èœã䜿çšå¯èœã«ãªããŸãïŒäœ¿çšããã«ã¯ãã°ã€ã³ãšãã¹ã¯ãŒããå¿ èŠã§ãïŒïŒ
- ããŒããŠã§ã¢ã€ã³ãã³ããª;
- Webã€ã³ã¿ãŒãã§ãŒã¹ïŒããŒã16992ãä»ããHTTPçµç±ïŒ;
- Serial Over LANïŒSOLïŒ-ãããã¯ãŒã¯ãä»ããä»®æ³COMããŒããã³ã³ãã¥ãŒã¿ãŒã®é»æºããªã³/åèµ·å/ãªãã«ããããBIOSã»ããã¢ããã¡ãã¥ãŒã«ã¢ã¯ã»ã¹ãããã§ããŸãã
- IDE-RedirectionïŒIDE-RïŒ-ããŒã«ã«ããŒãããã€ã¹ãããªã¢ãŒãã«ããŒãããªãã€ã¬ã¯ããããªãã·ã§ã³ïŒäºåã«æºåãããã·ã¹ãã ã€ã¡ãŒãžïŒã
AMT 1.0ã¯ããããã»ããã®ãµãŠã¹ããªããžã«çµ±åãããIntel 82573Eã·ãªãŒãºã®ã¬ãããã€ãŒãµãããã³ã³ãããŒã©ãŒãããã¯ãŒã¯ã¢ãžã¥ãŒã«ïŒInput / Output Controller HubãICHïŒã«å®è£ ãããŸããã
ãã®åŸã2006幎ã«AMTããŒãžã§ã³2.0以éããã€ã¯ãã³ã³ãããŒã©ã¯ãããã»ããã®ããŒã¹ããªããžïŒGraphics and Memory Controller HubãGMCHïŒã«ç§»ãããŸããã ãã®ãšãããµãã·ã¹ãã ã¯Intel Management EngineïŒMEïŒããŒãžã§ã³2.0ã§åœåãããŸããã
[ ããããã®å³é¢]
åæã«ãIntel MEã«åºã¥ããŠå®è£ ãããäžé£ã®ãã¯ãããžãŒã§ããAMTãTrusted Execution TechnologyïŒTXTïŒãVirtualization TechnologyïŒVTïŒãæå®ããIntel vProãã©ã³ããç»å ŽããŸããã ãã®ãªã¹ãã«ã¯ãåŸã«Identity Protection TechnologyïŒIPTïŒããã³Anti-TheftïŒATïŒãå«ãŸããŠããŸããã
åæã«ãIntel MEã«ã¯ããã«åªããæ©èœãåãã£ãŠããŸãããããšãã°ãå éšDMAã³ã³ãããŒã©ãŒãä»ããã³ã³ãã¥ãŒã¿ãŒã®RAMã®ãã¹ãŠã®ã³ã³ãã³ããžã®ãã«ã¢ã¯ã»ã¹ãããã³ã¢ãã¿ãŒã«è¡šç€ºããããããªã¹ããªãŒã ã®ç£èŠãå¯èœã«ãªããŸããïŒãã ããçµ±åã°ã©ãã£ãã¯ã³ã¢ã䜿çšãããŠããå Žåã®ã¿ïŒ ã
次第ã«ããã®ãµãã·ã¹ãã ã§ããŸããŸãªã·ã¹ãã æ©èœããã³ã°ã¢ãããå§ããŸããïŒäžéšã¯ä»¥åã¯BIOSã§åŠçãããŠããŸããïŒãã³ã³ãã¥ãŒã¿ãŒãã©ãããã©ãŒã ã®åäœãä¿èšŒããŸãã
- Advanced Control and Power InterfaceïŒACPIïŒããã³Alert Standard FormatïŒASFïŒæ©èœã®äžéšã
- Quiet System TechnologyïŒQSTïŒ;
- çµ±åã¯ããã¯å¶åŸ¡ïŒICCïŒ;
- ãã©ã¹ããããã©ãããã©ãŒã ã¢ãžã¥ãŒã«ïŒTPMïŒ;
- ...
