TUM Logo

A Robust Integrity Reporting Protocol for Remote Attestation

Trusted Computing Platforms provide the functionality of remote attestation, i.e. attesting the configuration and status of a system to a remote entity. Remote attestation hereby proves integrity and authenticity of system environments. This is crucial for policy enforcement, which in turn is needed in many usage scenarios, e.g., DRM. However, applying remote attestation solely allows masquerading attacks. These attacks are possible since the concept of remote attestation does not provide any means for establishing secured communication channels. In this paper we describe this kind of attacks against protocols for remote attestation and present a protocol for preventing masquerading attacks.

A Robust Integrity Reporting Protocol for Remote Attestation

Second Workshop on Advances in Trusted Computing (WATC '06 Fall)

Authors: Frederic Stumpf, Omid Tafreschi, Patrick Röder, and Claudia Eckert
Year/month: 2006/11
Booktitle: Second Workshop on Advances in Trusted Computing (WATC '06 Fall)
Address: Tokyo, Japan
Fulltext:

Abstract

Trusted Computing Platforms provide the functionality of remote attestation, i.e. attesting the configuration and status of a system to a remote entity. Remote attestation hereby proves integrity and authenticity of system environments. This is crucial for policy enforcement, which in turn is needed in many usage scenarios, e.g., DRM. However, applying remote attestation solely allows masquerading attacks. These attacks are possible since the concept of remote attestation does not provide any means for establishing secured communication channels. In this paper we describe this kind of attacks against protocols for remote attestation and present a protocol for preventing masquerading attacks.

Bibtex:

@inproceedings { Stumpf2006,
author = { Frederic Stumpf and Omid Tafreschi and Patrick Röder and Claudia Eckert},
title = { A Robust Integrity Reporting Protocol for Remote Attestation },
year = { 2006 },
month = { November },
booktitle = { Second Workshop on Advances in Trusted Computing (WATC '06 Fall) },
address = { Tokyo, Japan },

}