信息网络安全 ›› 2021, Vol. 21 ›› Issue (5): 67-73.doi: 10.3969/j.issn.1671-1122.2021.05.008

• 技术研究 • 上一篇    下一篇

基于BMC的服务器可信启动方法研究

徐万山, 张建标(), 袁艺林, 李铮   

  1. 北京工业大学信息学部计算机学院,北京 100124
  • 收稿日期:2020-10-20 出版日期:2021-05-10 发布日期:2021-06-22
  • 通讯作者: 张建标 E-mail:zjb@bjut.edu.cn
  • 作者简介:徐万山(1988—),男,山东,博士研究生,主要研究方向为信息安全和可信计算|张建标(1969—),男,江苏,教授,博士,主要研究方向为信息安全和可信计算|袁艺林(1991—),女,河南,博士研究生,主要研究方向为信息安全和云安全|李铮(1992—),女,山东,讲师,博士,主要研究方向为信息安全和密码分析
  • 基金资助:
    国家自然科学基金(61971014)

Research on Trusted Server Startup Method Based on BMC

XU Wanshan, ZHANG Jianbiao(), YUAN Yilin, LI Zheng   

  1. School of Computer Science, Department of Information Science, Beijing University of Technology, Beijing 100124, China
  • Received:2020-10-20 Online:2021-05-10 Published:2021-06-22
  • Contact: ZHANG Jianbiao E-mail:zjb@bjut.edu.cn

摘要:

可信计算技术以硬件安全为基础,通过信任链、远程证明等技术能够有效实现本地和远程计算系统的安全,在系统安全启动、度量证明等方面得到了广泛应用。当前,终端设备的安全启动技术已经比较成熟,但是对服务器可信启动技术的研究仍然较少。针对服务器BIOS固件、操作系统内核镜像可能被篡改,服务器启动过程中由于信任链过长而导致信任丢失、效率较低等问题,文章提出基于BMC(Baseboard Manager Controller,基板管理控制器)的服务器可信启动方法。该方法以BMC为可信根,利用星型信任链结构构建信任链,实现服务器可信启动;同时文章结合信息流无干扰理论模型,对服务器可信启动进行了形式化描述。BMC是服务器上的通用部件,文章提出的可信启动方法以BMC为可信根,不需要额外硬件,具有更好的通用性;同时由于采用星型结构,减少了服务器启动过程中信任的传递,能够有效提高服务器启动过程的安全性和启动效率。

关键词: BMC, 可信启动, 主动度量, 星型链

Abstract:

Based on hardware security, trusted computing technology can effectively realize the security of local and remote computing systems through trust chain, remote attestation and other technologies, and has been widely used in system security startup and measurement attestation. At present, the secure startup technology of terminal equipment has been relatively mature, but the research on trusted server startup technology is still less. Aiming at the problems of server BIOS firmware and operating system kernel image being tampered with, trust loss and low efficiency caused by long trust chain during server startup, this paper proposes a trusted server startup method based on BMC (baseboard manager controller). In this method, BMC is taken as the trusted root, and the star trust chain structure is used to construct the trust chain to realize the trusted start of the server. At the same time, combining with the information flow non-interference theoretical model, this paper gives a formal description of the trusted server startup. BMC is a common component on the server. The trusted startup method proposed in this paper takes BMC as the trusted root, which does not need additional hardware and has better versatility. At the same time, because of the star structure, this method reduces the trust transmission in the server startup process, and can effectively improve the security and efficiency of the server startup process.

Key words: BMC, trusted startup, active measurement, star chain

中图分类号: