DocumentCode
1788546
Title
Integrity based relationships and trustworthy communication between network participants
Author
Oberle, Alexander ; Larbig, Pedro ; Kuntze, Nicolai ; Rudolph, Carsten
Author_Institution
Fraunhofer Inst. for Secure Inf. Technol. (SIT), Darmstadt, Germany
fYear
2014
fDate
10-14 June 2014
Firstpage
610
Lastpage
615
Abstract
Establishing trust relationships between network participants by having them prove their operating system´s integrity via a Trusted Platform Module (TPM) provides interesting approaches for securing local networks at a higher level. In the introduced approach on OSI layer 2, attacks carried out by already authenticated and participating nodes (insider threats) can be detected and prevented. Forbidden activities and manipulations in hard- and software, such as executing unknown binaries, loading additional kernel modules or even inserting unauthorized USB devices, are detected and result in an autonomous reaction of each network participant. The provided trust establishment and authentication protocol operates independently from upper protocol layers and is optimized for resource constrained machines. Well known concepts of backbone architectures can maintain the chain of trust between different kinds of network types. Each endpoint, forwarding and processing unit monitors the internal network independently and reports misbehaviours autonomously to a central instance in or outside of the trusted network.
Keywords
computer network security; cryptographic protocols; trusted computing; OSI layer 2; authenticated node; authentication protocol; insider threat; integrity based relationship; network participants; operating system integrity; participating node; trust establishment; trusted platform module; trustworthy communication; Authentication; Encryption; Payloads; Protocols; Servers; Unicast; Cyber-physical systems; Security; authentication; industrial networks; integrity; protocol design; trust;
fLanguage
English
Publisher
ieee
Conference_Titel
Communications (ICC), 2014 IEEE International Conference on
Conference_Location
Sydney, NSW
Type
conf
DOI
10.1109/ICC.2014.6883386
Filename
6883386
Link To Document