Journal on Communications ›› 2018, Vol. 39 ›› Issue (11): 170-180.doi: 10.11959/j.issn.1000-436x.2018242

• Correspondences • Previous Articles     Next Articles

Label-based protection scheme of vTPM secret

Xingshu CHEN1,2(),Wei WANG1,3,Xin JIN1,3   

  1. 1 Cybersecurity Research Institute,Sichuan University,Chengdu 610065,China
    2 College of Cybersecurity,Sichuan University,Chengdu 610065,China
    3 College of Computer Science,Sichuan University,Chengdu 610065,China
  • Revised:2018-05-17 Online:2018-11-01 Published:2018-12-10
  • Supported by:
    The National Natural Science Foundation of China(61802270);The National Natural Science Foundation of China(61802271)

Abstract:

The virtual trusted platform module (vTPM) played an important role in virtualization of trusted computing.According to security problems of existed vTPM,a protection scheme based on vTPM label was proposed.Firstly,a vTPM label was created for each virtual machine.This label had four main components,signature information,encryption information,measurement information and status information.Then,the security-enhanced vTPM dynamic migration protocol based on vTPM label status information was designed,to ensure the security of vTPM during live migration based on status information of vTPM label.Experiments show that the proposed scheme can protect vTPM secrets effectively and the increased performance cost during live migration is only 19.36%.

Key words: trusted computing, virtual trusted platform module, TPM2.0, live migration

CLC Number: 

No Suggested Reading articles found!