摘要
分布式计算系统安全问题分为两大类:分布式计算的安全和主机的安全。其中恶意主机问题较难解决,该文通过对恶意主机问题的形式化分析,提出了一种基于可信域的终端模型(TrustDomainBasedTerminalModel,TDBTM)。该模型通过分布式应用参与制定本地访问控制决策来解决分布式系统对信息的机密性和完整性要求。同时提出了基于该模型以及可信计算思想设计的体系结构(TrustDomaiBasedTerminalArchitecture,TDBTA),以满足远程证实终端系统可信的需要。结合上述两点内容,该方案有望从根本上解决分布式计算系统中恶意主机带来的安全问题。
There are two classes of security problems in distributed computing system, security of hosts and security of distributed applications. This paper analyzes the problem of malicious hosts with formalized method, and proposes a trust domain based terminal model (TDBTM). The model which has distributed applications participate in establishing local system's access control policies should solve the requirement for guaranteeing integrity and confidentiality of distributed applications. Also, it proposes a trust domain based terminal architecture (TDBTA) to meet the remote attestation of terminal systems. With these two propositions, this solution can deracinate the malicious host problem fundamentally.
出处
《计算机工程》
EI
CAS
CSCD
北大核心
2006年第17期194-196,199,共4页
Computer Engineering
基金
国家"863"计划基金资助项目(2002AA1Z2101)
关键词
分布式计算
TCG
TPM
可信计算
恶意主机
Distributed computing systems
TCG
TPM
Trust computing
Malicious host