维普中文期刊产品整合服务

PIMS:An Efficient Process Integrity Monitoring System Based on Blockchain and Trusted Computing in Cloud-Native Context

查看全文 作  者:Miaomiao [1,2]Yang;Guosheng [1,2]Huang;Junwei [3]Liu;Yanshuang [1,2]Gui;Qixu [1,2]Wang;Xingshu [1,2]Chen 高影响力作者 机构地区:[1]Cyber Science Research Institute of Sichuan University,Chengdu,610207,China;[2]Cyber Science and Engineering of Sichuan University,Chengdu,610207,China;[3]China Mobile(Suzhou)Software Technology,China Mobile,Suzhou,215163,China高影响力机构 出  处:《Computer Modeling in Engineering & Sciences》索引2023年第8期,共20页高影响力期刊 基  金:supported by China’s National Natural Science Foundation (U19A2081,61802270,61802271);Ministry of Education and China Mobile Research Fund Project (MCM20200102,CM20200409);Sichuan University Engineering Characteristic Team Project 2020SCUNG129. 摘  要:With the advantages of lightweight and high resource utilization,cloud-native technology with containers as the core is gradually becoming themainstreamtechnical architecture for information infrastructure.However,malware attacks such as Doki and Symbiote threaten the container runtime’s security.Malware initiates various types of runtime anomalies based on process form(e.g.,modifying the process of a container,and opening the external ports).Fortunately,dynamic monitoring mechanisms have proven to be a feasible solution for verifying the trusted state of containers at runtime.Nevertheless,the current routine dynamic monitoring mechanisms for baseline data protection are still based on strong security assumptions.As a result,the existing dynamicmonitoringmechanismis still not practical enough.To ensure the trustworthiness of the baseline value data and,simultaneously,to achieve the integrity verification of the monitored process,we combine blockchain and trusted computing to propose a process integrity monitoring system named IPMS.Firstly,the hardware TPM 2.0 module is applied to construct a trusted security foundation for the integrity of the process code segment due to its tamper-proof feature.Then,design a new format for storing measurement logs,easily distinguishing files with the same name in different containers from log information.Meanwhile,the baseline value data is stored on the blockchain to avoidmalicious damage.Finally,trusted computing technology is used to perform fine-grained integrity measurement and remote attestation of processes in a container,detect abnormal containers in time and control them.We have implemented a prototype system and performed extensive simulation experiments to test and analyze the functionality and performance of the PIMS.Experimental results show that PIMS can accurately and efficiently detect tampered processes with only 3.57% performance loss to the container. 关 键 词:Blockchain-based protection dynamic monitoring remote attestation integrity verification
相关文献

参考文献(43)

网站首页 | 关于我们 | 联系我们 | 产品服务 | 客服中心 | 广告服务 | 版权声明 | 网站联盟 | 友情链接 | 售卡网点

版权所有© 渝B2-20050021-1 渝公网安备 50019002500403号 违法和不良信息举报中心

互联网出版许可证 新出网证(渝)字10号 全国400电话 - 免长途话费