ããã³ãã®ä»ã®æè¡ã
AMTãéæ¢ããŠããããç©æ¥µçã«éçºãããŠããŸããïŒäœ¿çšããããããã³ã«ã®æ§æã¯å€åããŠããŸããïŒããšãã°ãããŒã16993ãä»ããŠHTTPSãµããŒããè¿œå ãããŸããïŒããªã¢ãŒã管çè åãã®ããŒãžã§ã³6.0ã§ã¯ããªã¢ãŒããã¹ã¯ãããæ©èœãç»å ŽããKVMïŒããŒããŒããããªããŠã¹ïŒãªã©ã§ããã
Intel AMTã®éçºã®è©³çŽ°ã«ã€ããŠã¯ã ãã¡ããã芧ãã ãã ã
ãã ããå®è£ ã³ã¹ããé«ãããããã®ãµãã·ã¹ãã ã¯ããã€ãã®äŸå€ãé€ããIntel Qã·ãªãŒãºãããã»ãããæèŒãããã¶ãŒããŒãã«ã®ã¿ååšããŸããã
GMCH | ICH | ME / AMTããŒãžã§ã³ |
---|---|---|
Q965 | ICH8 | ME 2.xïŒAMT 2.xïŒ |
GM965 / GME965 / GL960 / GLE960 / PM965 | ICH8M | ME 2.5.xïŒAMT 2.5.xïŒ<-ã©ãããããã§ã®åç»å Ž |
Q35 | ICH9 | ME 3.xïŒAMT 3.xïŒ |
GM45 / PM45 | ICH9M | ME 4.xïŒAMT 4.xïŒ<-ã©ãããããã®ã¿ |
Q45 | ICH10 | ME 5.xïŒAMT 5.xïŒ |
ããã§ã¯ãvProããŒã ãã¬ãŒãã䜿çšããéã®ãã¹ãŠã®ç¹ç°æ§ããé«ã³ã¹ãã®ããã«ïŒãã·ã¢é£éŠã§ã¯ïŒå°æ°ããç²åŸã§ããªãã£ãã®ã¯ãªãã§ããïŒä»ã®çç±ã§ïŒã
å®éã2010幎ãããããŒã¹ããªããžã®æ©èœãããã¯ã®äžéšïŒã°ã©ãã£ãã¯ã³ã¢ãã¡ã¢ãªã³ã³ãããŒã©ãŒãªã©ïŒãCPUã±ãŒã¹ã«è»¢éããããšãšãã«ãIntel MEãµãã·ã¹ãã ããã¹ãŠã®Intelãããã»ããã«çµã¿èŸŒãŸãå§ããŸããã åæã«ãMEã³ã³ãããŒã©ãŒã¯ãããã»ããã±ãŒã¹-ãã©ãããã©ãŒã ã³ã³ãããŒã©ãŒããïŒPCHïŒã«æ®ããŸããã ãããã¯5ã·ãªãŒãºä»¥äžã®ãããã»ããã§ãã
ãã®ããããã¹ã¯ãããããã³ã©ãããããçšã®ä»¥äžã®ããŒãžã§ã³ã®å¹Žè¡šïŒ
PCH | ME / AMTããŒãžã§ã³ |
---|---|
5ã·ãªãŒãºãããã»ãã | ME 6.xïŒAMT 6.xïŒ |
6ã·ãªãŒãºãããã»ãã | ME 7.xïŒAMT 7.xïŒ |
7ã·ãªãŒãºãããã»ãã | ME 8.xïŒAMT 8.xïŒ |
8ã·ãªãŒãºãããã»ãã | ME 9.xïŒAMT 9.xïŒ |
