将密钥隔离安全机制应用到基于组件属性的远程证明中,并分析方案的正确性和安全性.分析结果表明:未及时更新或者被恶意代码攻击的组件将丧失安全属性,不再具有远程证明能力.实现了无证书的组件证明,省略了验证证书的过程,减少了验证方的负担,并结合现有的可信计算完整性管理模式,给出了实现过程.
This paper applies the mechanism of Key-insulated security to the component property-based attestation and analyzes the correction and security of the scheme.The analysis shows that the component which has not been updated or attacked by the malicious code will lose the security property,and would not have the ability of remote attestation.This paper implements the certificateless component property based attestation,which eliminates the process of verifying the certificate,reduces the burden of the verifier,and gives the implementation process by combining with the existing integrity management model of trusted computing.