检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:刘莺迎[1] 林元媛 Liu Yingying;Lin Yuanyuan(College of Information and Electronic Engineering, Henan University of Animal Husbandry and Economy, Zhengzhou Henan 450000, China;Zhengzhou NO.47 Middle & High School, Zhengzhou Henan 450000, China)
机构地区:[1]河南牧业经济学院信息与电子工程学院,河南郑州450000 [2]郑州市四十七中学,河南郑州450000
出 处:《信息与电脑》2018年第9期40-42,共3页Information & Computer
摘 要:TrustZone的设计仅提供了隔离的环境,其安全实现需要软硬件的共同配合,并且对于物理内存泄露等攻击也没有较好的解决方案。基于此,笔者基于ARM V7架构编译Linux普通内核和安全内核,分别作为被TrustZone隔离的两个世界。同时,作为扩展,也在该平台下启动Andriod系统作为正常的世界。通过实验,平台实现了应用程序在存储器中加密,并仅在处理器内进行解密以便执行,进而保护敏感代码和数据避免遭受恶意攻击。The design of Trust Zone only provides an isolated environment. The security implementation requires the cooperation of hardware and software, and there is no good solution to physical memory leaks and other attacks. Based on this, the author compiles the Linux kernel and security kernel based on the ARM V7 architecture, which is the two worlds separated by Trust Zone. At the same time, as an extension, the Andriod system is also launched as a normal world under this platform. Through experiments, the platform realizes that the application program is encrypted in memory and decrypted only in the processor for execution so as to protect sensitive code and data from malicious attacks.
关 键 词:ARM平台 TRUSTZONE LINUX Andriod 安全扩展
分 类 号:TP309[自动化与计算机技术—计算机系统结构]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.222