Title :
Patterns for Secure Boot and Secure Storage in Computer Systems
Author :
Lohr, Hans ; Sadeghi, Ahmad-Reza ; Winandy, Marcel
Author_Institution :
Horst Gortz Inst. for IT Security, Ruhr-Univ., Bochum, Germany
Abstract :
Trusted Computing aims at enhancing the security of IT systems by using a combination of trusted hardware and software components to provide security guarantees. This includes system state integrity and the secure link between the software and hardware of a computing platform. Although security patterns exist for operating system security, access control, and authentication, there is still none of Trusted Computing aspects. In this paper, we introduce security patterns for secure boot and for secure storage, which are important basic Trusted Computing concepts. Secure boot is at the heart of most security solutions and secure storage is fundamental for application-level security: it ensures that the integrity of software is verified before accessing stored data. Our paper aims at complementing existing system security patterns by presenting the common patterns underlying the different realizations of secure boot and secure storage.
Keywords :
data privacy; security of data; application-level security; computer systems; hardware component; secure boot pattern; secure storage pattern; software component; trusted computing aspects; Access control; Application software; Authentication; Computer security; Data security; Hardware; Kernel; Operating systems; Protection; Secure storage; secure boot; secure storage; security patterns; trusted computing;
Conference_Titel :
Availability, Reliability, and Security, 2010. ARES '10 International Conference on
Conference_Location :
Krakow
Print_ISBN :
978-1-4244-5879-0
DOI :
10.1109/ARES.2010.110