Secure storage using a sealing proxy

  • Authors:
  • Emanuele Cesena;Gianluca Ramunno;Davide Vernizzi

  • Affiliations:
  • Università degli Studi, RomaTre, Roma, Italy;Politecnico di Torino, Torino, Italy;Politecnico di Torino, Torino, Italy

  • Venue:
  • Proceedings of the 1st European Workshop on System Security
  • Year:
  • 2008

Quantified Score

Hi-index 0.00

Visualization

Abstract

This is an early work that focuses on sealing, one of the functions introduced by Trusted Computing Group in the specification of Trusted Platform Module. Sealing allows to cryptographically bind data to a specific system state. We consider that availability of sealed data is an important issue, because once the system state is modified (e.g. after a software update) it may be impossible to unseal data. We explore the idea of an architecture based on a sealing proxy to mitigate this problem. We also provide a proof of concept implementation and we show that the proposed architecture, dealing with a simple software property, can be extended towards a more general property-based sealing.