Research on Security of the Extended SSL/TLS Protocol Based on Trusted Platform Module

被引:0
|
作者
Yu, Yue [1 ]
Sun, Hao [1 ]
Yu, Fajiang [1 ]
Kong, Yanan [1 ]
机构
[1] Wuhan Univ, Sch Comp Sci, Wuhan 430072, Peoples R China
关键词
SSL/TLS protocol; security vulnerabilities; trusted platform module; solutions;
D O I
暂无
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
It is universally acknowledged that SSL/TLS has been a priority of secure communication protocol on the Internet in virtue of its broad combining ability, easy achievement and high data security, and a myriad of researches have been made on it so far. Our discussion in this paper is about basic principles and security issues of the current SSL/TLS protocol. The focus is on security vulnerabilities of the extended SSL/TLS protocol based on the Trusted Platform Module (TPM). In order to test and verify the security of the extended SSL/TLS protocol, experiments are made on two attacking methods that are surf jacking attack and SSL/TLS Renegotiating Attack; the result reveals that they can successfully damage the security of SSL/TLS protocol. Finally, according to the application environment of SSL/TLS protocol and by taking full account of the application layer protocol, browser features, the combination processes among protocols and other comprehensive factors, some specific solutions are presented by us to solve the security issues.
引用
收藏
页码:861 / 866
页数:6
相关论文
共 50 条
  • [21] Active measures based on a trusted platform control module
    Guo, Ying
    Mao, Junjie
    Zhang, Chongbin
    Zhang, Baofeng
    Lin, Li
    Xie, Shihua
    Qinghua Daxue Xuebao/Journal of Tsinghua University, 2012, 52 (10): : 1465 - 1473
  • [22] High trusted computer based on security control module
    Wang, Bin
    Wu, Qin-Zhang
    Wang, Chun-Hong
    Sun, Yong-Quan
    Du, Zhong-Ping
    Xi Tong Gong Cheng Yu Dian Zi Ji Shu/Systems Engineering and Electronics, 2010, 32 (02): : 437 - 440
  • [23] Algorithm for the optimization of RSA based on parallelization over GPU SSL/TLS Protocol
    Pineda Vargas, Monica Patricia
    Salcedo Parra, Octavio Jose
    Acosta Rodriguez, Rafael Antonio
    2017 IEEE INTERNATIONAL CONFERENCE ON SMART CLOUD (SMARTCLOUD), 2017, : 294 - 297
  • [24] An Improved Security Authentication Mechanism for Parlay/OSA Framework based on SSL\TLS
    Fan Zi-Fu
    Zhang Yi
    Wan Xiao-Yu
    2010 IEEE INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, NETWORKING AND INFORMATION SECURITY (WCNIS), VOL 1, 2010, : 441 - 444
  • [25] A Key to Embedded System Security: Locking and Unlocking Secrets with a Trusted Platform Module
    Lenard, Teri
    Collen, Anastasija
    Nijdam, Niels A.
    Genge, Bela
    2023 IEEE EUROPEAN SYMPOSIUM ON SECURITY AND PRIVACY WORKSHOPS, EUROS&PW, 2023, : 329 - 335
  • [27] A Trusted Platform Module Based Anti-Forensics System
    Goh, Weihan
    Leong, Peng Chor
    Yeo, Chai Kiat
    2009 INTERNATIONAL CONFERENCE ON NETWORK AND SERVICE SECURITY, 2009, : 46 - 50
  • [28] Cryptographic Key Distribution Protocol with Trusted Platform Module for Securing In-vehicle Communications
    Genge, Bela
    Haller, Piroska
    15TH INTERNATIONAL CONFERENCE INTERDISCIPLINARITY IN ENGINEERING, 2022, 386 : 796 - 807
  • [29] Security analysis of TLS protocol implementations based on model checking
    Bi X.
    Tang C.
    Xi Tong Gong Cheng Yu Dian Zi Ji Shu/Systems Engineering and Electronics, 2021, 43 (03): : 839 - 846
  • [30] Blockchain based secret key management for trusted platform module standard in reconfigurable platform
    Paul, Rourab
    Ghosh, Nimisha
    Panigrahi, Amrutanshu
    Chakrabarti, Amlan
    Mohapatra, Prasant
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024, 36 (22):