A Behavior-Based Remote Trust Attestation Model

被引:11
作者
ZHANG Huanguo WANG Fan School of Computer Wuhan University Wuhan Hubei China [430072 ]
机构
关键词
remote attestation; trusted computing; trusted platform; behavior monitoring agent; behavior tree;
D O I
暂无
中图分类号
TP309 [安全保密];
学科分类号
081201 ; 0839 ; 1402 ;
摘要
While remote trust attestation is a useful concept to detect unauthorized changes to software, the current mechanism only ensures authenticity at the start of the operating system and cannot ensure the action of running software. Our approach is to use a behavior-based monitoring agent to make remote attestation more flexible, dynamic, and trustworthy. This approach was mostly made possible by extensive use of process information which is readily available in Unix. We also made use of a behavior tree to effectively record predictable behaviors of each process. In this paper, we primarily focus on building a prototype implementation of such framework, presenting one example built on it, successfully find potential security risks in the run time of a ftp program and then evaluate the performance of this model.
引用
收藏
页码:1819 / 1822
页数:4
相关论文
共 1 条
[1]  
Design and Implementation of a TCG-based Integrity Measurement Architecture. 13th Usenix Security Symposium . 2004