作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2009, Vol. 35 ›› Issue (2): 148-150. doi: 10.3969/j.issn.1000-3428.2009.02.052

• 安全技术 • 上一篇    下一篇

可信移动平台软件安全载入策略模型研究

李 建1,刘吉强2,周 正3,沈昌祥4,张 俊3   

  1. (1. 解放军信息工程大学电子技术学院,郑州 450002;2. 北京交通大学信息安全体系结构研究中心,北京 100044; 3. 海军工程大学电气与信息工程学院,武汉 430033;4. 海军计算技术研究所,北京 100841)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2009-01-20 发布日期:2009-01-20

Study of Policy Model of Software Secure Loading for Trusted Mobile Platform

LI Jian1, LIU Ji-qiang2, ZHOU Zheng3, SHEN Chang-xiang4, ZHANG Jun3   

  1. (1. Institute of Electronic Technology, PLA Information Engineering University, Zhengzhou 450002; 2. Research Center of Information Secure Architecture, Beijing Jiaotong University, Beijing 100044; 3. College of Electrical and Information Engineering, Naval University of Engineering, Wuhan 430033; 4. Naval Institute of Computing Technology, Beijing 100841)
  • Received:1900-01-01 Revised:1900-01-01 Online:2009-01-20 Published:2009-01-20

摘要: 针对手机卧底等木马软件通过软件下载的途径安装到用户手机,使手机用户的隐私受到了巨大的威胁的实际。通过分析目前软件下载方案中存在的安全问题及产生的根源,提出移动终端软件载入的控制策略,建立了策略模型,采用形式化的描述与分析,并从可信移动平台技术的角度,设计软件载入策略的实现方案,对模型和方案进行安全性分析,结果证明,该方案能有效地防范手机卧底等恶意软件的侵入。

关键词: 移动平台, 可信计算, 安全分析

Abstract: Aiming at the fact that Xwodi, a kind of Trojan software, is fit in the users handsets by downloading software and threatens the privacy of user deadly. With analyzing security fault and cause in the solution of current software download. This paper puts forward the control policy for mobile equipment for downloading software, sets up politic model, carries out formalized description and analysis, designs implementing scheme of software loading policy from point of view of trusted mobile platform and makes security analysis for the model. Result indicates that the scheme can prevent Xwodi from being intruded effectively.

Key words: mobile platform, trusted computing, security analysis

中图分类号: