Extending TLS with mutual attestation for platform integrity assurance

Normally, secure communication between client-server applications is established using secure channel technologies such as Transport Layer Security (TLS). TLS is cryptographic protocol which ensures secure transmission of data and authenticity of communication at each endpoint platform. However, the...

全面介绍

Saved in:
书目详细资料
Main Authors: Abdul Aziz, Nor Azah, Udzir, Nur Izura, Mahmod, Ramlan
格式: Article
语言:English
出版: Engineering and Technology Publishing 2014
在线阅读:http://psasir.upm.edu.my/id/eprint/37590/1/Extending%20TLS%20with%20mutual%20attestation%20for%20platform%20integrity%20assurance.pdf
http://psasir.upm.edu.my/id/eprint/37590/
http://www.jocm.us/index.php?m=content&c=index&a=show&catid=128&id=628
标签: 添加标签
没有标签, 成为第一个标记此记录!
id my.upm.eprints.37590
record_format eprints
spelling my.upm.eprints.375902015-12-18T01:51:47Z http://psasir.upm.edu.my/id/eprint/37590/ Extending TLS with mutual attestation for platform integrity assurance Abdul Aziz, Nor Azah Udzir, Nur Izura Mahmod, Ramlan Normally, secure communication between client-server applications is established using secure channel technologies such as Transport Layer Security (TLS). TLS is cryptographic protocol which ensures secure transmission of data and authenticity of communication at each endpoint platform. However, the protocol does not provide any trustworthiness assurance of the involved endpoint. This paper incorporates remote attestation in the TLS key exchange protocol to solve this issue.The proposed embedded attestation extension in TLS protocol will provide assurance of sender's platforms integrity to receiver, and vice versa.The CA responsibility in TLS is replaced using own Trusted Certificate Authority (TCA) in our protocol. The credibility of the proposed protocol is studied to secure against replay attack and collusion attack. The proof is performed using AVISPA with High Level Protocol Specification (HLPSL) through Dolev-Yao intruder model implementation of the proposed protocol. Engineering and Technology Publishing 2014-01 Article PeerReviewed application/pdf en http://psasir.upm.edu.my/id/eprint/37590/1/Extending%20TLS%20with%20mutual%20attestation%20for%20platform%20integrity%20assurance.pdf Abdul Aziz, Nor Azah and Udzir, Nur Izura and Mahmod, Ramlan (2014) Extending TLS with mutual attestation for platform integrity assurance. Journal of Communications, 9 (1). pp. 63-72. ISSN 2374-4367; ESSN: 1796-2021 http://www.jocm.us/index.php?m=content&c=index&a=show&catid=128&id=628 10.12720/jcm.9.1.63-72
institution Universiti Putra Malaysia
building UPM Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider Universiti Putra Malaysia
content_source UPM Institutional Repository
url_provider http://psasir.upm.edu.my/
language English
description Normally, secure communication between client-server applications is established using secure channel technologies such as Transport Layer Security (TLS). TLS is cryptographic protocol which ensures secure transmission of data and authenticity of communication at each endpoint platform. However, the protocol does not provide any trustworthiness assurance of the involved endpoint. This paper incorporates remote attestation in the TLS key exchange protocol to solve this issue.The proposed embedded attestation extension in TLS protocol will provide assurance of sender's platforms integrity to receiver, and vice versa.The CA responsibility in TLS is replaced using own Trusted Certificate Authority (TCA) in our protocol. The credibility of the proposed protocol is studied to secure against replay attack and collusion attack. The proof is performed using AVISPA with High Level Protocol Specification (HLPSL) through Dolev-Yao intruder model implementation of the proposed protocol.
format Article
author Abdul Aziz, Nor Azah
Udzir, Nur Izura
Mahmod, Ramlan
spellingShingle Abdul Aziz, Nor Azah
Udzir, Nur Izura
Mahmod, Ramlan
Extending TLS with mutual attestation for platform integrity assurance
author_facet Abdul Aziz, Nor Azah
Udzir, Nur Izura
Mahmod, Ramlan
author_sort Abdul Aziz, Nor Azah
title Extending TLS with mutual attestation for platform integrity assurance
title_short Extending TLS with mutual attestation for platform integrity assurance
title_full Extending TLS with mutual attestation for platform integrity assurance
title_fullStr Extending TLS with mutual attestation for platform integrity assurance
title_full_unstemmed Extending TLS with mutual attestation for platform integrity assurance
title_sort extending tls with mutual attestation for platform integrity assurance
publisher Engineering and Technology Publishing
publishDate 2014
url http://psasir.upm.edu.my/id/eprint/37590/1/Extending%20TLS%20with%20mutual%20attestation%20for%20platform%20integrity%20assurance.pdf
http://psasir.upm.edu.my/id/eprint/37590/
http://www.jocm.us/index.php?m=content&c=index&a=show&catid=128&id=628
_version_ 1643832018170019840
score 13.250246