MILCOM 2018 - 2018 IEEE Military Communications Conference (MILCOM) 2018
DOI: 10.1109/milcom.2018.8599735
|View full text |Cite
|
Sign up to set email alerts
|

A Platform Service for Remote Integrity Measurement and Attestation

Abstract: Software integrity measurement and attestation (M&A) are critical technologies for evaluating the trustworthiness of software platforms. To best support these technologies, next generation systems must provide a centralized service for securely selecting, collecting, and evaluating integrity measurements. Centralization of M&A avoids duplication, minimizes security risks to the system, and ensures correct administration of integrity policies and systems. This paper details the desirable features and properties… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
8
0

Year Published

2019
2019
2024
2024

Publication Types

Select...
4
2
1

Relationship

2
5

Authors

Journals

citations
Cited by 15 publications
(8 citation statements)
references
References 22 publications
0
8
0
Order By: Relevance
“…Integrity measurement tools include both static [26,36] and dynamic [6,15,19,37,38,41] approaches that support both baseline and recurring measurements of target systems. Higher-level measurement frameworks support userspace monitoring [28,12,24,29], kernel-level introspection [25], and attestation of embedded/IOT platforms [22,3,39]. The framework presented in the current work is designed as a common operational environment for such tools, plugging them in as ASPs and composing their measurement results as Copland Evidence.…”
Section: Related Workmentioning
confidence: 99%
“…Integrity measurement tools include both static [26,36] and dynamic [6,15,19,37,38,41] approaches that support both baseline and recurring measurements of target systems. Higher-level measurement frameworks support userspace monitoring [28,12,24,29], kernel-level introspection [25], and attestation of embedded/IOT platforms [22,3,39]. The framework presented in the current work is designed as a common operational environment for such tools, plugging them in as ASPs and composing their measurement results as Copland Evidence.…”
Section: Related Workmentioning
confidence: 99%
“…2, is being utilized by the authors as a testing ground for Copland. Maat provides a pluggable interface for Attestation Service Providers (ASPs), functional units of measurement which are executed by Attestation Protocol Blocks (APBs) after a negotiation between an attester and appraiser machine [16]. Another architecture, given in [8], implements a policy mechanism designed to allow the appraiser to ask for different conditions to be satisfied by the target for different types of interactions.…”
Section: Related Workmentioning
confidence: 99%
“…We are actively exploring advanced attestation scenarios between Maat Attestation Managers (AMs). Recall from the introduction that Maat is a policy-based measurement and attestation (M&A) framework which provides a centralized, pluggable service to gather and report integrity measurements [16]. The Maat team is leveraging Copland to test attestation scenarios involving the configuration of multiple instances of Maat in multi-realm and multi-party scenarios.…”
Section: Conclusion and Ongoing Workmentioning
confidence: 99%
See 1 more Smart Citation
“…In existing systems, most adversaries capable of modifying arbitrary processes are likely to be able to also modify the measurement tools or operating system kernel. To protect against realistic adversaries our approach relies on the concept of nested measurements and isolated execution environments provided by a measurement and attestation system such as Maat [25].…”
Section: Adversary Modelmentioning
confidence: 99%