Analysis of a Measured Launch
June 2007
Jon Millen, The MITRE Corporation
Joshua Guttman, The MITRE Corporation
John Ramsdell, The MITRE Corporation
Justin Sheehy, The MITRE Corporation
Brian Sniffen, The MITRE Corporation
ABSTRACT
The design of a trusted system based on the Trusted Computing Group's
Trusted Platform Module (TPM) was analyzed to understand the role and
trust relationships of the TPM, firmware, and software modules involved.
The objective was to confirm that the measurements stored and reported
by the TPM can successfully discriminate a normal boot sequence, which
leaves trusted system software in control, from an insecure one, where
some trusted modules might have been replaced by malicious ones. The
principal tool used in the analysis was the SMV symbolic model checker.

Additional Search Keywords
N/A
|