Ng-v TPM: A Next Generation Virtualized TPM Architecture

Yang Yongjia · Journal of Wuhan University · 2015

As a vital important security component in cloud,v TPM( virtual trusted platform module) should provide the abilities of seal storage,trust identity and chain of trust,as well as trust migration. Unfortunately,those requirements are far from ongoing research works. In this paper,a Ng-v TPM framework is proposed. This framework has three features,the first one is a novel v TPM key hierarchies to protect sensitive data,the second one is the extension of chain of trust from physical host hardware to virtualized guest environment based on EPS( Endorsement Platform Seed),the third one is a novel PCR( platform configuration register) policy based on sealing to solve brittleness problem for migratable v TPM. At last,we also implement this framework on Xen and TPM 2. 0 platform. According to the experiments and data analysis,our work can satisfy the above requirements correctly and efficiently.

Read the paper · More papers on PaperTik