Title | A TPCM-Based Trusted PXE Boot Method For Servers |
Publication Type | Conference Paper |
Year of Publication | 2020 |
Authors | Guojie, Liu, Jianbiao, Zhang |
Conference Name | 2020 IEEE 5th International Conference on Signal and Image Processing (ICSIP) |
Date Published | oct |
Keywords | composability, cyber physical security, cyber physical systems, Information security, level measurement, Linux, Microprogramming, pubcrawl, Publishing, resilience, Resiliency, security, Servers, Standards, Trusted Computing, trusted platform control module, Trusted Platform Module, trusted platform modules, trusted startup |
Abstract | Information level protection standard 2.0 requires trusted verification of system bootstrappers, system programs, etc. of server equipment based on trusted root. According to the requirements of information level protection standard, this paper puts forward a network trusted start-up scheme based on the trusted platform control module to guarantee the security and trust of the server's BIOS firmware, PXE boot file and Linux system file. When publishing BIOS firmware, PXE startup file, Linux system file, the state-secret algorithm SM3 is used to calculate the summary value as the benchmark value, and stored in the trusted platform control module, BIOS firmware, Linux boot file. When the server starts up with PXE, the BIOS firmware is measured by the Trusted Platform Control Module, the BIOS Start Environment Measures PXE Boot File, and the PXE Boot File measures the Linux system file. The trusted platform control module is the trust root level measurement level, the first level of trust level, the trust chain, the implementation of a trusted server operating environment. The method proposed in this paper is tested on the domestic autonomous controllable Sunway server, and the experimental results show that the method proposed in this paper is feasible. |
DOI | 10.1109/ICSIP49896.2020.9339366 |
Citation Key | guojie_tpcm-based_2020 |