The diversity of TPMs and its effects on development: a case study of integrating the TPM into OpenSolaris

  • Authors:
  • Anna Shubina;Sergey Bratus;Wyllys Ingersol;Sean W. Smith

  • Affiliations:
  • Dartmouth College, Hanover, NH, USA;Dartmouth College, Hanover, NH, USA;Oracle, Inc., Boston, MA, USA;Dartmouth College, Nanover, NH, USA

  • Venue:
  • Proceedings of the fifth ACM workshop on Scalable trusted computing
  • Year:
  • 2010

Quantified Score

Hi-index 0.00

Visualization

Abstract

Broad adoption of secure programming primitives such as the TPM can be hurt by programmer confusion regarding the nature and representation of failures when using a primitive. Conversely, a clear understanding of the primitive's failure modes is essential for both debugging and reducing the attack surface in the mechanisms built on it. In particular, differences in error processing and reporting logic significantly detract from such understanding. We present a case study of diversity in TPM behaviors and its effects on a TSS implementation, which emerged from the Sun/Dartmouth TCG/OpenSolaris project, one of the goals of which was instrumenting TPM support on Solaris. At the start of the project, both parties believed the instrumentation to be well-defined and, although time-consuming, relatively straightforward. In the course of the project we had to reexamine our assumptions concerning the state of the hardware and the software involved and the view of the system as presented to someone unfamiliar with its internals. We describe some failure modes we encountered and suggest directions for remediation.