Separating hypervisor trusted computing base supported by hardware

  • Authors:
  • Carl Gebhardt;Chris I. Dalton;Allan Tomlinson

  • Affiliations:
  • University of London, London, United Kingdom;Hewlett-Packard Labs, Bristol, United Kingdom;University of London, London, United Kingdom

  • Venue:
  • Proceedings of the fifth ACM workshop on Scalable trusted computing
  • Year:
  • 2010

Quantified Score

Hi-index 0.00

Visualization

Abstract

In this paper we explore how recent advances in virtualisation support for commodity hardware could be utilised to reduce the Trusted Computing Base (TCB) and improve the code separation of a hypervisor. To achieve this, we reassess on the definition of the TCB and illustrate how segregation of different code blocks could be enforced by hardware protection mechanisms. We argue that many software-based efforts in TCB reduction and separation can benefit from utilising those hardware capabilities.