Extending TLS with mutual attestation for platform integrity assurance
Normally, secure communication between client-server applications is established using secure channel technologies such as Transport Layer Security (TLS). TLS is cryptographic protocol which ensures secure transmission of data and authenticity of communication at each endpoint platform. However, the...
Saved in:
Main Authors: | , , |
---|---|
Format: | Article |
Language: | English |
Published: |
Engineering and Technology Publishing
2014
|
Online Access: | http://psasir.upm.edu.my/id/eprint/37590/1/Extending%20TLS%20with%20mutual%20attestation%20for%20platform%20integrity%20assurance.pdf http://psasir.upm.edu.my/id/eprint/37590/ http://www.jocm.us/index.php?m=content&c=index&a=show&catid=128&id=628 |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
id |
my.upm.eprints.37590 |
---|---|
record_format |
eprints |
spelling |
my.upm.eprints.375902015-12-18T01:51:47Z http://psasir.upm.edu.my/id/eprint/37590/ Extending TLS with mutual attestation for platform integrity assurance Abdul Aziz, Nor Azah Udzir, Nur Izura Mahmod, Ramlan Normally, secure communication between client-server applications is established using secure channel technologies such as Transport Layer Security (TLS). TLS is cryptographic protocol which ensures secure transmission of data and authenticity of communication at each endpoint platform. However, the protocol does not provide any trustworthiness assurance of the involved endpoint. This paper incorporates remote attestation in the TLS key exchange protocol to solve this issue.The proposed embedded attestation extension in TLS protocol will provide assurance of sender's platforms integrity to receiver, and vice versa.The CA responsibility in TLS is replaced using own Trusted Certificate Authority (TCA) in our protocol. The credibility of the proposed protocol is studied to secure against replay attack and collusion attack. The proof is performed using AVISPA with High Level Protocol Specification (HLPSL) through Dolev-Yao intruder model implementation of the proposed protocol. Engineering and Technology Publishing 2014-01 Article PeerReviewed application/pdf en http://psasir.upm.edu.my/id/eprint/37590/1/Extending%20TLS%20with%20mutual%20attestation%20for%20platform%20integrity%20assurance.pdf Abdul Aziz, Nor Azah and Udzir, Nur Izura and Mahmod, Ramlan (2014) Extending TLS with mutual attestation for platform integrity assurance. Journal of Communications, 9 (1). pp. 63-72. ISSN 2374-4367; ESSN: 1796-2021 http://www.jocm.us/index.php?m=content&c=index&a=show&catid=128&id=628 10.12720/jcm.9.1.63-72 |
institution |
Universiti Putra Malaysia |
building |
UPM Library |
collection |
Institutional Repository |
continent |
Asia |
country |
Malaysia |
content_provider |
Universiti Putra Malaysia |
content_source |
UPM Institutional Repository |
url_provider |
http://psasir.upm.edu.my/ |
language |
English |
description |
Normally, secure communication between client-server applications is established using secure channel technologies such as Transport Layer Security (TLS). TLS is cryptographic protocol which ensures secure transmission of data and authenticity of communication at each endpoint platform. However, the protocol does not provide any trustworthiness assurance of the involved endpoint. This paper incorporates remote attestation in the TLS key exchange protocol to solve this issue.The proposed embedded attestation extension in TLS protocol will provide assurance of sender's platforms integrity to receiver, and vice versa.The CA responsibility in TLS is replaced using own Trusted Certificate Authority (TCA) in our protocol. The credibility of the proposed protocol is studied to secure against replay attack and collusion attack. The proof is performed using AVISPA with High Level Protocol Specification (HLPSL) through Dolev-Yao intruder model implementation of the proposed protocol. |
format |
Article |
author |
Abdul Aziz, Nor Azah Udzir, Nur Izura Mahmod, Ramlan |
spellingShingle |
Abdul Aziz, Nor Azah Udzir, Nur Izura Mahmod, Ramlan Extending TLS with mutual attestation for platform integrity assurance |
author_facet |
Abdul Aziz, Nor Azah Udzir, Nur Izura Mahmod, Ramlan |
author_sort |
Abdul Aziz, Nor Azah |
title |
Extending TLS with mutual attestation for platform integrity assurance |
title_short |
Extending TLS with mutual attestation for platform integrity assurance |
title_full |
Extending TLS with mutual attestation for platform integrity assurance |
title_fullStr |
Extending TLS with mutual attestation for platform integrity assurance |
title_full_unstemmed |
Extending TLS with mutual attestation for platform integrity assurance |
title_sort |
extending tls with mutual attestation for platform integrity assurance |
publisher |
Engineering and Technology Publishing |
publishDate |
2014 |
url |
http://psasir.upm.edu.my/id/eprint/37590/1/Extending%20TLS%20with%20mutual%20attestation%20for%20platform%20integrity%20assurance.pdf http://psasir.upm.edu.my/id/eprint/37590/ http://www.jocm.us/index.php?m=content&c=index&a=show&catid=128&id=628 |
_version_ |
1643832018170019840 |
score |
13.211869 |