9ã·ãªãŒãºãããã»ãã | ME 9.5.x / 10.xïŒAMT 9.5.x / 10.xïŒ |
100ã·ãªãŒãºãããã»ãã | ME 11.xïŒAMT 11.xïŒ |
泚ïŒä»æ¥ãŸã§ã®AMTæ©èœã¯ãQã·ãªãŒãºãããã»ãããã€ãŸã vProããŒã ãã¬ãŒããåããæ©åšã®ã¿ã
ãã¹ã¯ããããšã©ãããããã®ã¿ãèããŸããïŒ ããããIntelãçãã§ãïŒ
åãéåœãIntelã®ãµãŒããŒãã©ãããã©ãŒã ã«åœ±é¿ãäžããŸããããµãã·ã¹ãã ãçµã¿èŸŒãŸããŠããŸãããIntel Server Platform ServicesïŒSPSïŒãšããç°ãªãååãä»ããããŠããŸãã SoCïŒSystem-on-a-ChipïŒã«Intel Trusted Execution EngineïŒTXEïŒãšããååã§ç»å ŽããŸããã
ãã®çµæãIntelãããã»ãã/ SoCãæèŒããææ°ã®ã¢ãã€ã«/ã©ããããã/ãã¹ã¯ããã/ãµãŒããŒ/ã³ã³ãã¥ãŒã¿ãŒãã©ãããã©ãŒã ã®ã¢ãŒããã¯ãã£ã«ã¯ãæãæ©å¯æ§ã®é«ãïŒã·ã¹ãã ãŠãŒã¶ãŒããã®ïŒå®è¡ç°å¢ãšIntel MEãµãã·ã¹ãã ãå«ãŸããŸãã ãã®ã¢ãŒããã¯ãã£ã®éçºã«ãããŠãIntelã䟵害ããã®ä¿è·ã«çå£ã«åãçµãããšãäœåãªããããããšã¯é©ãããšã§ã¯ãããŸããã
æ¯ãåžã蟌ã¿ããã®ãµãã·ã¹ãã ã®ã¢ãŒããã¯ãã£ãæ€èšããŠãé©çšãããã»ãã¥ãªãã£ã¢ãã«ãç解ããŸãã ãããèœã¡çãã®ã«åœ¹ç«ã€ãšãããïŒ
Intel MEã¢ãŒããã¯ãã£
Intel Management EngineïŒMEïŒã¯ãããŸããŸãªIntelãã¯ãããžãŒã®ããŒããŠã§ã¢ããã³ãœãããŠã§ã¢ãµããŒããæäŸããã³ã³ãã¥ãŒã¿ãŒãã©ãããã©ãŒã ã«çµã¿èŸŒãŸãããµãã·ã¹ãã ã§ãã
ãã§ã«è¿°ã¹ãããã«ããã®ãµãã·ã¹ãã ã®æåã®ããŒãžã§ã³ã¯Intelãã¥ã¢ã«ã·ã£ãŒã·ãããã»ããã«åºã¥ããŠããŸããã 次ã«ãæšæºARC32ã³ãã³ãã·ã¹ãã ãåããARCtangent-A4ãMEã³ã³ãããŒã©ãŒã®ããŒã¹ã¢ãã«ãšããŠäœ¿çšããŸããã
[æ¬1ããã®æç²]
ã·ã³ã°ã«ã±ãŒã¹ãããã»ããã¯ãã³ã³ãã¯ãã³ãã³ãã·ã¹ãã ARCompactïŒARC16 / 32ïŒã§ARCtangent-A5 / ARC600ãæ¢ã«äœ¿çšããŠããŸãã
[æ¬1ããã®æç²]
Intel SoCïŒãã®ãµãã·ã¹ãã ã¯Intel TXEãšåŒã°ããŸãïŒã§ã¯ãSPARCãMEã³ã³ãããŒã©ãŒã®ããŒã¹ã¢ãã«ãšããŠäœ¿çšãããŸãã
