您的位置:山东大学 -> 科技期刊社 -> 《山东大学学报(理学版)》

J4 ›› 2012, Vol. 47 ›› Issue (9): 1-6.

• 电子技术与信息 •    下一篇

基于SHA-1模块的可信嵌入式系统安全启动方法

罗钧1,蒋敬旗2,闵志盛1,李成清2   

  1. 1. 重庆大学光电技术及系统教育部重点实验室, 重庆 400030;   2. 西南计算机工业有限责任公司, 重庆 400060
  • 收稿日期:2012-07-09 出版日期:2012-09-20 发布日期:2012-09-24
  • 作者简介:罗钧(1963- ),男,教授,主要从事精密仪器及机械、测试计量技术及仪器、嵌入式等方向的研究. Email:luojun@cqu.edu.cn
  • 基金资助:

    重庆市经信委科技攻关计划资助项目(10-cxy-02)

The research of trusted embedded system secure startup based on SHA-1 module

LUO Jun1, JIANG Jing-qi2, MIN Zhi-sheng1, LI Cheng-qing2   

  1. 1. Key Laboratory of Optoelectronics Technology and System, Ministry of Education, Chongqing University,
    Chongqing 400030, China;  2. Southwest Computer Industrial Company, Chongqing 400060, China
  • Received:2012-07-09 Online:2012-09-20 Published:2012-09-24

摘要:

 在可信嵌入式系统中,嵌入式设备启动过程的安全是运行状态安全的基础,因此提出了一种可信嵌入式系统安全启动方法。针对可信嵌入式系统中的嵌入式设备原有硬件结构不改变的情况,在嵌入式设备上电后进行交互验证,然后再利用SHA-1模块对启动过程中的程序代码进行完整性度量。实验结果表明,设计的SHA-1模块功能可靠,能够应用在可信嵌入式系统中实现完整性度量,从而结合系统上电交互验证过程实现嵌入式设备的安全启动。该方法能够保持现有嵌入式设备的原有硬件结构不变,具有普遍的适应性。

关键词: 可信嵌入式系统;安全启动;SHA-1

Abstract:

In the trusted embedded system, the security of embedded equipments startup process is the foundation of the running state security. Therefore, one method of trusted embedded system secure startup was proposed. In view of the intrinsic hardware structure of embedded equipment not to change, cross validation was done after embedded equipment was powered. Then, the integrity of the program codes of startup process were checked by using SHA-1 module. The obtained results show that the designed SHA-1 module is correct, and it can be applied in trusted embedded system to realize integrity measurement. Combined with the process of cross validation after powered, the embedded system secure startup is realized. The method can keep the intrinsic hardware structure of embedded equipment, and it has universal applicability.

Key words:  trusted embedded system; secure startup; SHA-1

No related articles found!
Viewed
Full text


Abstract

Cited

  Shared   
  Discussed   
No Suggested Reading articles found!