摘要: 國(guó)產(chǎn)化嵌入式平臺(tái)的安全威脅依舊嚴(yán)峻,為了提高國(guó)產(chǎn)化平臺(tái)的安全性與可控性,可信技術(shù)的應(yīng)用十分關(guān)鍵。在基于龍芯2K-1000CPU的國(guó)產(chǎn)化嵌入式平臺(tái)上,采用可信平臺(tái)控制模塊(Trusted Platform Control Module,TPCM),應(yīng)用可信啟動(dòng)、可信軟件基、可信文件存儲(chǔ)和I/O口的可信訪問(wèn)等技術(shù),實(shí)現(xiàn)了國(guó)產(chǎn)化嵌入式平臺(tái)的可信運(yùn)行。TPCM可信模塊基于CCP903T密碼芯片實(shí)現(xiàn)。此平臺(tái)已在某安全項(xiàng)目中通過(guò)測(cè)試投入使用,對(duì)可信技術(shù)在國(guó)產(chǎn)化平臺(tái)的應(yīng)用以及標(biāo)準(zhǔn)化形成留下參考性意義。
中圖分類號(hào): TN918;TP309 文獻(xiàn)標(biāo)識(shí)碼: A DOI:10.16157/j.issn.0258-7998.211350 中文引用格式: 孟祥斌,劉笑凱,郝克林. 可信技術(shù)在國(guó)產(chǎn)化嵌入式平臺(tái)的應(yīng)用研究[J].電子技術(shù)應(yīng)用,2021,47(12):94-99. 英文引用格式: Meng Xiangbin,Liu Xiaokai,Hao Kelin. Research on application of trusted technology in localized embedded platform[J]. Application of Electronic Technique,2021,47(12):94-99.
Research on application of trusted technology in localized embedded platform
Meng Xiangbin,Liu Xiaokai,Hao Kelin
National Computer System Engineering Research Institute of China,Beijing 100083,China
Abstract: The security threats of localized embedded platforms are still severe. In order to improve the security and controllability of localized platforms, the application of trusted technology is critical. This article uses a trusted platform control module(TPCM) on a localized embedded platform based on the Godson 2K-1000CPU, using trusted boot, trusted software base, trusted file storage and I/O ports. Technology such as trusted access realizes the trusted operation of the localized embedded platform. The TPCM trusted module is implemented based on the CCP903T cryptographic chip. This platform has been tested and put into use in a security project, leaving a reference for the application of trusted technology in the localization platform and the formation of standardization.
Key words : trusted boot;trusted platform control module(TPCM);localization platform;I/O port trusted access