Design and Implementation of an Integrity Measurement System Based on Windows Trusted Computing Platform

被引:1
|
作者
Yang, Yang [1 ]
Zhang, Huanguo [1 ]
Wan, Li [1 ]
Zou, Bingyu [1 ]
机构
[1] Wuhan Univ, Sch Comp, Wuhan 430072, Peoples R China
关键词
Trusted computing; integrity measurement; transitive trust; information flow; CW_Lite model;
D O I
10.1109/ICYCS.2008.315
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
This paper presents the design and implementation of an integrity measurement system based on Windows trusted computing platform. The trust chain is established from the BIOS lip to the application layer, where the executable codes are taken the load-time measurements before execution. And the measurement system can generate an integrity proof for TPM-based remote attestation. In order to accurately reflect runtime integrity of critical applications, a light weight Clark-Wilson model is introduced for verify information flow integrity guarantee. Our experimental system strengthens the security posture of the platform. With the analysis of the tradeoff between performance and security, our system gives great consideration to the impact which the measurements cause to system performance.
引用
收藏
页码:229 / 233
页数:5
相关论文
共 50 条
  • [21] RT Framework Based on Trusted Computing Platform
    Geng, Xiuhua
    Han, Zhen
    Cai, Ying
    ICSP: 2008 9TH INTERNATIONAL CONFERENCE ON SIGNAL PROCESSING, VOLS 1-5, PROCEEDINGS, 2008, : 2770 - 2773
  • [22] Testing on trust chain of trusted computing platform based on labeled transition system
    Xu, Ming-Di
    Zhang, Huan-Guo
    Yan, Fei
    Jisuanji Xuebao/Chinese Journal of Computers, 2009, 32 (04): : 635 - 645
  • [23] Design and Implementation of Facial Sketch System Based on Cloud Computing Platform and Big data
    An Yan-jun
    Hou Yue
    MATERIAL SCIENCE, CIVIL ENGINEERING AND ARCHITECTURE SCIENCE, MECHANICAL ENGINEERING AND MANUFACTURING TECHNOLOGY II, 2014, 651-653 : 2028 - 2031
  • [24] Design and Implementation of iATA on Windows CE Platform: An ATA-based Virtual Storage System
    Yeoh, Chee-Min
    They, Yu-Shu
    Lee, Hoon-Jae
    Lim, Hyotaek
    2009 WRI INTERNATIONAL CONFERENCE ON COMMUNICATIONS AND MOBILE COMPUTING: CMC 2009, VOL 3, 2009, : 85 - +
  • [26] Research on Storage Security Based on Trusted Computing Platform
    He, Jian
    Xu, Mingdi
    PROCEEDINGS OF THE INTERNATIONAL SYMPOSIUM ON ELECTRONIC COMMERCE AND SECURITY, 2008, : 448 - +
  • [27] Research and Realization of Trusted Computing Platform Based on EFI
    Fang, Weiwei
    Yang, Bingru
    Peng, Zheng
    Tang, ZhiGang
    PROCEEDINGS OF THE SECOND INTERNATIONAL SYMPOSIUM ON ELECTRONIC COMMERCE AND SECURITY, VOL I, 2009, : 43 - 46
  • [28] A blockchain-based platform for decentralized trusted computing
    Liang, Yihuai
    Li, Yan
    Shin, Byeong-Seok
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2024, 17 (03) : 1499 - 1513
  • [29] Design and Implementation of Data Mining Platform Based on the Cloud Computing
    Zhu Jia
    Zhang Ping
    PROCEEDINGS OF 2014 IEEE WORKSHOP ON ADVANCED RESEARCH AND TECHNOLOGY IN INDUSTRY APPLICATIONS (WARTIA), 2014, : 163 - 165
  • [30] Grid-based Parallel Computing Platform Design and Implementation
    Jian, Jiang
    Yi, He
    PROCEEDINGS OF 2010 3RD IEEE INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND INFORMATION TECHNOLOGY (ICCSIT 2010), VOL 8, 2010, : 563 - 567