ARCãSPARCãªã© éã«ãããšäžå¿«ã«ãªããŸãïŒ
倧äžå€«ãIntelããããåŠçããŸãããææ°ã®ãã©ãããã©ãŒã ïŒSkylakeã100ã·ãªãŒãºãããã»ãããIntel ME 11.xïŒã§ã¯ãMEã³ã³ãããŒã©ãŒã®ã¢ãŒããã¯ãã£ã¯... x86ã§ãïŒ
ã¯ããã¯ããå¥ã®x86ããããã»ããã«æèŒãããŠããŸãã
ãã ããIntel MEãµãã·ã¹ãã ã®ã³ã³ããŒãã³ãã®æ§æïŒããŒãžã§ã³2.0以éïŒã¯å€æŽãããŠããŸããã ããã¯ïŒ
- MEã³ã³ãããŒã© -ãããã»ããã«çµã¿èŸŒãŸãã32ãããRISCã¿ã€ãã®ãã€ã¯ãã³ã³ãããŒã©ã§ãå éšROMãšSRAMãåããŠããŸãã
- MEé åã¯SPIãã©ãã·ã¥ã¡ã¢ãªã«ãããIntelã«ãã£ãŠéçºããã³çœ²åãããMEã³ã³ãããŒã©ãã¡ãŒã ãŠã§ã¢ãæ ŒçŽãããŸãïŒãããã£ãŠã Intel MEãã¡ãŒã ãŠã§ã¢ã§ã ïŒã
- ME UMA -MEã³ã³ãããŒã©ãŒãé€ããã¹ãŠã®ãŠãŒã¶ãŒããé ãããŠããŸããã³ã³ãã¥ãŒã¿ãŒã®RAMå ã®é åïŒ16ã32 MBïŒã¯ããã¡ãŒã ãŠã§ã¢ããã¹ãããã³å®è¡ããããã®ã©ã³ã¿ã€ã ã¡ã¢ãªãšããŠäœ¿çšãããŸãã
- Management Engine InterfaceïŒMEIïŒ ïŒä»¥åã¯Host Embedded Controller InterfaceïŒHECIïŒãšåŒã°ããŠããŸããïŒã¯ãPCIæ§æã¹ããŒã¹å ã®ã¬ãžã¹ã¿ã®ã»ããã§ãããMMIOå ã®ãšãªã¢ã§ããMEIOã¯ãMEã³ã³ãããŒã©ãŒïŒå®éããœãããŠã§ã¢ãå®è¡ããããã®å¯äžã®éä¿¡ãã£ãã«Intel MEãµãã·ã¹ãã ãæèŒããCPUäžïŒ;
- å¥ã®MACã¯ãã³ã³ãã¥ãŒã¿ã·ã¹ãã ã®ãªã¢ãŒã管çã®ããã«ã垯åå€MEã³ã³ãããŒã©ã«å ±éã®ç©çãããã¯ãŒã¯ã€ã³ã¿ãŒãã§ã€ã¹ãžã®ã¢ã¯ã»ã¹ãæäŸãããªã³ã¯ã¬ãã«ã³ã³ãããŒã©ã§ãã
- BIOSã®äžéšã®ã¢ãžã¥ãŒã«ã¯ããã©ãããã©ãŒã ãåæåããMEIãä»ããŠMEã³ã³ãããŒã©ãŒã«äœæ¥çµæãå ±åãã圹å²ãæãããŸãã
Intel vProããŒã ãã¬ãŒããããå ŽåãIntel MEãµãã·ã¹ãã ã«ã¯ã ME BIOS ExtenstionïŒMEBxïŒ BIOSã¢ãžã¥ãŒã«ãè¿œå ãããŸããããã¯ãã°ã©ãã£ã«ã«ã€ã³ã¿ãŒãã§ã€ã¹ïŒäžèšåç §ïŒãæäŸããMEIãä»ããŠAMTãæå¹åããã³æ§æããŸãã
