Testing and evaluation of a secure integrity measurement system (SIMS) for remote systems

نویسندگان

  • Shadi Aljawarneh
  • Abdullah Alhaj
چکیده

We have designed a novel system called a Secure Integrity Measurement System (SIMS) to provide a practical integrity for flexible and traditional remote systems. SIMS is not only targeted for Linux, but it can also be used for different operating systems such as Windows, and UNIX. All and executable content that are loaded onto any operating system is measured before execution. These measurements are protected by a secure Database Management System (DBMS) rather than using Trusted Platform Module (TPM) that is part of the Trusted Computing Group (TCG) standards. The proposed system can measure the executable content from the BIOS and the content that is generated at the application layer. Note our system does not require any special hardware such TCG or a new CPU mode or an operating system. In this paper, a set of experiments are carried out to meet the security and performance objectives. We have shown with the system evaluation that the SIMS can provide a tamper detection, and recovery to different kinds of content. The SIMS can efficiently and correctly determine if the executable content has been tampered with.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Secure Bio-Cryptographic Authentication System for Cardless Automated Teller Machines

Security is a vital issue in the usage of Automated Teller Machine (ATM) for cash, cashless and many off the counter banking transactions. Weaknesses in the use of ATM machine could not only lead to loss of customer’s data confidentiality and integrity but also breach in the verification of user’s authentication. Several challenges are associated with the use of ATM smart card such as: card clo...

متن کامل

Robust state estimation in power systems using pre-filtering measurement data

State estimation is the foundation of any control and decision making in power networks. The first requirement for a secure network is a precise and safe state estimator in order to make decisions based on accurate knowledge of the network status. This paper introduces a new estimator which is able to detect bad data with few calculations without need for repetitions and estimation residual cal...

متن کامل

Assessment and Monitoring for Railway Tracks Reliability and Safety using Nondestructive Testing Measurement Systems

The deterioration of railway tracks raises great concerns about the integrity of assessments and evaluations of railway tracks currently in service. Integrated inspection strategies coupled with innovations in inspection technology can lead to significant improvements in operational cost efficiency and reliability without the requirement of a fundamental shift in the existing understanding o...

متن کامل

Verifying System Integrity by Proxy

Users are increasingly turning to online services, but are concerned for the safety of their personal data and critical business tasks. While secure communication protocols like TLS authenticate and protect connections to these services, they cannot guarantee the correctness of the endpoint system. Users would like assurance that all the remote data they receive is from systems that satisfy the...

متن کامل

A NEW PROTOCOL MODEL FOR VERIFICATION OF PAYMENT ORDER INFORMATION INTEGRITY IN ONLINE E-PAYMENT SYSTEM USING ELLIPTIC CURVE DIFFIE-HELLMAN KEY AGREEMENT PROTOCOL

Two parties that conduct a business transaction through the internet do not see each other personally nor do they exchange any document neither any money hand-to-hand currency. Electronic payment is a way by which the two parties transfer the money through the internet. Therefore integrity of payment and order information of online purchase is an important concern. With online purchase the cust...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:
  • Int. Arab J. Inf. Technol.

دوره 9  شماره 

صفحات  -

تاریخ انتشار 2012