A Separated Domain-Based Kernel Model for Trusted Computing

Fang Yanxiang,Shen Changxiang,Xu Jingdong,Wu Gongyi
DOI: https://doi.org/10.1007/bf02831789
2006-01-01
Abstract:This paper fist gives an investigation on trusted computing on mainstream operation system (OS). Based on the observations, it is pointed out that Trusted Computing cannot be achieved due to the lack of separation mechanism of the components in mainstream OS. In order to provide a kind of separation mechanism, this paper proposes a separated domain-based kernel model (SDBKM), and this model is verified by non-interference theory. By monitoring and simplifying the trust dependence between domains, this model can solve problems in trust measurement such as deny of service (DoS) attack, Host security, and reduce the overhead of measurement.
What problem does this paper attempt to address?