• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Konferenzschrift
  4. Secure and privacy-aware multiplexing of hardware-protected TPM integrity measurements among virtual machines
 
  • Details
  • Full
Options
2013
Conference Paper
Title

Secure and privacy-aware multiplexing of hardware-protected TPM integrity measurements among virtual machines

Abstract
Measuring the integrity of critical operating system components and securely storing these measurements in a hardware-protected Trusted Platform Module (TPM) is a well-known approach for improving system security. However, currently it is not possible to securely extend this approach to TPMs used in virtualized environments. In this paper, we show how to multiplex integrity measurements of arbitrarily many Virtual Machines (VMs) with just a single standard TPM. In contrast to existing approaches such as vTPM, our approach achieves a higher level of security since measurements will never be held in software but are fully hardware-protected by the TPM at all times. We establish an integrity-protected mapping between each measurement and its respective VM such that it is not possible for an attacker to alter this mapping during remote attestation without being detected. Furthermore, all measurements will be stored in the TPM in a concealed manner in order to prevent inform ation leakage of other VMs during remote attestation. The experimental results of our proof of concept implementation show the feasibility of our approach.
Author(s)
Velten, M.
Stumpf, F.
Mainwork
Information security and cryptology, ICISC 2012. 15th international conference  
Conference
International Conference on Information Security and Cryptology (ICISC) 2012  
DOI
10.1007/978-3-642-37682-5_23
Language
English
Fraunhofer-Institut für Angewandte und Integrierte Sicherheit AISEC  
  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024