电力边缘设备远程证明和监控方案

REMOTE ATTESTATION AND MONITORING SCHEME FOR ELECTRIC EDGE DEVICES

  • 摘要: 由于电力边缘设备认证、远程监测、安全监控自身的结构特点,缺少对私有的程序和数据的控制,而可信计算可以从体系架构上对计算系统进行增强。结合非交互式的证明协议提出一个电力边缘设备远程证明和监控方案,方案基于注册协议完成对边缘设备的远程安装;验证服务器通过远程证明协议来确保边缘设备注册后到运行完整性监控协议之间的可信状态;再加上非交互式的完整性监控协议的支撑,不仅确保边缘设备的可信性,而且大大提高证明效率。与通用的完整性监控协议相比,证明计算效率提升71%,并且能够防止DDoS攻击。

     

    Abstract: Owing to the structural characteristics of electric edge device authentication, remote monitoring and security control, there is a lack of control of private programs and data. Fortunately, trusted computing can enhance the computing system from the architecture. We propose a remote attestation and monitoring scheme for electric edge devices based on the non-interactive attestation protocol. The solution completed the remote installation of edge devices based on registration protocol, and the attestation server ensured the trusted status between the edge device registration and the running integrity monitoring protocol through remote authentication protocol. In addition, with the support of the non-interactive integrity monitoring protocol, it not only ensured the credibility of edge devices, but also greatly improved the attestation efficiency. Compared with the general integrity monitoring protocol, the proof computing efficiency is increased by 71%, and can prevent DDoS attacks.

     

/

返回文章
返回