Font Size: a A A

Design And Implementation Of Trusted Boot In EFI Based On USBKEY

Posted on:2009-11-03Degree:MasterType:Thesis
Country:ChinaCandidate:Z H LiFull Text:PDF
GTID:2178360242474810Subject:Computer software and theory
Abstract/Summary:PDF Full Text Request
Bios is a key part of the software chain for PC. Its drawbacks and limitations of openness and criteria make its poor security. Bios' 16-bit nature stifles the platform advancement for the systems that are 64-bit based. Its specifications have not kept up with the evolution of the technology. With Bios hitting the wall, Intel spearheaded the EFI (Extensible Firmware Interface) to solve these problems. EFI brought the modern computer software architectural concepts into firmware. The benefits of EFI were so convincing that Microsoft and the industry made it the next generation of Bios.Now the world's PC-related companies are active in researching and developing EFI. Our country also began to organize large-scale researchers for the development of EFI-based domestic Bios. It's a challenging work to research EFI. At the same time, it's conducive to develop independent intellectual property rights of domestic Bios.This paper include some research and analysis of EFI, present a safety boot specific solutions according to it's security framework. Designed and implemented a safety system to enhance security of EFI. We got some comprehensive and in-depth understanding of EFI by researching the criteria and code of EFI. This paper designed EFI trusted boot model by introducing the digital signature, authentication and trusted computing and so on from the area of information security.Designed and implemented EFI support on USBKEY.At last the we implemented a trusted boot security system of the core stage of EFI by researching on the EFI driver modual.By designing the trusted boot security system of the core stages of EFI, we improved the security of EFI to a large extent. The integrity of key components of EFI and the legitimacy of users are assured. The solution and the realization of the EFI security system is an innovation, which will help in formulating strategies of domestic Bios on the issue of standards of safety and security strategy.
Keywords/Search Tags:EFI, USBKEY, digital signature, trusted compute, trusted boot, authentication, Integrity verification
PDF Full Text Request
Related items