Title :
Real-time remote attestation of IaaS cloud
Author :
Zhen Xu ; Aimin Yu ; Wensi Yang
Author_Institution :
Inst. of Inf. Eng., Beijing, China
fDate :
Oct. 30 2012-Nov. 1 2012
Abstract :
Aiming at the deficiencies when deploying existing remote attestation approaches in the IaaS cloud, this paper proposes a real-time remote attestation approach for IaaS cloud. The approach includes a realtime remote attestation architecture and corresponding dynamic measurement mechanism and reference generation mechanism. The contributions can be concluded into three aspects. Firstly, it alleviates the TOCTOU (Time of Check, Time of Use) problem. Secondly the load of verification is low, as makes it acceptable for thin clients. Thirdly the runtime behavior of the software is measured dynamically. In our prototype it is shown that the approach can detect the attacks such as code injection.
Keywords :
cloud computing; real-time systems; security of data; virtual machines; virtualisation; IaaS cloud; TOCTOU problem; attack detection; dynamic measurement mechanism; real-time remote attestation architecture; reference generation mechanism; remote attestation approaches; software runtime behavior; time of check-time of use problem; Computer architecture; Kernel; Real-time systems; Time measurement; Virtual machine monitors; Virtual machining; Dynamic measurement; IaaS; TOCTOU; real-time remote attestation;
Conference_Titel :
Cloud Computing and Intelligent Systems (CCIS), 2012 IEEE 2nd International Conference on
Conference_Location :
Hangzhou
Print_ISBN :
978-1-4673-1855-6
DOI :
10.1109/CCIS.2012.6664415