不可信嵌入式平台下的安全传输方案  被引量:1

Secure transmission scheme for untrusted embedded platform

在线阅读下载全文

作  者:谢学智[1] 刘虎球[1] 白家驹[1] 王瑀屏[1] 

机构地区:[1]清华大学信息科学技术学院,北京100084

出  处:《中国科技论文》2016年第14期1582-1586,共5页China Sciencepaper

基  金:北京高等学校青年英才计划项目(YETP0108)

摘  要:为便捷地实现互联互通,越来越多的设备和系统接入互联网,但同时带来了越来越严重的安全隐患。针对不可信嵌入式平台,设计了1套安全传输方案。该方案限制终端网卡的行为,通过一系列认证协议,使其仅能够与事先指定的服务器进行通信,不受攻击者控制。为实现这一方案,设计实现了一款加密网卡。结合了嵌入式网卡和加密网卡的特点,并通过硬件方式进行配置。实验表明,基于这款加密网卡,能够实现终端与服务器间的加密通信,并能够防御监听和冒充攻击,达到了安全传输的设计目标。In order to connect different devices, more and more devices and systems are connected to the Internet At the same time, these devices and systems are threatened by attackers from the Internet To solve this problem, a secure transmission scheme was designed for untrusted embedded platform. In this scheme,the behavior of end-point network cards was limited to prevent attackers to take control. They could only communicate with a previous designated server with a series of authentication protocol. To achieve this scheme, an encrypted network card is implemented. This network card combined the feature of embedded network card and encrypted network card, and can only be configured in hardware mode. Experiments show that encrypted communication between end points and server is secured, monitoring and counterfeit attacks can be prevented, and the goal of secure transmission is accomplished.

关 键 词:网络安全 硬件加密网卡 不可信平台 嵌入式网卡 

分 类 号:TP309[自动化与计算机技术—计算机系统结构]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象