...
首页> 外文期刊>Dependable and Secure Computing, IEEE Transactions on >Remote Attestation with Domain-Based Integrity Model and Policy Analysis
【24h】

Remote Attestation with Domain-Based Integrity Model and Policy Analysis

机译:基于域的完整性模型的远程认证和策略分析

获取原文
获取原文并翻译 | 示例
           

摘要

We propose and implement an innovative remote attestation framework called DR@FT for efficiently measuring a target system based on an information flow-based integrity model. With this model, the high integrity processes of a system are first measured and verified, and these processes are then protected from accesses initiated by low integrity processes. Toward dynamic systems with frequently changed system states, our framework verifies the latest state changes of a target system instead of considering the entire system information. Our attestation evaluation adopts a graph-based method to represent integrity violations, and the graph-based policy analysis is further augmented with a ranked violation graph to support high semantic reasoning of attestation results. As a result, DR@FT provides efficient and effective attestation of a system's integrity status, and offers intuitive reasoning of attestation results for security administrators. Our experimental results demonstrate the feasibility and practicality of DR@FT.
机译:我们提出并实现了一个称为DR @ FT的创新远程证明框架,该框架可基于基于信息流的完整性模型有效地测量目标系统。使用此模型,首先测量和验证系统的高完整性进程,然后保护这些进程免受低完整性进程发起的访问。对于具有频繁更改的系统状态的动态系统,我们的框架将验证目标系统的最新状态更改,而不用考虑整个系统的信息。我们的证明评估采用基于图的方法来表示完整性违规,并且基于图的策略分析进一步增加了排名违例图,以支持证明结果的高语义推理。结果,DR @ FT可以有效而有效地证明系统的完整性状态,并为安全管理员提供直观的证明结果推理。我们的实验结果证明了DR @ FT的可行性和实用性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号