SaTC: An Architecture for Restoring Trust in Our Personal Computing Systems
SaTC: An Architecture for Restoring Trust in Our Personal Computing Systems
批准号:
1441650
负责人:
David August
金额:
$50.0万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2014
资助国家:
美国
项目状态:
已结题
起止时间:
2014-09-01 至 2019-02-28
中文摘要
今天的计算机是如此复杂和不透明,用户不可能希望知道,更不用说信任,发生在机器内的一切。虽然软件安全技术有助于确保用户计算的完整性,但它们仅与底层硬件一样值得信赖。尽管许多提案为硬件信任问题提供了一些缓解,但用户最终必须依赖其他方的保证。这项工作通过一个简单、小而慢的可插拔硬件元素来恢复硬件信任。本项目研究的技术提供了一个核心的信任,保持即使是最积极的系统在线路上,而不会减慢他们,很容易恢复。对于这个缓慢,但值得信赖的硬件元素是有用的在真实的世界的系统,它不能显着降低系统性能。为了实现这一目标,这项工作开发了两个互补的技术:执行指令的依赖性自由并行验证,和加密的基于哈希的内存完整性保证。此外,加密散列还确保代码完整性,并防止处理器执行自己的恶意代码。这些技术的组合提供了一个安全的硬件环境,只要他们的软件也是安全的,用户就不必担心他们的数据被泄露。因此,当与成熟的软件安全技术相结合时,这项工作可以显著提高用户对其计算系统的信任程度。
英文摘要
Computers today are so complex and opaque that a user cannot possibly hope to know, let alone trust, everything occurring within the machine. While software security techniques help ensure the integrity of user computations, they are only as trustworthy as the underlying hardware. Even though many proposals provide some relief to the problem of hardware trust, the user must ultimately rely on the assurances of other parties. This work restores hardware trust through a simple, small, and slow pluggable hardware element. This project investigates techniques that provides a kernel of trust that keeps even the most aggressive systems in line without slowing them down and is easy to manufacture.For this slow but trusted hardware element to be useful in real world systems, it must not degrade system performance significantly. To achieve this goal, this work develops two complimentary techniques: dependence-free parallel verification of executed instructions, and cryptographic hash-based memory integrity assurance. Additionally, cryptographic hashing also ensures code integrity and prevents the processor from executing its own malicious code. A combination of these techniques provides a secure hardware environment where users need not worry about their data being compromises, as long as their software is also secure. Therefore, when combined with well-developed software security techniques, this work provides a significant increase in the level of trust users place in their computing systems.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Collaborative Research: SHF: Medium: Collaborative Automatic Parallelization
-
批准号:2107257
-
项目类别:Continuing Grant
-
资助金额:$60.0万
-
财政年份:2021
-
负责人:David August
-
依托单位:
Collaborative Research: PPoSS: Planning: A Disciplined Approach to Scaling in the Post-Moore’s Law Era
-
批准号:2119070
-
项目类别:Standard Grant
-
资助金额:$15.87万
-
财政年份:2021
-
负责人:David August
-
依托单位:
SHF: Small: The Whole Program Critical Path Approach to Parallelism
-
批准号:1814654
-
项目类别:Standard Grant
-
资助金额:$50.0万
-
财政年份:2018
-
负责人:David August
-
依托单位:
XPS: EXPL: CCA: A Framework for Portable Parallel Performance
-
批准号:1439085
-
项目类别:Standard Grant
-
资助金额:$30.0万
-
财政年份:2014
-
负责人:David August
-
依托单位:
II-New: A Platform for Data-Parallel GPU Computing at Princeton
-
批准号:1205613
-
项目类别:Standard Grant
-
资助金额:$35.0万
-
财政年份:2012
-
负责人:David August
-
依托单位:
SI2-SSI: Accelerating the Pace of Research through Implicitly Parallel Programming
-
批准号:1047879
-
项目类别:Standard Grant
-
资助金额:$174.02万
-
财政年份:2010
-
负责人:David August
-
依托单位:
CSR: Medium: Collaborative Research: Scaling the Implicitly Parallel Programming Model with Lifelong Thread Extraction and Dynamic Adaptation
-
批准号:0964328
-
项目类别:Continuing Grant
-
资助金额:$40.0万
-
财政年份:2010
-
负责人:David August
-
依托单位:
SGER: A Hybrid Approach for Petascale Computing: Accelerating Scientific
-
批准号:0849512
-
项目类别:Standard Grant
-
资助金额:$10.26万
-
财政年份:2009
-
负责人:David August
-
依托单位:
CPA-CPL-T: Collaborative Research: Revisiting the Sequential Programming Model for Multicore Systems
-
批准号:0811580
-
项目类别:Standard Grant
-
资助金额:$5.0万
-
财政年份:2008
-
负责人:David August
-
依托单位:
CSR---EHS: Software-Modulated Fault Tolerance
-
批准号:0615250
-
项目类别:Continuing Grant
-
资助金额:$32.0万
-
财政年份:2006
-
负责人:David August
-
依托单位:
NGS:Collaborative Proposal:Structural and Composable Performance Simulation of Complex Systems
-
批准号:0305617
-
项目类别:Continuing Grant
-
资助金额:$87.95万
-
财政年份:2003
-
负责人:David August
-
依托单位:
CAREER: Systematic Design Space Exploration
-
批准号:0133712
-
项目类别:Continuing Grant
-
资助金额:$37.51万
-
财政年份:2002
-
负责人:David August
-
依托单位:
ITR: Collaborative Research--Ascertaining Runtime Branch Characteristics through Algebraic Analysis of Programs
-
批准号:0082630
-
项目类别:Continuing Grant
-
资助金额:$20.0万
-
财政年份:2000
-
负责人:David August
-
依托单位:
海外基金