一种面向集中管控系统的计算机可信启动架构  被引量:3

Trusted boot for computer centralized control system-oriented architecture

在线阅读下载全文

作  者:尚京[1] 徐开勇[1] 杨启超[1] 

机构地区:[1]解放军信息工程大学密码与工程学院,郑州450002

出  处:《计算机工程与应用》2015年第17期64-69,139,共7页Computer Engineering and Applications

基  金:国家自然科学基金(No.61072047)

摘  要:结合可信计算理论,针对统一的可扩展固件接口(Unified Extensible Firmware Interface,UEFI)因诸多原因无法达到可信启动的缺陷,将星形信任结构和信任链技术相结合并引入能够参与生成度量策略的管控代理,提出一种面向集中管控系统的计算机安全启动架构。用向量空间的形式描述了架构的启动流程,说明了管控代理的工作原理。将传统的可信启动流程与本架构的安全启动流程进行了对比。对此架构进行信任链测试,说明提出的可信启动架构符合可信计算标准。Combining with trusted computing theories for UEFI BIOS(Unified Extensible Firmware Interface)is not able to launch trusty due to many reasons, it combines with star trust structure and chain of trust and introduces a kind of measurement agency which one can make strategies to measure the process. It makes a project which about centralized management and control systems for relative safety of the architecture. In the form of a vector space structure described in the startup process, it indicates control agent works. It makes a traditional architecture of the secure boot contrasting with this architecture on boot process. It does a test on the chain of trust architecture. The test shows that the proposed trusted computing trusted boot architecture meets the standard.

关 键 词:统一的可扩展固件接口(UEFI) 可信计算 安全启动 

分 类 号:TP391[自动化与计算机技术—计算机应用技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象