【24h】

Security Model Oriented Attestation on Dynamically Reconfigurable Component-Based Systems

机译:动态可重新配置的基于组件的系统上面向安全模型的证明

获取原文

摘要

As more and more component-based systems (CBS) run in the open and dynamic Internet, it is very important to establish trust between clients and CBS. One of the key mechanisms to establish trust among different platforms in an open and dynamic environment is remote attestation, which allows a platform to vouch for its trust-related characteristics to a remote challenger. This paper proposes a novel attestation scheme for a dynamically reconfigurable CBS to reliably prove whether its execution satisfies the specified security model, by introducing a TPM-based attestation service to dynamically monitor the execution of the CBS. As a case study, we have applied the proposed scheme on OSGi systems and implemented a prototype based on JVMTI for Felix. The evaluation results show that the proposed scheme is both effective and practical.
机译:随着越来越多的基于组件的系统(CBS)在开放的动态Internet中运行,在客户端与CBS之间建立信任非常重要。在开放和动态环境中的不同平台之间建立信任的关键机制之一是远程证明,它允许平台向远程质询者证明其与信任相关的特征。本文提出了一种用于动态可重新配置的CBS的新颖的证明方案,通过引入基于TPM的证明服务来动态监视CBS的执行情况,从而可靠地证明其执行是否满足指定的安全模型。作为案例研究,我们将建议的方案应用于OSGi系统,并为Felix实现了基于JVMTI的原型。评估结果表明,该方案是有效和实用的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号