PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
January 1, 2005371 citations

Property-based attestation for computing platforms

View Full Paper
ASAhmad‐Reza SadeghiCSChristian Stüble

Key Points

Key points are not available for this paper at this time.

Abstract

Over the past years, the computing industry has started various initiatives announced to increase computer security by means of new hardware architectures. The most notable effort is the Trusted Computing Group (TCG) and the Next-Generation Secure Computing Base (NGSCB). This technology offers useful new functionalities as the possibility to verify the integrity of a platform (attestation) or binding quantities on a specific platform (sealing).In this paper, we point out the deficiencies of the attestation and sealing functionalities proposed by the existing specification of the TCG: we show that these mechanisms can be misused to discriminate certain platforms, i.e., their operating systems and consequently the corresponding vendors. A particular problem in this context is that of managing the multitude of possible configurations. Moreover, we highlight other shortcomings related to the attestation, namely system updates and backup. Clearly, the consequences caused by these problems lead to an unsatisfactory situation both for the private and business branch, and to an unbalanced market when such platforms are in wide use.To overcome these problems generally, we propose a completely new approach: the attestation of a platform should not depend on the specific software or/and hardware (configuration) as it is today's practice but only on the "properties" that the platform offers. Thus, a property-based attestation should only verify whether these properties are sufficient to fulfill certain (security) requirements of the party who asks for attestation. We propose and discuss a variety of solutions based on the existing Trusted Computing (TC) functionality. We also demonstrate, how a property-based attestation protocol can be realized based on the existing TC hardware such as a Trusted Platform Module (TPM).

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Sadeghi et al. (2005) studied this question.

synapsesocial.com/papers/6a207de47b2df09761f8937ehttps://doi.org/10.1145/1065907.1066038
Ask AI
Helpful
Bookmark
Share
View Full Paper

Also Consider

Synapse has enriched 5 closely related papers on similar clinical questions. Consider them for comparative context:

  1. 1Group signatures1991 · 1,402 citations
  2. 2Improving the TCPA specification2002 · 45 citations
  3. 3Improving IPC by kernel design1993 · 282 citations
  4. 4Cover feature - A trusted open platform2003 · 211 citations
  5. 5Implementing an untrusted operating system on trusted hardware2003 · 154 citations