ãããã£ãŠããªã³ã°3ã©ã³ã¿ã€ã ïŒåŸæ¥ããåŒã°ããŠããããã«ïŒã1ã€ãããŸãã ãã®ç¹æš©ã¯ãMEã³ã³ãããŒã©ãŒã«äžããããŠããæ©èœã«ãã£ãŠæ±ºå®ãããŸãïŒãããã«ã€ããŠã¯äžèšã§èª¬æãããŠããŸãïŒãç§å¯ã¯ããœãããŠã§ã¢ïŒããã³ããŒãã®è£œåçã®ããŒããŠã§ã¢ããïŒãå¶åŸ¡ããæ©èœãå®å šã«æ¬ åŠããŠããããã§ãã
MEã³ã³ãããŒã©ã¢ãŒããã¯ãã£
MEã³ã³ãããŒã©ã®å éšãARC / SPARC / x86ãã€ã¯ãããã»ããµã«å ããŠïŒ
- ME ROM-MEã³ã³ãããŒã©ã®éå§ã³ãŒããä¿åãããŠããäžæ®çºæ§ã®æžãæãäžå¯èœãªã¡ã¢ãªã
- ME SRAM-åäœã®åæ段éãªã©ãME UMAãå©çšã§ããªãå Žåã«MEã³ã³ãããŒã©ã䜿çšããRAMã
- ã¡ã¢ãªãæäœããéã®ããã©ãŒãã³ã¹ãåäžãããããã®ã³ãŒããã£ãã·ã¥ãšããŒã¿ãã£ãã·ã¥ã
- C-LinkïŒã³ã³ãããŒã©ãŒãªã³ã¯ïŒ-MEã³ã³ãããŒã©ãŒãS5ïŒã·ã¹ãã ã·ã£ããããŠã³ïŒ/ S3ïŒã¹ãªãŒãã¢ãŒãïŒã¢ãŒãã§åšèŸºæ©åšããŒããŠã§ã¢ãšããåãã§ããããã«ãããã¹ã
- ããŸããŸãªããŒããŠã§ã¢ãããã¯ïŒ
- é«ç²ŸåºŠã¿ã€ããŒãšWDTã
- å²ã蟌ã¿ã³ã³ãããŒã©ãŒã
- ã¡ã¢ãªã³ã³ãããŒã©ãšDMAã
- HECI / MEIã€ã³ã¿ãŒãã§ãŒã¹;
- RNGãæå·åæ©èœããã³å§çž®æ©èœã®ã¢ã¯ã»ã©ã¬ãŒã¿ãŒã
[æ¬2ããã®æç²]
ãã®å¯ããã¹ãŠå¶åŸ¡ããã³ãŒããã©ã®ããã«å€æŽããä¿è·ãããããç解ããæãæ¥ãŸããã
Intel MEãã¡ãŒã ãŠã§ã¢
Intel MEãã¡ãŒã ãŠã§ã¢ã¯ãã³ã³ãã³ãã«å¿ããŠã2ã€ã®ã¿ã€ãã«åããããŸãã
- 1.5 MBãå¿ èŠæäœéââã®ããŒãžã§ã³ã
- 5 MBã®ãã«ããŒãžã§ã³ã
ãã¡ãŒã ãŠã§ã¢ã®ã¿ã€ãã¯ãç¹å®ã®ãã¯ãããžãŒãå®è£ ãããŠããã¢ããªã±ãŒã·ã§ã³ã¢ãžã¥ãŒã«ã®æ§æã決å®ããŸãïŒAMTãIPTãªã©ïŒã ç°ãªããã¡ãŒã ãŠã§ã¢ã§åãåºæ¬çãªéšåããããŸããïŒ
- ãã¡ãŒã ãŠã§ã¢ããã®æåã®å®è¡å¯èœã¢ãžã¥ãŒã«ãBring Upã
- ã«ãŒãã«ãRTOS Core ThreadX;
