【24h】

Tagging the Turtle: Local Attestation for Kiosk Computing

机译:标记乌龟:用于售货亭计算的本地证明

获取原文

摘要

Public kiosk computers are especially exposed and the software running on them usually cannot be assumed to be unaltered and secure. The Trusted Platform Module (TPM) as a root of trust in an otherwise untrusted computer allows a machine to report the integrity and the configuration of a platform to a remote host on the Internet. A natural usage scenario is to perform such an Attestation prior to handling sensitive or private data on a public terminal. Two challenges arise. First, the human user needs to reach her trust decision on the basis of the TPM's cryptographic protocols. She cannot trust the public machine to display authentic results. Second, there is currently no way for the user to establish that the particular machine faced actually contains the TPM that performs the Attestation. In this paper we demonstrate an Attestation token architecture which is based on a commodity smart phone and more efficient and flexible than previous proposals. Further, we propose to add a low-cost Near Field Communication (NFC) compatible autonomic interface to the TPM, providing a direct channel for proof of the TPM's identity and local proximity to the Attestation token.
机译:公共售货亭计算机特别暴露,通常不能假设在它们上运行的软件是不妨碍和安全的。可信平台模块(TPM)作为否则不受信任的计算机中的信任根允许机器将平台的完整性和配置报告给Internet上的远程主机。自然使用场景是在处理公共终端上处理敏感或私人数据之前执行此类证明。出现了两个挑战。首先,人类用户需要根据TPM的加密协议来达到她的信任决定。她不能相信公共机器展示真实的结果。其次,目前没有办法为用户建立所面临的特定机器实际上包含执行证明的TPM。在本文中,我们展示了一种证明令牌建筑,其基于商品智能手机,比以前的建议更高效灵活。此外,我们建议在TPM中增加近乎现场通信(NFC)兼容的自主界面,提供直接通道,以证明TPM的身份和局部接近证明令牌。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号