Journal of Systems Engineering and Electronics ›› 2010, Vol. 32 ›› Issue (2): 437-440.

• 软件、算法与仿真 • 上一篇    

基于安全控制模块的高可信计算机研究

王斌1,2,3, 吴钦章1, 王春鸿1, 孙永泉3, 杜中平3   

  1. (1. 中国科学院光电技术研究所, 四川 成都 610209;
    2. 中国科学院研究生院, 北京 100049;
    3. 北京计算机技术及应用研究所, 北京 100854)
  • 出版日期:2010-02-03 发布日期:2010-01-03

High trusted computer based on security control module

WANG Bin1,2,3, WU Qinzhang1, WANG Chunhong1, SUN Yongquan3, DU Zhongping3   

  1. (1. Inst. of Optics and Electronics, Chinese Academy of Sciences, Chengdu 610209, China;
    2. Graduate Univ. of Chinese Academy of Sciences, Beijing 100039, China;
    3. Beijing Inst. of Computer Technology and Applications, Beijing 100854, China)
  • Online:2010-02-03 Published:2010-01-03

摘要:

当前的可信计算机主要关注于TPM安全芯片的集成与应用,在可信根保护、文件加密存储和系统安全防护方面存在不足。在参考可信计算技术的基础上,提出了一种以内嵌的安全控制模块为物理信任根的高可信计算机解决方案。论述了整体的组成结构、工作原理,详细分析了高可信计算机中安全控制模块和可信BIOS的实现机制。相关实验结果验证了高可信计算机平台设计方案的有效性。

Abstract:

At present, the integration and application of TPM security chip is mainly focused on, however the existing trusted computer has some shortages in root of trust protection, encryption storage of files and system security protection. Based on the trusted computing technology, a high trusted computer is put forward to solve the above problems, in which security control module is the physical trust root. The architecture and working principle of the high trusted computer is described. Meanwhile, the implementation of security control module and the trusted BIOS are analyzed in detail. The applicability of the proposed method is validated by a detailed experimental results.