J4

• Original Articles • Previous Articles     Next Articles

Attestation proxy party-supported remote attestation model and its secure protocol

ZHANG Zhi-yong1,2;PEI Qing-qi1;YANG Lin3;MA Jian-feng1
  

  1. (1. Ministry of Education Key Lab. of Computer Network and Information Security, Xidian Univ., Xi’an 710071, China;
    2. Electron. Inf. Eng. Coll., Henan Univ. of Sci. & Technol., Luoyang 471003, China;
    3. The Research Inst., China Electron. Equ. & Sys. Eng. Corp, Beijing 100039, China)
  • Received:2007-11-09 Revised:1900-01-01 Online:2009-02-20 Published:2009-02-10
  • Contact: ZHANG Zhi-yong E-mail:xidianzzy@126.com

Abstract: Since existing remote attestation models lead to an issue of privacy protection of basic configuration details and security attribute features of the terminal platform, an Attestation Proxy Party-supported Remote Attestation (abbr.AP2RA) model and its secure protocol, which have a delegation mode, are presented. The Trusted Third Party is introduced to accept an attestion delegation from the Attestor Party, implements integrity and security attestation of hardware and software on the terminal, and further trustworthily reports the boolean value of the current platform status, thus improving the remote attestation model based on two parties, as well as effectivly protecting the platform privacy of the Attested Party. Moreover, compared with other approaches, the proposed approach is capable of resisting against the message replay attack and collusion attack from the Attested Party together with the tracing terminal platform sponsoring attack on APP, so that it is suitable for resource dissemination and information sharing in the trusted network.

Key words: trusted computing, remote attestation, privacy protection, secure protocol

CLC Number: 

  • TP309