摘要
可信计算已经从前几年的大造舆论、广泛宣传,转入到实现阶段。但是当前可信计算还存在一些问题需要解决,比如可信计算平台远程证明(以下简称远程证明)的实现。首先说明了基于PKI的远程证明存在的问题,然后针对这些问题,提出基于身份的远程证明方案。对新方案的优点和缺点进行了详细的分析,并设计了一个基于身份的远程证明协议,然后使用模型检测工具SPIN对其进行了形式化分析。
Although Trusted Computing(TC) has been in the realization phase,there are still some problems including the realization of remote attestation.We first discuss the problems for the PKI-based remote attestation,and propose a new solution in which the remote attestation is based on the IBE.We also analyze the advantages and disadvantages of this solution in detail,and design a new protocol for the IBE-based remote attestation.Finally,the model checker tool SPIN is utilized to validate this protocol.
出处
《中国电子科学研究院学报》
2010年第3期286-290,共5页
Journal of China Academy of Electronics and Information Technology
基金
可信计算中基于标识的安全认证机制研究(国家863计划)(2008AA01Z405)
关键词
远程证明
基于身份
安全协议
remote attestation
identity based
security protocol