Abstract
In this paper, we investigate how to implement Direct Anonymous Attestation (DAA) on mobile devices, whose processing and storage capabilities are limited. We propose a generic framework providing a secure and efficient DAA functionality based on ARM TrustZone. Our framework is flexible enough to support multiple DAA schemes, and is efficient by leveraging the powerful ARM processor in secure mode to perform computations originally delegated to the Trusted Platform Module (TPM). Besides, our framework uses an SRAM PUF commonly available in the On-Chip Memory (OCM) of mobile devices for secure storage of user signing keys, which achieves a low-cost design. We present a prototype system that supports four DAA schemes on real TrustZone hardware, and give evaluations on its code size and performance together with comparisons of the four schemes with different curve parameters. The evaluation results indicate that our solution is feasible, efficient, and well-suited for mobile devices.
Author supplied keywords
Cite
CITATION STYLE
Zhang, Q., Zhao, S., Xi, L., Feng, W., & Feng, D. (2015). Mdaak: A flexible and efficient framework for direct anonymous attestation on mobile devices. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 8958, pp. 31–48). Springer Verlag. https://doi.org/10.1007/978-3-319-21966-0_3
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.