The application relates to the field of hardware security and
key management, and specifically discloses a key scheduling method and
system based on a security
instruction set, which comprises the following steps: S1, receiving a key operation request, and calling an identity-scene-permission ternary
verification instruction to verify the legality of the request; S2, if the
verification is passed, based on a preset general security instruction subset, dynamically calling corresponding
key generation, distribution or update instructions according to current
business requirements to complete corresponding operations of the key; S3, in the key operation process, synchronously executing a timing
randomization instruction and a
power consumption balancing instruction to protect the key operation process; and S4, after the key is used up, triggering a hardware-level destruction instruction to clear all copies of the key in the memory, the cache and the non-volatile storage medium. The application realizes the whole life cycle management and control of the key through instruction level optimization, takes into account the cross-architecture adaptability and security, and is suitable for high-security requirement scenes.