SeTPM: Towards flexible trusted computing on mobile devices based on globalplatform secure elements

Sergej Proskurin, Michael Weiß, Georg Sigl

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

1 Scopus citations

Abstract

Insufficiently protected mobile devices present a ubiquitous threat. Due to severe hardware constraints, such as limited printed circuit board area, hardware-based security as proposed by the Trusted Computing Group is usually not part of mobile devices, yet. We present the design and implementation of seTPM, a secure element based TPM, utilizing Java Card technology. seTPM establishes trust in mobile devices by enabling Trusted Computing based integrity measurement services, such as IMA for Linux. Our prototype emulates TPM functionality on a GlobalPlatform secure element, which allows seamless integration into the Trusted Software Stack of Linux-based mobile operating systems like Android. With our work, we provide a solution to run Trusted Computing based security protocols while supplying a similar security level as provided by hardware TPM chips. In addition, due to the flexible design of the seTPM, we further increase the security level as we are able to selectively replace the outdated SHA-1 hash algorithm of TPM 1.2 specification by the present Keccak algorithm. Further, our architecture comprises hybrid support for the TPM 1.2 and TPM 2.0 specifications to simplify the transition towards the TPM 2.0 standard.

Original languageEnglish
Title of host publicationSmart Card Research and Advanced Applications - 14th International Conference, CARDIS 2015, Revised Selected Papers
EditorsNaofumi Homma, Marcel Medwed
PublisherSpringer Verlag
Pages57-74
Number of pages18
ISBN (Print)9783319312705
DOIs
StatePublished - 2016
Event14th International Conference on Smart Card Research and Advanced Application, CARDIS 2015 - Bochum, Germany
Duration: 4 Nov 20156 Nov 2015

Publication series

NameLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Volume9514
ISSN (Print)0302-9743
ISSN (Electronic)1611-3349

Conference

Conference14th International Conference on Smart Card Research and Advanced Application, CARDIS 2015
Country/TerritoryGermany
CityBochum
Period4/11/156/11/15

Fingerprint

Dive into the research topics of 'SeTPM: Towards flexible trusted computing on mobile devices based on globalplatform secure elements'. Together they form a unique fingerprint.

Cite this