• DocumentCode
    1704337
  • Title

    A New Hierarchical Key AuthData Management Scheme for Trusted Platform

  • Author

    Peng, Weiping ; Zhou, Yajian ; Wang, Cong ; Yang, Yixian ; Ping, Yuan

  • Author_Institution
    Key Lab. of Network & Inf. Attack & Defence Technol. of MOE, Beijing Univ. of Posts & Telecommun., Beijing, China
  • fYear
    2010
  • Firstpage
    463
  • Lastpage
    467
  • Abstract
    The purpose of TPM authorization mechanism is to authenticate the owner of a TPM or to authorize the use of an instance of a TPM capability. The TPM treats knowledge of the AuthData as complete proof of ownership of the entity. The main specification defines an authorized user must provide the parent key AuthData before loading its child key and provide the child key AuthData before using it. All users had to manage more and more AuthData values with the rapid increasing of keys. We have designed and analyzed a new hierarchical key AuthData management Scheme for trusted platform. In our scheme, each authorized user just needs to keep one single AuthData, and the computational requirement for generating or deriving an AuthData is just at the level of modular exponentiation and hash operation. Moreover, the lower level AuthData values can be easily derived from higher level AuthData along the same chain, but it is infeasible reversely. Even if more lower level AuthData values can´t be colluded to calculate the higher level AuthData. The result of performance evaluation and security analysis demonstrates that our proposed method is feasible and security.
  • Keywords
    authorisation; cryptography; TPM authorization mechanism; TPM capability; child key AuthData; computational requirement; hash operation; hierarchical key AuthData management scheme; modular exponentiation; parent key AuthData; performance evaluation; security analysis; trusted platform; Access control; Computers; Cryptography; Gold; Knowledge engineering; Performance evaluation; AuthData management; hierarchical key management; trusted computing;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Multimedia Information Networking and Security (MINES), 2010 International Conference on
  • Conference_Location
    Nanjing, Jiangsu
  • Print_ISBN
    978-1-4244-8626-7
  • Electronic_ISBN
    978-0-7695-4258-4
  • Type

    conf

  • DOI
    10.1109/MINES.2010.104
  • Filename
    5671054