首页 / 资料库 / 文献详情

一种轻量级安全可信的虚拟执行环境

Hao ChenChen LIUJianHua SUNHaiwei Li

2012Scientia Sinica InformationisHealth Professions被引 7

出版方页面 →

摘要

Traditional trusted computing base (TCB) contains the OS, device drivers, and all the applications, and the validation of the entire TCB is tremendously complicated. To solve this problem, we propose a TCB minimization architecture that leverages hardware isolation features such as system management mode provided by CPU, executing security-sensitive code of applications in a virtual environment to exclude these unsecure- sensitive code, OS and other applications out of TCB, which makes the TCB only include security-sensitive code and some management code of the virtual environment. Even if attackers control OS and part of hardware (DMA, hardward debugger, etc.), the isolated environment can guarantee the security and integrity of sensitive code execution. Meanwhile, the system provides reliable fine-grained validation, which convinces that the correct security-sensitive code is executed and the whole execution is protected by our system.

引用本文(GB/T 7714)

Hao Chen, Chen LIU, JianHua SUN, 等. 一种轻量级安全可信的虚拟执行环境[J]. Scientia Sinica Informationis, 2012.

引文网络

参考文献与被引分析加载中…

DOI:https://doi.org/10.1360/112010-1008

本站仅收录题录与摘要供学习参考,全文版权归属出版方;如有侵权请联系我们删除。