首页> 外文OA文献 >Hardware-based Security for Virtual Trusted Platform Modules
【2h】

Hardware-based Security for Virtual Trusted Platform Modules

机译:虚拟可信平台模块的基于硬件的安全性

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

Virtual Trusted Platform modules (TPMs) were proposed as a software-basedalternative to the hardware-based TPMs to allow the use of their cryptographicfunctionalities in scenarios where multiple TPMs are required in a singleplatform, such as in virtualized environments. However, virtualizing TPMs,especially virutalizing the Platform Configuration Registers (PCRs), strikesagainst one of the core principles of Trusted Computing, namely the need for ahardware-based root of trust. In this paper we show how strength ofhardware-based security can be gained in virtual PCRs by binding them to theircorresponding hardware PCRs. We propose two approaches for such a binding. Forthis purpose, the first variant uses binary hash trees, whereas the othervariant uses incremental hashing. In addition, we present an FPGA-basedimplementation of both variants and evaluate their performance.
机译:提出了虚拟可信平台模块(TPM)作为基于软件的替代,而不是基于硬件的TPM,以允许在单个平台中需要多个TPM的情况下(例如在虚拟化环境中)使用其加密功能。但是,虚拟化TPM,尤其是虚拟化平台配置寄存器(PCR),违反了可信计算的核心原则之一,即对基于硬件的信任根的需求。在本文中,我们展示了如何通过将虚拟PCR绑定到其相应的硬件PCR来提高基于硬件的安全性的强度。我们提出了两种方法来进行这种绑定。为此,第一个变量使用二进制哈希树,而另一个变量使用增量哈希。此外,我们提出了两种变体的基于FPGA的实现,并评估了它们的性能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号