2012 · 124 citations · 40 references
EngineeringInformation SecurityVerificationFormal VerificationSoftware AnalysisProtected ChannelHardware SecurityTrusted Execution EnvironmentHyper Visor-based DesignSecure ComputingTrusted Operating SystemOperating System SecurityComputer EngineeringData PrivacyComputer ScienceData SecurityCryptographyTrusted PlatformProgram AnalysisTrusted PathVerifiable Trusted PathSystem Software
A trusted path is a protected channel that assures the secrecy and authenticity of data transfers between a user's input/output (I/O) device and a program trusted by that user. We argue that, despite its incontestable necessity, current commodity systems do not support trusted path with any significant assurance. This paper presents a hyper visor-based design that enables a trusted path to bypass an untrusted operating-system, applications, and I/O devices, with a minimal Trusted Computing Base (TCB). We also suggest concrete I/O architectural changes that will simplify future trusted-path system design. Our system enables users to verify the states and configurations of one or more trusted-paths using a simple, secret less, hand-held device. We implement a simple user-oriented trusted path as a case study.
40
Xen and the art of virtualization
Paul Barham, Boris Dragovic, Keir Fraser et al. · ACM SIGOPS Operating Systems Review · 2003 · 5.9K citations
Xen and the art of virtualization
Paul Barham, Boris Dragovic, Keir Fraser et al. · 2003 · 2.1K citations
Xen and the art of virtualization
Paul Barham, Boris Dragovic, Keir Fraser et al. · 2003 · 1.5K citations
Gerwin Klein, Kevin Elphinstone, Gernot Heiser et al. · 2009 · 1.5K citations
Engineering, Hardware Verification Language, Verification +18
Dawson Engler, M. Frans Kaashoek, James W. O’Toole · 1995 · 1.1K citations