A formal analysis of Trusted Platform Module 2.0 hash-based message authentication code authorization under digital rights management scenario
A formal analysis of Trusted Platform Module 2.0 hash-based message authentication code authorization under digital rights management scenario
复制标题
DOI:
10.1002/sec.1193
复制
发表时间:
2016-10
期刊:
影响因子:
--
通讯作者:
Fajiang Yu;Huanguo Zhang;Bo Zhao;Juan Wang;Liqiang Zhang;Fei Yan;Zhenlin Chen
中科院分区:
文献类型:
--
作者:
Fajiang Yu;Huanguo Zhang;Bo Zhao;Juan Wang;Liqiang Zhang;Fei Yan;Zhenlin Chen
Trusted Platform Module TPM is the "root of trust" of the whole trusted computing platform. The TPM's own security assurance is very important. This paper describes the TPM 2.0 hash-based message authentication code HMAC authorization scheme as a security protocol and makes a detail comparison of the TPM 2.0 authorization to the TPM 1.2 "Object-Independent Authorization Protocol" and the "Object-Specific Authorization Protocol." Then the authors use the typed pi calculus to describe the TPM 2.0 HMAC authorization and its security properties under the Digital Rights Management DRM scenario and use ProVerify to reason that the key handle manipulation attack for TPM 1.2 does not exist any more in TPM 2.0, because the access entity unique name has been linked to the HMAC value, but the vulnerability of key blob substitution still exists in TPM 2.0. Copyright © 2015 John Wiley & Sons, Ltd.