• DocumentCode
    1788546
  • Title

    Integrity based relationships and trustworthy communication between network participants

  • Author

    Oberle, Alexander ; Larbig, Pedro ; Kuntze, Nicolai ; Rudolph, Carsten

  • Author_Institution
    Fraunhofer Inst. for Secure Inf. Technol. (SIT), Darmstadt, Germany
  • fYear
    2014
  • fDate
    10-14 June 2014
  • Firstpage
    610
  • Lastpage
    615
  • Abstract
    Establishing trust relationships between network participants by having them prove their operating system´s integrity via a Trusted Platform Module (TPM) provides interesting approaches for securing local networks at a higher level. In the introduced approach on OSI layer 2, attacks carried out by already authenticated and participating nodes (insider threats) can be detected and prevented. Forbidden activities and manipulations in hard- and software, such as executing unknown binaries, loading additional kernel modules or even inserting unauthorized USB devices, are detected and result in an autonomous reaction of each network participant. The provided trust establishment and authentication protocol operates independently from upper protocol layers and is optimized for resource constrained machines. Well known concepts of backbone architectures can maintain the chain of trust between different kinds of network types. Each endpoint, forwarding and processing unit monitors the internal network independently and reports misbehaviours autonomously to a central instance in or outside of the trusted network.
  • Keywords
    computer network security; cryptographic protocols; trusted computing; OSI layer 2; authenticated node; authentication protocol; insider threat; integrity based relationship; network participants; operating system integrity; participating node; trust establishment; trusted platform module; trustworthy communication; Authentication; Encryption; Payloads; Protocols; Servers; Unicast; Cyber-physical systems; Security; authentication; industrial networks; integrity; protocol design; trust;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Communications (ICC), 2014 IEEE International Conference on
  • Conference_Location
    Sydney, NSW
  • Type

    conf

  • DOI
    10.1109/ICC.2014.6883386
  • Filename
    6883386