首页> 外文会议>Asia-Pacific Conference on Computer Science and Applications >Design and implementation of a TPM based security file system
【24h】

Design and implementation of a TPM based security file system

机译:基于TPM的安全文件系统的设计与实现

获取原文

摘要

Over the years, different encrypting file systems have been proposed to protect the confidentiality of users' data. However, since the enhanced encrypting modules of these systems are implemented independently of the operating system kernel, the protection of secure information has not been considered comprehensively. The secure information is open to attack, leading to system vulnerability. In this paper, we propose the design of an encrypting file system based on Trusted Platform Module (TPM) for strengthening data safety. Secret keys are encapsulated using TPM certificate and the trusted chain of trusted boot is introduced into the encrypting file system. In this way, the encrypting file system safety is significantly improved. In this study, we have designed and implemented a TPM based encrypting file system (TSFile) on Linux with trusted USBKey devices adopted as additional factors of multi-factor identity authentication. Its performance has been tested and the efficiency and safety are validated.
机译:多年来,已经提出了不同的加密文件系统来保护用户数据的机密性。然而,由于这些系统的增强型加密模块独立于操作系统内核实现,因此尚未全面地考虑保护安全信息的保护。安全信息是开放的攻击,导致系统漏洞。在本文中,我们提出了基于可信平台模块(TPM)的加密文件系统的设计,以加强数据安全。秘密密钥使用TPM证书封装,并将可信引导的可信链接引入加密文件系统。通过这种方式,加密文件系统安全性得到了显着改善。在本研究中,我们在Linux上设计和实现了基于TPM的加密文件系统(TSFile),其中包含可信USBKey设备作为多因素身份认证的其他因素。其性能已经过测试,验证了效率和安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号