Implementing Attestable kiosks

Implementing Attestable kiosks
复制标题

实施可证明的信息亭

DOI:
--
复制
发表时间:
2016
期刊:
Conference on Privacy, Security and Trust
影响因子:
--
通讯作者:
J. Alex Halderman
J. Alex Halderman
中科院分区:
--
文献类型:
--
作者:
Matthew Bernhard;G. Stocco;J. Alex Halderman

文献摘要

被引文献

相似文献

在本文中,我们探讨了安全亭的概念,一个可信的计算平台,使用现成的组件。我们演示了信息亭如何在设计安全计算协议时作为方便的基元,因为它们允许对系统做出一组非常规定的假设。我们开始定义信息亭的必要属性,然后解释如何使用当前现成的硬件和软件组件来实现这些属性。我们使用TPM硬件和Windows 10构建了一个概念验证实现。我们还提供了ASKVote,可证明和安全投票协议,以展示在更大的安全系统中使用信息亭所获得的灵活性。
In this paper we explore the notion of a secure kiosk, a trusted computing platform built using off-the-shelf components. We demonstrate how kiosks serve as convenient primitives when designing secure computing protocols, as they allow for a very prescribed set of assumptions to be made about a system. We begin by defining the necessary properties of a kiosk, and then explain how each of these properties can (or cannot) be attained using current off-the-shelf hardware and software components. We construct a proof-of-concept implementation using TPM hardware and Windows 10. We also provide ASKVote, the Attestable and Secure Voting protocol to demonstrate the flexibility gained from the use of kiosks in a larger secure system.