Building a trusted image for embedded systems

In this work, we propose PlugNPlay Trust, an integrity measurement framework which enables a remote system to evaluate the integrity and state of an embedded node. The PlugNPlay Trust design exploits the relatively static nature of embedded communication systems and uses a Trusted Platform Module (TPM) to measure the state and provide identity verification for the embedded host. This framework enables remote parties to confirm the integrity of embedded communication systems, thereby limiting the effects and the proliferation of malware in compromised system. We implement a prototype of the PlugNPlay framework using Live CD technologies and a USB Flash-drive. We measure the performance of our system and show that our design choices result in efficient measurement and verification of system integrity.

[1]  Trent Jaeger,et al.  Establishing and Sustaining System Integrity via Root of Trust Installation , 2007, Twenty-Third Annual Computer Security Applications Conference (ACSAC 2007).

[2]  K J Biba,et al.  Integrity Considerations for Secure Computer Systems , 1977 .

[3]  Trent Jaeger,et al.  Design and Implementation of a TCG-based Integrity Measurement Architecture , 2004, USENIX Security Symposium.