Title :
A Secure Software Download Framework Based on Mobile Trusted Computing
Author :
Jun-jun, Wu ; Ming-wei, Fang ; Peng-fei, Yu ; Xin-fang, Zhang
Author_Institution :
Res. Center of Software & Embedded Syst. Eng. Technol., Huazhong Univ. of Sci. & Tech., Wuhan, China
Abstract :
The number of software deployed on mobile terminals is dramatically increasing. However, this leads the mobile terminal facing a serious of security threats. In order to resolve these threat issues, several security requirements are proposed. Also, this paper introduces a secure software download framework and corresponding download protocol based on mobile trusted computing, designed to handle a collection of activities in software download. Such activities include authentication, download and installation of the software. The core part of the framework is a discretionary engine--device management engine (DME), which provides entity authentication, integrity protection and remote attestation for the mobile device. By the introduction of software description file, we provide a mechanism to transfer reference integrity metric (RIM), which makes up for the shortage of the specification.
Keywords :
mobile computing; mobile handsets; protocols; security of data; device management engine; download protocol; entity authentication; integrity protection; mobile device; mobile terminal; mobile trusted computing; reference integrity metric; remote attestation; secure software download; security requirement; security threat; software description file; software installation; Authentication; Data security; Embedded software; Information security; Mobile computing; Mobile handsets; Protection; Protocols; Smart phones; Streaming media; Mobile Trusted computing; authentication; mobile trusted module; software download;
Conference_Titel :
Computer Science and Engineering, 2009. WCSE '09. Second International Workshop on
Conference_Location :
Qingdao
Print_ISBN :
978-0-7695-3881-5
DOI :
10.1109/WCSE.2009.789