《Systemization of Knowledge - Attestation in Confidential Computing.pdf》由会员分享,可在线阅读,更多相关《Systemization of Knowledge - Attestation in Confidential Computing.pdf(48页珍藏版)》请在三个皮匠报告上搜索。
1、Systemization of Knowledge:Attestation inConfidential ComputingSecuritySystemization of Knowledge:Attestation inConfidential ComputingMuhammad Usama Sardar,Research Associate,TU DresdenJoint work with Thomas Fossati,Arm Ltd.and Simon Frost,Arm Ltd.Outline1Problem Statement2Contributions3SummaryAttes
2、tation in CCRelying PartyAttesterAttestation requestAttestation in CCRelying PartyAttesterAttestation requestEvidenceAttestation in CCRelying PartyAttesterAttestation requestEvidenceData or secretsProblem StatementHolistic view of attestationProblem StatementHolistic view of attestationTEE-agnostic
3、attestation architectureProblem StatementHolistic view of attestationTEE-agnostic attestation architectureMappings to attestation architectureProblem StatementHolistic view of attestationTEE-agnostic attestation architectureMappings to attestation architectureFormal specsOutline1Problem Statement2Co
4、ntributionsHolistic ViewTEE-agnostic ArchitectureMappingsFormal SpecsDesign and Security Issues:TDXDesign and Security Issues:SCONE3SummaryOutline2ContributionsHolistic ViewTEE-agnostic ArchitectureMappingsFormal SpecsDesign and Security Issues:TDXDesign and Security Issues:SCONEHolistic View of Att
5、estationTrustworthy OperationsAttestation ProtocolInitializationProvisioningIncreasing frequencyOutline2ContributionsHolistic ViewTEE-agnostic ArchitectureMappingsFormal SpecsDesign and Security Issues:TDXDesign and Security Issues:SCONEAttestation ArchitectureLimitations of RATS(RFC 9334):cannot ex
6、presslocal attestationanonymous attestationErrata submitted for RATSOur proposed TEE-agnostic architectureEndorserReferenceValues ProviderVerifier OwnerVerifierEvidenceEndorsementsReference ValuesAppraisal Policy for EvidenceRelying PartyOwnerRelying Party Appraisal Policy for Attestation ResultsAtt