【24h】

Design and Implementation of a Bootstrap Trust Chain

机译:自举信任链的设计与实现

获取原文
获取原文并翻译 | 示例

摘要

The chain of trust in bootstrap process is the basis of whole system trust in the trusted computing group (TCG) definition. This paper presents a design and implementation of a bootstrap trust chain in PC based on the Windows and today' s commodity hardware, merely depends on availability of an embedded security module (ESM). ESM and security enhanced BIOS is the root of trust, PMBR (Pre-MBR) checks the integrity of boot data and Windows kernel, which is a checking agent stored in ESM. In the end, the paper analyzed the mathematic expression of the chain of trust and the runtime performance compared with the common booting process. The trust chain bootstrap greatly strengthens the security of personal computer system, and affects the runtime performance with only adding about 12% booting time.
机译:引导过程中的信任链是可信计算组(TCG)定义中整个系统信任的基础。本文介绍了基于Windows和当今商品硬件的PC中的引导信任链的设计和实现,仅取决于嵌入式安全模块(ESM)的可用性。 ESM和增强安全性的BIOS是信任的基础,PMBR(Pre-MBR)检查引导数据和Windows内核的完整性,Windows内核是存储在ESM中的检查代理。最后,与普通的启动过程相比,本文分析了信任链的数学表达式和运行时性能。信任链引导程序大大增强了个人计算机系统的安全性,并且仅增加了大约12%的启动时间,从而影响了运行时性能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号