检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
出 处:《计算机工程》2014年第1期130-133,共4页Computer Engineering
基 金:国家自然科学基金资助项目(61003268)
摘 要:可信计算能有效提高嵌入式实时操作系统的安全性,但现有的可信计算技术较难满足该系统实时性和低功耗的要求。为此,提出一种基于VxWorks内核的可信计算解决方案。设计嵌入式实时可信平台模块和可信软件栈,实现基于完整性度量证书的信任链传递结构和轻量级访问控制框架。实验结果证明,可信平台模块相比SW-TPM模块平均命令执行时间节省了65.81%,轻量级访问控制框架对系统内核的性能影响也较小,可满足嵌入式实时操作系统的应用要求。The Trusted Computing Technology(TCT) is an effective way to solve Embedded Real-time Operation System(ERTOS) security. However, the existing TCT is hard to satisfy the properties of real-time and low power consumption directly. Based on VxWorks kernel, this paper puts forward a solution of trusted computing by designing embedded real-time trusted computing module and trusted soitware stack, which can realize the chain of trust by using integrity measurement certificate and establish the lightweight access control architecture. Experimental results show that the average execution time of commands on trusted platform module saves 65.81% execution time compared with SW-TPM module. Lightweight access control affects the kernel by increasing few execution overhead, which can meet the ERTOS requirements of real-time and low power consumption as a whole.
关 键 词:嵌入式实时操作系统 可信计算 完整性度量证书 访问控制 实时调度
分 类 号:TP309[自动化与计算机技术—计算机系统结构]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.30