Extending TLS with mutual attestation for platform integrity assurance

Normally, secure communication between client-server applications is established using secure channel technologies such as Transport Layer Security (TLS). TLS is cryptographic protocol which ensures secure transmission of data and authenticity of communication at each endpoint platform. However, the...

Full description

Saved in:
Bibliographic Details
Main Authors: Abdul Aziz, Nor Azah, Udzir, Nur Izura, Mahmod, Ramlan
Format: Article
Language:English
Published: Engineering and Technology Publishing 2014
Online Access:http://psasir.upm.edu.my/id/eprint/37590/1/Extending%20TLS%20with%20mutual%20attestation%20for%20platform%20integrity%20assurance.pdf
http://psasir.upm.edu.my/id/eprint/37590/
http://www.jocm.us/index.php?m=content&c=index&a=show&catid=128&id=628
Tags: Add Tag
No Tags, Be the first to tag this record!
id my.upm.eprints.37590
record_format eprints
spelling my.upm.eprints.375902015-12-18T01:51:47Z http://psasir.upm.edu.my/id/eprint/37590/ Extending TLS with mutual attestation for platform integrity assurance Abdul Aziz, Nor Azah Udzir, Nur Izura Mahmod, Ramlan Normally, secure communication between client-server applications is established using secure channel technologies such as Transport Layer Security (TLS). TLS is cryptographic protocol which ensures secure transmission of data and authenticity of communication at each endpoint platform. However, the protocol does not provide any trustworthiness assurance of the involved endpoint. This paper incorporates remote attestation in the TLS key exchange protocol to solve this issue.The proposed embedded attestation extension in TLS protocol will provide assurance of sender's platforms integrity to receiver, and vice versa.The CA responsibility in TLS is replaced using own Trusted Certificate Authority (TCA) in our protocol. The credibility of the proposed protocol is studied to secure against replay attack and collusion attack. The proof is performed using AVISPA with High Level Protocol Specification (HLPSL) through Dolev-Yao intruder model implementation of the proposed protocol. Engineering and Technology Publishing 2014-01 Article PeerReviewed application/pdf en http://psasir.upm.edu.my/id/eprint/37590/1/Extending%20TLS%20with%20mutual%20attestation%20for%20platform%20integrity%20assurance.pdf Abdul Aziz, Nor Azah and Udzir, Nur Izura and Mahmod, Ramlan (2014) Extending TLS with mutual attestation for platform integrity assurance. Journal of Communications, 9 (1). pp. 63-72. ISSN 2374-4367; ESSN: 1796-2021 http://www.jocm.us/index.php?m=content&c=index&a=show&catid=128&id=628 10.12720/jcm.9.1.63-72
institution Universiti Putra Malaysia
building UPM Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider Universiti Putra Malaysia
content_source UPM Institutional Repository
url_provider http://psasir.upm.edu.my/
language English
description Normally, secure communication between client-server applications is established using secure channel technologies such as Transport Layer Security (TLS). TLS is cryptographic protocol which ensures secure transmission of data and authenticity of communication at each endpoint platform. However, the protocol does not provide any trustworthiness assurance of the involved endpoint. This paper incorporates remote attestation in the TLS key exchange protocol to solve this issue.The proposed embedded attestation extension in TLS protocol will provide assurance of sender's platforms integrity to receiver, and vice versa.The CA responsibility in TLS is replaced using own Trusted Certificate Authority (TCA) in our protocol. The credibility of the proposed protocol is studied to secure against replay attack and collusion attack. The proof is performed using AVISPA with High Level Protocol Specification (HLPSL) through Dolev-Yao intruder model implementation of the proposed protocol.
format Article
author Abdul Aziz, Nor Azah
Udzir, Nur Izura
Mahmod, Ramlan
spellingShingle Abdul Aziz, Nor Azah
Udzir, Nur Izura
Mahmod, Ramlan
Extending TLS with mutual attestation for platform integrity assurance
author_facet Abdul Aziz, Nor Azah
Udzir, Nur Izura
Mahmod, Ramlan
author_sort Abdul Aziz, Nor Azah
title Extending TLS with mutual attestation for platform integrity assurance
title_short Extending TLS with mutual attestation for platform integrity assurance
title_full Extending TLS with mutual attestation for platform integrity assurance
title_fullStr Extending TLS with mutual attestation for platform integrity assurance
title_full_unstemmed Extending TLS with mutual attestation for platform integrity assurance
title_sort extending tls with mutual attestation for platform integrity assurance
publisher Engineering and Technology Publishing
publishDate 2014
url http://psasir.upm.edu.my/id/eprint/37590/1/Extending%20TLS%20with%20mutual%20attestation%20for%20platform%20integrity%20assurance.pdf
http://psasir.upm.edu.my/id/eprint/37590/
http://www.jocm.us/index.php?m=content&c=index&a=show&catid=128&id=628
_version_ 1643832018170019840
score 13.211869