摘要
将密钥隔离安全机制应用到基于组件属性的远程证明中,并分析方案的正确性和安全性.分析结果表明:未及时更新或者被恶意代码攻击的组件将丧失安全属性,不再具有远程证明能力.实现了无证书的组件证明,省略了验证证书的过程,减少了验证方的负担,并结合现有的可信计算完整性管理模式,给出了实现过程.
This paper applies the mechanism of Key-insulated security to the component property-based attestation and analyzes the correction and security of the scheme.The analysis shows that the component which has not been updated or attacked by the malicious code will lose the security property,and would not have the ability of remote attestation.This paper implements the certificateless component property based attestation,which eliminates the process of verifying the certificate,reduces the burden of the verifier,and gives the implementation process by combining with the existing integrity management model of trusted computing.
出处
《西安电子科技大学学报》
EI
CAS
CSCD
北大核心
2011年第4期11-19,共9页
Journal of Xidian University
基金
国家自然科学基金资助项目(60973135)
信息安全国家重点实验室资助项目
关键词
可信计算
远程证明
密钥隔离
双线性映射
trusted computing
remote attestation
Key-insulated security mechanism