Secure storage using a sealing proxy

Emanuele Cesena, Gianluca Ramunno, Davide Vernizzi · 2008

This is an early work that focuses on sealing, one of the functions introduced by Trusted Computing Group in the specification of Trusted Platform Module. Sealing allows to cryptographically bind data to a specific system state.We consider that availability of sealed data is an important issue, because once the system state is modified (e.g. after a software update) it may be impossible to unseal data.We explore the idea of an architecture based on a sealing proxy to mitigate this problem. We also provide a proof of concept implementation and we show that the proposed architecture, dealing with a simple software property, can be extended towards a more general property-based sealing.

Read the paper · More papers on PaperTik