Design and Implementation of an Integrity Measurement System Based on Windows Trusted Computing Platform

被引:1
|
作者
Yang, Yang [1 ]
Zhang, Huanguo [1 ]
Wan, Li [1 ]
Zou, Bingyu [1 ]
机构
[1] Wuhan Univ, Sch Comp, Wuhan 430072, Peoples R China
关键词
Trusted computing; integrity measurement; transitive trust; information flow; CW_Lite model;
D O I
10.1109/ICYCS.2008.315
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
This paper presents the design and implementation of an integrity measurement system based on Windows trusted computing platform. The trust chain is established from the BIOS lip to the application layer, where the executable codes are taken the load-time measurements before execution. And the measurement system can generate an integrity proof for TPM-based remote attestation. In order to accurately reflect runtime integrity of critical applications, a light weight Clark-Wilson model is introduced for verify information flow integrity guarantee. Our experimental system strengthens the security posture of the platform. With the analysis of the tradeoff between performance and security, our system gives great consideration to the impact which the measurements cause to system performance.
引用
收藏
页码:229 / 233
页数:5
相关论文
共 50 条
  • [41] A User Authentication Scheme Based on Trusted Platform for Cloud Computing
    Mo, Jiaqing
    Hu, Zhongwang
    Lin, Yuhua
    SECURITY, PRIVACY, AND ANONYMITY IN COMPUTATION, COMMUNICATION, AND STORAGE, 2016, 10066 : 122 - 130
  • [42] Research and application of trusted computing platform based on portable TPM
    Fang, Weiwei
    Zhou, Changsheng
    Zhang, Ying
    Zhang, Liang
    2009 2ND IEEE INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND INFORMATION TECHNOLOGY, VOL 2, 2009, : 506 - 509
  • [43] A document protection solution in mobile platform based on trusted computing
    Yu, Xiaojun
    Wen, Qiaoyan
    Yan, Tao
    2ND INTERNATIONAL SYMPOSIUM ON COMPUTER NETWORK AND MULTIMEDIA TECHNOLOGY (CNMT 2010), VOLS 1 AND 2, 2010, : 251 - 255
  • [44] Design and Implementation of massive data retrieving based on cloud computing platform
    Xiao Wei
    Ji Chunlei
    Li Jiandun
    SENSORS, MEASUREMENT AND INTELLIGENT MATERIALS, PTS 1-4, 2013, 303-306 : 2235 - 2240
  • [45] DESIGN AND IMPLEMENTATION OF BUSINESS DRIVEN BI PLATFORM BASED ON CLOUD COMPUTING
    Wu, Bin
    Qin, Lei
    2011 IEEE INTERNATIONAL CONFERENCE ON CLOUD COMPUTING AND INTELLIGENCE SYSTEMS, 2011, : 118 - 122
  • [46] Design and implementation of a portable TPM scheme for general-purpose trusted computing based on EFI
    Lei Han
    Jiqiang Liu
    Zhen Han
    Xueye Wei
    Frontiers of Computer Science in China, 2011, 5
  • [47] On the Design and Implementation of the External Data Integrity Tracking and Verification System for Stream Computing System in IoT
    Wang, Hongyuan
    Zu, Baokai
    Zhu, Wanting
    Li, Yafang
    Wu, Jingbang
    SENSORS, 2022, 22 (17)
  • [48] Design and implementation of a portable TPM scheme for general-purpose trusted computing based on EFI
    Han, Lei
    Liu, Jiqiang
    Han, Zhen
    Wei, Xueye
    FRONTIERS OF COMPUTER SCIENCE IN CHINA, 2011, 5 (02): : 169 - 180
  • [49] A Method based on Platform Integrity Verification for Activating A Mobile Trusted Module
    Kim, Daewon
    Jeon, Yongsung
    Kim, Jeongnyeo
    2015 INTERNATIONAL CONFERENCE ON ICT CONVERGENCE (ICTC), 2015, : 1174 - 1176
  • [50] Design and Implementation for File Monitor System Based on Windows Driver
    Tang Xiao-jun
    Ying, Lu
    Na, Liu
    2014 SIXTH INTERNATIONAL SYMPOSIUM ON PARALLEL ARCHITECTURES, ALGORITHMS AND PROGRAMMING (PAAP), 2014, : 289 - 292