首页> 外文会议>IEEE Military Communications Conference >ARMing the Trusted Platform Module pro-active system integrity monitoring focussing on peer system notification
【24h】

ARMing the Trusted Platform Module pro-active system integrity monitoring focussing on peer system notification

机译:ARMing Trusted Platform Module主动系统完整性监视,着重于对等系统通知

获取原文

摘要

The concept of Trusted Computing offers a hardware platform based on which the integrity of IT systems is verified using a structured file-based signature hierarchy of all executable system components - from BIOS boot up to the execution of any user application. Current implementations detect integrity breaches at firmware and at file level so that suitable counter measures on a Trusted Computing system may be taken in almost real-time. This information - so far - either remains stored locally or in best case is forwarded at application layer leaving enough time for a smart malware to infect a peering system or to compromise application level communication. This paper introduces a new pro-active concept of integrity monitoring and reporting using the Trusted Platform Module to supervise the integrity of a system focusing on incident reporting to peering systems at link layer. For this concept we suggest the enhancement of the Trusted Platform Module by a new Attack Recognition Module to monitor a system in real time and to reliably notify peering systems about any integrity breach detected.
机译:可信计算的概念提供了一个硬件平台,基于此平台,可以使用所有可执行系统组件的结构化基于文件的签名层次结构(从BIOS启动到任何用户应用程序的执行)来验证IT系统的完整性。当前的实现在固件和文件级别检测完整性破坏,因此可以几乎实时地在Trusted Computing系统上采取适当的对策。到目前为止,这些信息要么保留在本地存储,要么在最佳情况下在应用程序层转发,从而留出足够的时间让智能恶意软件感染对等系统或破坏应用程序级别的通信。本文介绍了一种新的主​​动概念,即使用受信任的平台模块进行完整性监视和报告,以监督系统的完整性,该系统的重点是向链路层的对等系统报告事件。对于此概念,我们建议通过新的攻击识别模块对可信平台模块进行增强,以实时监控系统并可靠地将检测到的任何完整性漏洞通知对等系统。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号