- ããã€ãã®ãã©ã€ããŒãšãµãŒãã¹ã
Intel MEãã¡ãŒã ãŠã§ã¢ã®å 容ã®äžè¬çãªèª¬æã¯ãåèæç®ãªã¹ãã®ããã¯2ã«ãããŸããããã詳现ãªæ§é ïŒåæçã«å解ïŒã¯ãããšãã°ãIntel MEãã¡ãŒã ãŠã§ã¢ã解åããããã®ãã®ã¹ã¯ãªããã«ãããŸãã
é çªã«è¡ããŸãããã
ãã©ãã·ã¥SPIã«ã¯ããã€ãã®é åããããŸãã
- ä»ã®ãã¹ãŠã®é åãžã®ãã€ã³ã¿ãŒãšããã®ã¡ã¢ãªã®ãŠãŒã¶ãŒã®èªã¿åã/æžã蟌ã¿ç¹æš©ãæ ŒçŽãããã©ãã·ã¥èšè¿°åã éåžžããããã®èšè¿°åã¯ãMEã³ã³ãããŒã©ãŒèªäœãé€ããã¹ãŠã®ãŠãŒã¶ãŒã®MEé åã®æžãæããçŠæ¢ããŸãã
- GbEïŒã®ã¬ãããã€ãŒãµãããïŒ;
- MEãMEã³ã³ãããŒã©ãŒã®ãã¡ãŒã ãŠã§ã¢ã¯ããã«ä¿åãããŸãã
- BIOS
- 3PDSïŒãµãŒãããŒãã£ããŒã¿ã¹ãã¬ãŒãžïŒããªãã·ã§ã³ã®é åã
[ ããããæ®åœ±ããåç]
次ã«ãMEãªãŒãžã§ã³èªäœãèŠãŠã¿ãŸããããæåããã®ã³ã³ãã³ãã®äŸã次ã«ç€ºããŸãã
ããã¯ããã©ãã·ã¥ããŒãã£ã·ã§ã³ããŒãã«ïŒFPTïŒãMEãã¡ãŒã ãŠã§ã¢ããŒãã£ã·ã§ã³ããŒãã«ã§ãã ããŸããŸãªã¿ã€ãïŒã³ãŒããããŒã¿ãä»®æ³é åãªã©ïŒã»ã¯ã·ã§ã³ãšãã®ãã©ã¡ãŒã¿ãŒãžã®ãã€ã³ã¿ãŒãæ ŒçŽããŸãã ãã®ããŒãã«ã®æŽåæ§ã¯ã1ãã€ãã®ãªãã»ããã§1ãã€ãã®ãããµã ã«ãã£ãŠå¶åŸ¡ãããŸãã
å®è¡å¯èœãªã»ã¯ã·ã§ã³ãã€ãŸã å®è¡å¯èœã³ãŒããä¿åãããã®ã éåžžããããã¯ããã€ããããŸãããã®ãã¡ã®1ã€ãæ€èšããŠãã ããã
ã³ãŒãã»ã¯ã·ã§ã³ã®å é ã«ã¯ãããããŒïŒãµãŒãã¹ããŒã¿ãšããžã¿ã«çœ²åä»ãïŒããã³ã¢ãžã¥ãŒã«ã®ããŒãã«ã§æ§æããããããã§ã¹ãããããŸãã
äžèšã®ãã³ãã§ã¯ã2048ãããã®ãªãŒãã³RSAããŒïŒã»ã¯ã·ã§ã³ã®å é ãã80hãªãã»ããã®ã¢ãžã¥ãŒã«ãš180hãªãã»ããã®ææ°ïŒã確èªã§ããŸãã ããã«ã256ãã€ãã®çœ²åãç¶ããŸãã
Intelã¯ç§å¯éµã䜿çšããŠããããã§ã¹ãããããŒã®äžéšãšã¢ãžã¥ãŒã«ããŒãã«ïŒæ¬¡ã®ãã³ããåç §ïŒã«çœ²åããåä¿¡ãã眲åãšå ¬ééµãæ€èšŒçšã«é©çšããŸãã
