Soru

Zorluk: KolayHardware and Embedded Systems Security

An organization is deploying new laptop computers to remote workers and wants to store full-disk encryption keys securely within dedicated microcontrollers soldered directly onto each computer motherboard. Which hardware security component provides this local cryptoprocessor functionality for device integrity verification and key storage?

  1. Trusted Platform Module (TPM)Cevap
  2. B
    Enterprise Hardware Security Module (HSM)
  3. C
    eFuse one-time programmable memory array
  4. D
    Software-defined symmetric cipher accelerator

Cevap

The correct option is the Trusted Platform Module (TPM).
The Trusted Platform Module (TPM) is a secure cryptoprocessor integrated directly onto host motherboards to provide hardware-based cryptographic operations, secure storage for full-disk encryption keys, and system integrity verification through boot measurement.

Adım Adım Çözüm

1
Identify the key requirement in the scenario.
The requirement calls for a motherboard-soldered microchip dedicated to storing encryption keys and attesting host integrity.
Hardware security architecture uses localized cryptoprocessors for endpoint device binding.
2
Evaluate hardware cryptoprocessor capabilities.
The Trusted Platform Module (TPM) fulfills the exact role of an endpoint motherboard-level cryptographic processor.
TPMs securely store cryptographic keys, measurements, and signatures used by full-disk encryption like BitLocker.

Anahtar Kavram

Hardware Root of Trust and Trusted Platform Module (TPM) functions
Bu soruyu puanla