A trusted cloud platform measurement system and method

A measurement system and cloud platform technology, applied in the field of trusted cloud platform measurement systems, can solve the problems of cloud platform malicious attack lack of active immune mechanism, cloud platform ontology security is difficult to guarantee, etc., to achieve the effect of active immune mechanism and security enhancement

Active Publication Date: 2021-02-26
GLOBAL ENERGY INTERCONNECTION RES INST CO LTD +3
View PDF4 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] The technical problem to be solved by the present invention is to overcome the problem that the identity of the cloud platform cannot be effectively resolved and the integrity of the software and hardware of the cloud platform can not be effectively resolved in the cloud platform system of the prior art. The cloud platform lacks an active immune mechanism to malicious attacks, so that the cloud The problem that the security of the platform ontology is difficult to guarantee

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A trusted cloud platform measurement system and method
  • A trusted cloud platform measurement system and method
  • A trusted cloud platform measurement system and method

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0029] An embodiment of the present invention provides a trusted cloud platform measurement system, such as figure 1 As shown, the trusted cloud platform measurement system includes: a virtual root of trust back-end driver module 1, a lifecycle management module 2, a virtual root of trust management module 3, a physical root of trust driver module 4, and a physical root of trust module 5 and at least one virtual root-of-trust front-end driver module 6. It should be noted that, in the embodiment of the present invention, the virtual root-of-trust front-end driver module 6 is used as an example for illustration. In practical applications, the virtual root-of-trust The number of root front-end drive modules 6 may be multiple, and the present invention is not limited thereto.

[0030] Specifically, in an embodiment, the specific architecture of the above-mentioned trusted cloud platform measurement system is as follows: figure 2As shown, the aforementioned virtual root-of-trust ...

Embodiment 2

[0044] An embodiment of the present invention provides a trusted cloud platform measurement method, such as image 3 As shown, the trusted cloud platform measurement method includes:

[0045] Step S1: Obtain an application request of a trusted application in the virtual machine application software. The application request includes: application running request and calling data request, etc.

[0046] Step S2: Add the label of the virtual machine to the application request according to the correspondence between the application request and the virtual machine to generate an identification application request. There may be multiple application requests mentioned above, corresponding to multiple virtual machines respectively.

[0047] Step S3: Generate measurement instructions according to the startup behavior of each virtual machine and the system environment of the host machine.

[0048] Step S4: Perform a credible measurement test on the identification application request ac...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The present invention provides a trusted cloud platform measurement system and method. The system includes: at least one virtual trusted root front-end driver module, used to obtain application requests and send them to the virtual trusted root back-end driver module to add the corresponding virtual machine label, generate and identify the application request and send it to the physical root of trust driver module; the life cycle management module generates measurement instructions according to the startup behavior of each virtual machine and the system environment of the host machine, and passes the measurement instructions through the virtual root of trust management module Send to the physical root of trust driver module for execution; the physical root of trust driver module performs a trust measurement test on the identification application request to generate a measurement result, and sends the result to the physical root of trust module to determine whether the host computer executes according to the measurement result application request. By implementing the invention, the security of the cloud platform body is strengthened, the active immunity mechanism of the cloud platform to malicious attacks is realized, and a solid foundation is laid for building a safe and credible electric power cloud platform.

Description

technical field [0001] The invention relates to the field of information security, in particular to a measurement system and method for a trusted cloud platform. Background technique [0002] Cloud computing is a computing model that gathers various information resources (including computing and storage, application operating platforms, software, etc.) based on the network to form a shared resource pool, and provides services to users in a dynamic and elastic manner. In recent years, the widespread popularization of cloud computing technology has created huge space and opportunities for the upgrading of the power industry. The existing computing and storage capabilities of each power information system are different, so using the existing systems of the national power grid and provincial power grid to establish a power system industry cloud can not only maximize the integration of the existing data resources and processor resources of the power system , and can provide scal...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06G06F9/455G06F21/56
CPCG06F9/45558G06F21/566G06F2009/45562G06F2009/45587G06F2009/45595G06F2221/033G06F2221/034H04L63/1416H04L63/145
Inventor 赵保华韩兆刚姚一杨李云鹏
Owner GLOBAL ENERGY INTERCONNECTION RES INST CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products