【24h】

Design and Implementation of Secure Embedded Systems Based on Trustzone

机译:基于Trustzone的安全嵌入式系统的设计与实现

获取原文

摘要

Embedded system serves as one of crucial components needed for various applications and services in pervasive computing environment. Security problems related to embedded systems directly influence credibility of these applications and services.In order to effectively eliminate weaknesses in current embedded systems and strongly enhance safety practices of these systems,this paper proposes a Trustzone-based secure enhancement framework for embedded system. This framework consists of a multipolicy access control mechanism and a secure reinforcement method The multi-policy access control mechanism establishes multiple secure policies by utilizing the Domain and Type Enforcement (DTE) model and an improved Bell-La Padula (BLP) model,and the secure reinforcement method provides powerful safeguards through the employment of Linux Security Module (LSM) framework. We construct a secure embedded system environment based on TrustZone technique and secure Linux system. A prototype system founded on ARM Linux achieves rational combination of secure operating system and trustworthy hardware techniques and thus ensures diversified applications and services safety.
机译:嵌入式系统是普及计算环境中各种应用程序和服务所需的关键组件之一。与嵌入式系统有关的安全问题直接影响着这些应用程序和服务的信誉。为了有效消除当前嵌入式系统的弱点并大力增强这些系统的安全性,本文提出了一种基于Trustzone的嵌入式系统安全增强框架。该框架由多策略访问控制机制和安全增强方法组成。多策略访问控制机制利用域和类型强制(DTE)模型和改进的Bell-La Padula(BLP)模型来建立多个安全策略,并且安全加固方法通过使用Linux安全模块(LSM)框架提供了强大的保障。我们基于TrustZone技术和安全的Linux系统构建安全的嵌入式系统环境。基于ARM Linux的原型系统实现了安全操作系统和可信赖的硬件技术的合理组合,从而确保了多样化的应用程序和服务的安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号