针对云计算等新型计算环境下的可信度量问题,提出了一种无需操作系统的硬件级全盘任意文件可信度量方法.通过在U-key中放置可信度量代理(TMA),利用TMA自主解析文件系统获取磁盘中任意文件的扇区存储地址,从而能够在不存在Grub、未启动操作系统以及不需要其他任何硬软件支持的情况下,实现对全盘任意文件的可信度量.考虑到TMA的安全性,利用B方法实现了对TMA的形式化开发.与已有的工作相比,所提方法不仅能够应用在云计算等新型计算环境中,而且能够应用于不存在可信平台模块(TPM)等安全增强芯片的普通计算机上.实验证明了本方法是有效的.
Regarding the trust measurement problem in the new types of computing environments such as cloud computing and so on ,a hardware-level trust measurement approach without operating system was presented .By placing TMA (trust measurement agent) in a U-key ,and using TMA to automati-cally analyze file-system ,any file in a hard disk could be measured without the assistants of operating system and any other hardware and software .The TMA was developed based on the B method due to the consideration of TMA security .Comparing against existing works ,this approach can be applied not only in the new types of computing environments such as cloud computing and so on ,but also in common PCs (personal computers) that has no security chips such as TPM (trusted platform mod-ule) .Experimental results show that this approach is efficient .