Method for self adaptedly safeguarding the normal starting of credible client virtual domain

A trusted client and normal start-up technology, applied in the field of self-adaptation, can solve problems such as wasting system resources, not easy to set command interval time, and reduce system response speed, so as to maintain system performance and solve the effect of slow system response speed

Inactive Publication Date: 2009-09-23
BEIJING JIAOTONG UNIV
View PDF0 Cites 6 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Traditional trusted computing technology can only guarantee the security of a single computer. In order to realize the seamless operation of trusted application software on the customer's virtual domain, two problems must be solved: one is how to provide TPM equipment for the customer's virtual domain; the other is how to Realize the integrity measurement of each stage of the trust chain of the customer's virtual domain
One method is to periodically issue TPM commands until the returned result is correct. This polling detection method is simple, but the interval time of the commands is not easy to set, so this method may slow down the system response speed or waste system resources in a dynamic environment.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for self adaptedly safeguarding the normal starting of credible client virtual domain
  • Method for self adaptedly safeguarding the normal starting of credible client virtual domain
  • Method for self adaptedly safeguarding the normal starting of credible client virtual domain

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0029] The software that the present invention needs function enhancement includes: (1) virtual TPM (vTPM) device program, vTPM back-end driver and vTPM back-end driver that support the pure software realization of virtual trusted platform module system, (2) this method also needs to IMA software is enhanced.

[0030] The system deployment process of the present invention is as follows:

[0031] Step 1, deploy figure 2 method components

[0032] Step 2, replace the vTPM device program with enhanced functions figure 2 The vTPM device program provided by the method

[0033] Step 3, replace the vTPM backend driver with enhanced functions figure 2 The vTPM backend provided by the method drives the vTPM device program

[0034] Step 4, integrate the enhanced vTPM front-end driver and the enhanced IMA software into the virtual domain kernel file

[0035] Step 5, load the enhanced vTPM backend driver in the privileged domain and start the vTPM device management tool.

[0036] ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to a method for self adaptedly safeguarding the normal starting of a credible client virtual domain. The method realizes the safeguarding by increasing the functions of the existing virtual trusted platform module and the integrity measurement software. In the method, the integrity measurement software is loaded by the client virtual domain and then enters into the sleep mode so as to suspend the system starting; until the virtual trusted platform module of a privilege domain comes into operation, the integrity measurement software is aroused and the virtual domain system continously starts. The method not only can safeguard that the credible client virtual domain does not collapse owing to the slow establishment process of the virtual trusted platform module, but only maintains that the original system makes the best of system resources on one hand and maintains the response speed of the original system on the other hand by adopting an event driving operating mode and postponing the suspending of the starting process of the virtual domain before the initializing part of the virtual domain software of a first access virtual trusted platform module.

Description

technical field [0001] The invention relates to the field of trusted computing for computer information security, in particular to an adaptive method, which maintains the effective utilization rate of original system resources and system response speed while ensuring the normal startup of trusted client virtual domains. Background technique [0002] The virtual machine technology applies the concept of virtualization of the whole machine, which removes the constraints of the compatibility of the physical machine and hardware resources on the application program, and realizes the parallel operation of multiple operating systems on the same hardware platform. In the network era, the existing PC system, which is designed with efficiency first rather than security first, is more and more vulnerable to attacks from hackers, spyware and viruses. In order to solve the problem of insecure PC structure and fundamentally improve its credibility, the Trusted Computing Platform Alliance...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F9/445G06F9/48
Inventor 常晓林韩臻刘吉强刘博何帆邢彬魏何
Owner BEIJING JIAOTONG UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products