摘要
在深入研究现有可信移动平台设计方案和TCG移动可信模块相关技术的基础上,提出了带有移动可信模块的可信移动平台设计方案.平台采用基带处理器和应用处理器分离的结构,利用移动可信模块构建了以应用处理器为中心的可信区域,为移动平台提供受保护的计算和存储空间,提高了移动平台的安全性、灵活性和可靠性.分析了现有可信移动平台安全引导过程安全漏洞,提出了改进的安全引导过程,并通过谓词逻辑对改进的引导过程进行了正确性验证.
Investigating in depth the existing conceptual designs of trusted mobile platforms and technology of the TCG mobile trusted module, a new conceptual design of trusted mobile platform based on the module is proposed, of which the base-band processor is separated from application processor. The trusted region with the application processor as a center is constructed in the design to provide a protected space for computing and storage, thus improving the security, flexibility and reliability of the platform. Analyzing the vulnerabilities of security bootstrapping procedures in existing trusted mobile platforms, an improved procedure is proposed and it is verified according to predicate logic.
出处
《东北大学学报(自然科学版)》
EI
CAS
CSCD
北大核心
2008年第8期1096-1099,共4页
Journal of Northeastern University(Natural Science)
基金
国家自然科学基金资助项目(60602061)
国家高技术研究发展计划项目(2006AA01Z413)
关键词
可信计算
可信计算模块
移动可信模块
安全引导
谓词逻辑
trusted computing
trusted computing module
mobile trusted module
security bootstrapping
predicate logic