Platform Property Certificate for Property-based Attestation Model
نویسندگان
چکیده
Binary Attestation is currently used in trusted computing environments involving the standard TCG attestation mechanism. However, this mechanism still has deficiencies in terms of flexibility, privacy and scalability. Thus, to overcome these problems, Property-based Attestation has been proposed. Two important issues should be considered in the context of property-based attestation; these include the content of the property and the protocol design. In this study, the researchers proposed platform property certificate, based on the current certificates of the system as the model's property. In addition, a client-server attestation protocol that could apply this particular property is also proposed. In order to show the feasibility of the model, the proposed model was implemented. The results of the implementation showed that the model is efficient to be used to accept and reject valid and invalid inputs. Hence, security aspects listed as privacy, flexibility, scalability and also integrity of the model is checked, while it is crucial to note that it also fulfils the requirements of property-based attestation with TCG standard specifications.
منابع مشابه
Bilinear Parings in Property-based attestation
One of the objectives of trusted computing is to provide remote attestation method that is able to confirm the status of remote platform or application. Existing property-based attestation is based on the strong-RSA assumption and the required key length is too long. What’s more, a considerable number of RSA-length operations having to be performed which lead to low computational efficiency. Bi...
متن کاملProperty-Based Attestation without a Trusted Third Party
The Trusted Computing Group (TCG) has proposed the binary attestation mechanism that enables a computing platform with a dedicated security chip, the Trusted Platform Module (TPM), to report its state to remote parties. The concept of property-based attestation (PBA) improves the binary attestation and compensates for some of its main deficiencies. In particular, PBA enhances user privacy by al...
متن کاملSecurity of the Enhanced TCG Privacy-CA Solution
The privacy-CA solution (PCAS) designed by the Trusted Computing Group (TCG) was specified in TCG Trusted Platform Module (TPM) Specification Version 1.2 in 2003 and allows a TPM to obtain from a certification authority (CA) certificates on short term keys. The PCAS protocol is a lighter alternative to the Direct Anonymous Attestation (DAA) scheme for anonymous platform authentication. The firs...
متن کاملModelling Dynamic Trust with Property Based Attestation in Trusted Platforms
Binary attestation in trusted computing provides the ability to reason about the state of a platform using integrity measurements. Property based attestation, an extension of binary attestation enables more meaningful attestation by abstracting low level binary values to high level security properties or functions of platforms. We believe that despite having trusted processes for integrity meas...
متن کاملProperty Attestation—Scalable and Privacy-friendly Security Assessment of Peer Computers
A core security challenge is the integrity verification of the software that is executed on a machine. For example, an enterprise needs to know whether a gateway machine has been infected by malicious code. One prevailing approach is to use directories of configuration check-sums to detect when a configuration has been changed (see www.tripwire.org). These software-only solutions have limitatio...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2013