【24h】

SeRoT: A Secure Runtime System on Trusted Execution Environments

机译:Serot:可信执行环境中的安全运行时系统

获取原文

摘要

Trusted execution environment (TEE) is a promising technique to protect user programs and data on public cloud environments. To support unmodified applications running, many TEE runtime systems have been proposed. However, a major drawback of the existing schemes is the lack of interface protection. This problem may lead to many security problems, such as memory information leakage and malicious codes attacks. To tackle this problem, we propose SeRoT, a new secure runtime system on trusted execution environments. Our secure runtime system first provides some core functions to the enclave programs. Then we protect the host interface at two levels, binary interface level and application interface level. In these two levels, we prevent the adversary interfacing with malicious messages. Furthermore, we implement SeRoT on a RISC-V based platform and show our scheme is average about 10% faster than Keystone on two popular and representative benchmarks.
机译:可信执行环境(TEE)是一种希望保护公共云环境上的用户程序和数据的有希望的技术。为了支持运行未修改的应用程序,已提出许多TEE运行时系统。然而,现有方案的主要缺点是缺乏界面保护。此问题可能导致许多安全问题,例如内存信息泄露和恶意代码攻击。为了解决这个问题,我们提出了一个关于可信执行环境的新安全运行时系统。我们的安全运行时系统首先为Compace程序提供一些核心功能。然后我们在两个级别,二进制接口级别和应用程序界面级别保护主机界面。在这两个层面中,我们防止与恶意信息进行对手的互相。此外,我们在基于RISC-V的平台上实施Serot,并显示我们的计划平均超过两个流行和代表性基准的keystone速度速度大约10%。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号