ãããŠããã®ã»ã¯ã·ã§ã³ã®ã¢ãžã¥ãŒã«ã®è¡šã®æçã¯æ¬¡ã®ãšããã§ãã
ãã®ããŒãã«ã«ã¯ãããã€ãã®ãã©ã¡ãŒã¿ãŒãšSHA256ããã·ã¥ã瀺ãããŠããã¢ãžã¥ãŒã«ããããŒãå«ãŸããŠããŸãïŒããããŒå ã®ãªãã»ãã14hïŒã
ç¬èªã®RSA-2048ããŒãã¢ãçæããŠã»ã¯ã·ã§ã³ã«çœ²åããããšã¯æ©èœããŸãããããã¯ãæ¥ç¶ãããå ¬éããŒã®æŽåæ§ããIntelå ¬éããŒã®SHA256ããã·ã¥ãä¿åããME ROMã®éå§ã³ãŒãã«ãã£ãŠãã§ãã¯ãããããã§ãã
ãã®çµæãMEãã¡ãŒã ãŠã§ã¢ã³ãŒãã»ã¯ã·ã§ã³ã®æ€èšŒã¹ããŒã ãå³ã«èŠçŽã§ããŸãã
åã³ãŒãã»ã¯ã·ã§ã³ã¯ããã®ã¹ããŒã ã«ãã£ãŠæ€èšŒãããŸãã
ããã¯ããã¡ãŒã ãŠã§ã¢ãåœé ããä¿è·ããã«ã¯ååã§ãã SPIãã©ãã·ã¥ã¡ã¢ãªã®MEé åãããã°ã©ã ã§æžãæããããšã¯ã§ããŸããïŒFlashèšè¿°åã®ã¢ã¯ã»ã¹èš±å¯ãæãåºããŠãã ããïŒãããŒããŠã§ã¢ã¯ãã¡ãããã®å¶éãåé¿ã§ããŸãããèªèšŒå¶åŸ¡ããªãã«ããªãã§ãã ããã
æåŸã«ããã€ããªè匱æ§ã«å¯Ÿããä¿è·ã«ç®ãåããŸãããã
MEãã¡ãŒã ãŠã§ã¢ã®å®è¡å¯èœã³ãŒãå šäœããããŸããŸãªç®çã®ããã«ã¢ãžã¥ãŒã«ã«åå²ãããŠããããšãããããŸããã
[æ¬1ããã®æç²]
MEã³ã³ãããŒã©ãŒã«ã¯ãç¹æš©ã¢ãŒããšãŠãŒã¶ãŒã¢ãŒãïŒCPUã®ã«ãŒãã«ã¢ãŒããšãŠãŒã¶ãŒã¢ãŒãã®ã¢ããã°ïŒã®2ã€ã®åäœã¢ãŒãããããŸãã ç¹æš©ã¢ãŒãã¯ããŸããããŒããŠã§ã¢ãªãœãŒã¹ã«ã¢ã¯ã»ã¹ããæ©èœãšããã®ã¢ãžã¥ãŒã«ã«å²ãåœãŠãããã¡ã¢ãªç¯å²å€ã®ã¢ãã¬ã¹ã«ã¢ã¯ã»ã¹ããæ©èœã«ãã£ãŠåºå¥ãããŸãã
åã¢ãžã¥ãŒã«ãèµ·åãããæå®ãããã¢ãŒãïŒãã®ã¢ãžã¥ãŒã«ã®ããããŒå ïŒã§åäœããŸãã
[æ¬1ããã®æç²]
MEãªãŒãžã§ã³å šäœã解æãããšãç¹æš©ã¢ãŒããRTOSã«ãŒãã«ãšäžéšã®ãã©ã€ããŒã«ãã£ãŠäœ¿çšãããŠããããšãããããŸãã ãµãŒãã¹ããã³ã¢ããªã±ãŒã·ã§ã³ã¢ãžã¥ãŒã«ã«ã¯ãäºæ³ã©ããããŠãŒã¶ãŒã¢ãŒãã®ã¿ãå²ãåœãŠãããŸãã
ãããã«
