Decentralized Translator of Trust: Supporting Heterogeneous TEE for Critical Infrastructure Protection

被引:2
|
作者
Karanjai, Rabimba [1 ]
Collier, Rowan [2 ]
Gao, Zhimin [3 ]
Chen, Lin [4 ]
Fan, Xinxin [5 ]
Suh, Taeweon [6 ]
Shi, Weidong [1 ]
Xu, Lei [2 ]
机构
[1] Univ Houston, Houston, TX 77004 USA
[2] Kent State Univ, Kent, OH USA
[3] Auburn Univ, Montgomery, AL USA
[4] Texas Tech Univ, Lubbock, TX USA
[5] IoTeX, Menlo Pk, CA USA
[6] Korea Univ, Seoul, South Korea
关键词
trusted execution environment; heterogeneous system; decentralization; critical infrastructure protection;
D O I
10.1145/3594556.3594626
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Trusted execution environment (TEE) technology has found many applications in mitigating various security risks in an efficient manner, which is attractive for critical infrastructure protection. First, the natural of critical infrastructure requires it to be well protected from various cyber attacks. Second, performance is usually important for critical infrastructure and it cannot afford an expensive protection mechanism. While a large number of TEE-based critical infrastructure protection systems have been proposed to address various security challenges (e.g., secure sensing and reliable control), most existing works ignore one important feature, i.e., devices comprised the critical infrastructure may be equipped with multiple incompatible TEE technologies and belongs to different owners. This feature makes it hard for these devices to establish mutual trust and form a unified TEE environment. To address these challenges and fully unleash the potential of TEE technology for critical infrastructure protection, we propose DHTee, a decentralized coordination mechanism. DHTee uses blockchain technology to support key TEE functions in a heterogeneous TEE environment, especially the attestation service. A Device equipped with one TEE can interact securely with the blockchain to verify whether another potential collaborating device claiming to have a different TEE meets the security requirements. DHTee is also flexible and can support new TEE schemes without affecting devices using existing TEEs that have been supported by the system.
引用
收藏
页码:85 / 94
页数:10
相关论文
共 50 条
  • [1] Trust and Reputation Management for Critical Infrastructure Protection
    Caldeira, Filipe
    Monteiro, Edmundo
    Simoes, Paulo
    [J]. GLOBAL SECURITY, SAFETY, AND SUSTAINABILITY, 2010, 92 : 39 - 47
  • [2] Trust and reputation management for critical infrastructure protection
    Caldeira, Filipe
    Monteiro, Edmundo
    Simoes, Paulo
    [J]. INTERNATIONAL JOURNAL OF ELECTRONIC SECURITY AND DIGITAL FORENSICS, 2010, 3 (03) : 187 - 203
  • [3] A Heterogeneous Sensor Network for the Protection of Critical Infrastructure
    Berizzi, Fabrizio
    Callegari, Christian
    Giordano, Stefano
    [J]. PROCEEDINGS OF 2014 MEDITERRANEAN MICROWAVE SYMPOSIUM (MMS2014), 2014, : 349 - 354
  • [4] Trust Management in Collaborative Systems for Critical Infrastructure Protection
    Aali, Nawal Ait
    Baina, Amine
    Echabbi, Loubna
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2018,
  • [5] Introduction to "Security and Critical Infrastructure for Cloud, IoT and Decentralized Trust" minitrack
    Yeager, William J.
    Morin, Jean-Henry
    [J]. PROCEEDINGS OF THE 51ST ANNUAL HAWAII INTERNATIONAL CONFERENCE ON SYSTEM SCIENCES (HICSS), 2018, : 5665 - 5665
  • [6] Managing trust in critical infrastructure protection information sharing systems
    Sabo, JT
    [J]. ISSE 2004 - SECURING ELECTRONIC BUSINESS PROCESSES, 2004, : 271 - 280
  • [7] Enhancement of Critical Financial Infrastructure Protection Using Trust Management
    Elshaafi, Hisain
    McGibney, Jimmy
    Mulcahy, Barry
    Botvich, Dmitri
    [J]. SECURE AND TRUST COMPUTING, DATA MANAGEMENT, AND APPLICATIONS, 2011, 187 : 156 - 165
  • [8] SBFT: a Scalable and Decentralized Trust Infrastructure
    Gueta, Guy Golan
    Abraham, Ittai
    Grossman, Shelly
    Malkhi, Dahlia
    Pinkas, Benny
    Reiter, Michael
    Seredinschi, Dragos-Adrian
    Tamir, Orr
    Tomescu, Alin
    [J]. 2019 49TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS (DSN 2019), 2019, : 568 - 580
  • [9] Trust building and the European Reference Network for Critical Infrastructure Protection community
    Ward, David
    Kourti, Naouma
    Lazari, Alessandro
    Cofta, Piotr
    [J]. INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2014, 7 (03) : 193 - 210
  • [10] DHTee: Decentralized Infrastructure for Heterogeneous TEEs
    Karanjai, Rabimba
    Gao, Zhimin
    Chen, Lin
    Fan, Xinxin
    Suh, Teweon
    Shi, Weidong
    Xu, Lei
    [J]. 2023 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN AND CRYPTOCURRENCY, ICBC, 2023,