|
中国科学院研究生院学报 2009
Information-flow-based measurement architecture of trusted operating system
|
Abstract:
We are motivated to provide better protection for operating system integrity with the help of information flow integrity and trusted computing. Traditional measurement based on trusted computing is poor in dynamic measurement and efficiency, while Biba fails in practical application because of its monotonic behavior. In this paper, we design an information flow integrity architecture called BIFI based on classical integrity model Biba with TPM as root of trust. Experiments show that BIFI protects information flow integrity effectively with only a few changes to existing systems.