Intel MEãµãã·ã¹ãã ã¯ãææ°ã®ã³ã³ãã¥ãŒã¿ãŒãã©ãããã©ãŒã ïŒIntelãããã»ãã/ SoCã«åºã¥ãïŒã®ã¢ãŒããã¯ãã£ã«äžå¯æ¬ ãªéšåã§ããããšã瀺ããŸããã æããã«ããã®åŠ¥åæ¡ã¯æœåšçãªæ»æè ã«ãã©ãããã©ãŒã ã®ç¡å¶éã®å¶åŸ¡ãæäŸããŸãïŒRAMïŒã·ã¹ãã ã¡ã¢ãªããã€ããŒãã€ã¶ãŒã¡ã¢ãªãSMRAMãACRAMãã°ã©ãã£ãã¯ã³ã¢ã«å²ãåœãŠãããã¡ã¢ãª-GFX UMAïŒã®ãã¹ãŠã®ã³ã³ãã³ããžã®ã¢ã¯ã»ã¹ããããã¯ãŒã¯ã€ã³ã¿ãŒãã§ã€ã¹ãžã®åž¯åå€ã¢ã¯ã»ã¹ïŒãã¹ãŠã®ãããã¯ãŒã¯ãã©ãã£ãã¯ã®ç£èŠïŒãæšæºAMTæ©èœã®äžéšãšããŠã®ãªã¢ãŒãã³ã³ãããŒã«ããã©ãã·ã¥ã¡ã¢ãªã®SPIé åã®æžãæãã ããã«å¯ŸããããŒãã¹ã¯ãæ€åºæ©èœã®å®å šãªæ¬ åŠã§ãã
ããã¯Intel Intelãæ·±å»ãªä¿è·ãæã£ãŠããæ£åœãªçç±ã§ãã çµã¿èŸŒã¿ãããã¯ãŒã¯æ©åšã®ãã³ããŒã¯ãèšèŒãããŠããã»ãã¥ãªãã£ã¢ãã«ãç®æããŠåªåããå¿ èŠããããšèããŠããŸãã 次ã®ååãç¹åŸŽã§ãã
- ããã©ã«ããã¹ã¯ãŒãã®äœ¿çšã®çŠæ¢ã匷åãªãã¹ã¯ãŒãã®èšå®ã匷å¶ããŸãïŒç¹å®ã®èŠä»¶ã«å¯Ÿå¿ïŒã
- ãããã¯ãŒã¯ãããã³ã«ã§ã®æå·åæ©èœã®äœ¿çšã
- å®è¡å¯èœãªãã¡ãŒã ãŠã§ã¢ã³ãŒãå šäœã®æŽåæ§ãšä¿¡é Œæ§ãç£èŠããŸãã
- ãã€ããªè匱æ§ã®æªçšã«å¯Ÿããä¿è·ã¡ã«ããºã ã
AMDã®CPUãšãããã»ããã«åºã¥ããã³ã³ãã¥ãŒã¿ãŒãã©ãããã©ãŒã ã䜿çšããå¯èœæ§ã®ããåŒã³åºãã«ã€ããŠäºåã«ã³ã¡ã³ãããŸãããããã«ã¯ãPlatform Security ProcessorïŒPSPïŒãšåŒã°ããéåžžã«é¡äŒŒãããã¯ãããžãŒããããŸãã å°ãåã2013幎ã«çºè¡šãããŸããã 圌女ã«ã€ããŠã¯ãŸã ããŸãç¥ãããŠããŸãããã ããã§äœããèªãããšãã§ããŸã ã
åç §è³æ
1. A. Kumarããã¢ã¯ãã£ããªãã©ãããã©ãŒã 管çã®åããããã説æïŒIntel VProïŒTMïŒãã¯ãããžãŒã®åã解ãæŸã€ãã2009幎ãIntel Pressã
2. Xiaoyu RuanããPlatform Embedded Security Technology RevealedïŒSafeguarding the Future of Computing with Intel Embedded Security and Management Engineãã2014幎ãAPressã