Building general purpose security services on trusted computing

Chunhua Chen,Chris J. Mitchell,Shaohua Tang
DOI: https://doi.org/10.1007/978-3-642-32298-3_2
2012-01-01
Abstract:The Generic Authentication Architecture (GAA) is a standardised extension to the mobile telephony security infrastructures (including the Universal Mobile Telecommunications System (UMTS) authentication infrastructure) that supports the provision of generic security services to network applications. In this paper we propose one possible means for extending the widespread Trusted Computing security infrastructure using a GAA-like framework. This enables an existing security infrastructure to be used as the basis of a general-purpose authenticated key establishment service in a simple and uniform way, and also provides an opportunity for trusted computing aware third parties to provide novel security services. We also discuss trust issues and possible applications of GAA services.
What problem does this paper attempt to address?