A lightweight implementation of trusted domain enforcement for secure embedded web server

被引:0
|
作者
Ando, Ruo [1 ]
机构
[1] Natl Inst Informat & Commun Technol, Koganei, Tokyo 1848795, Japan
关键词
Secure embedded system; trusted domain enforcement; sandbox; Linux; 2.6; kernel patch;
D O I
10.1109/CISIS.2009.62
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Deployment of open source software for embedded system is increasing while ubiquitous devices have become widely used. System designer need to cope with malicious input which is made from exposed vulnerability. Lightweight verification and sandbox approach is effective for embedded system, because embedded system is specified, has less generic purpose than PC and servers. In this paper we apply TDE (Trusted Domain Enforcement) for embedded Linux 2.6 series in order to achieve dynamic sandboxing. TDE is a concept showed in TCSEC (Trusted Computer System Evaluation Criteria) for input validation and sandbox for protecting system. TDE is a kind of extension of TE (Type Enforcement) for dynamic sandboxing although its implementation could be reasonably simple. Our system is based on LIDS (Linux Intrusion System) for Linux 2.4 series. We implement our system as small kernel patch. We also discuss the application of our method for embedded web server. We have coped with thttpd in implementing our TDE system.
引用
收藏
页码:633 / 638
页数:6
相关论文
共 50 条
  • [41] Sentinel: Secure Mode Profiling and Enforcement for Embedded Systems
    Martin, Paul D.
    Russell, David
    Rubin, Aviel D.
    Checkoway, Stephen
    Ben Salem, Malek
    2018 IEEE/ACM THIRD INTERNATIONAL CONFERENCE ON INTERNET-OF-THINGS DESIGN AND IMPLEMENTATION (IOTDI 2020), 2018, : 105 - 116
  • [42] An implementation of secure Web system
    Park, J
    Cho, E
    Kang, S
    MULTIMEDIA INFORMATION SYSTEMS IN PRACTICE, 1999, : 132 - 139
  • [43] Embedded Web Server on Nios II Embedded FPGA Platform
    Joshi, Nivedita N.
    Dakhole, P. K.
    Zode, P. P.
    2009 SECOND INTERNATIONAL CONFERENCE ON EMERGING TRENDS IN ENGINEERING AND TECHNOLOGY (ICETET 2009), 2009, : 1126 - 1131
  • [44] Poster: APETEEt - Secure Enforcement of ABAC Policies using Trusted Execution Environment
    Godhani, Pritkumar
    Bharadhwaj, Rahul
    Sural, Shamik
    PROCEEDINGS OF THE 28TH ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES, SACMAT 2023, 2023, : 47 - 49
  • [45] Design and realization of embedded web server based on web management
    Han, Guang-Jie
    Wang, Jin-Dong
    Lin, Tao
    Zhao, Hai
    Dongbei Daxue Xuebao/Journal of Northeastern University, 2002, 23 (11): : 1021 - 1204
  • [46] Implementation of Embedded Web Server Based on Mc9s12ne64
    Zhang Yong
    Wang Shouyi
    FIRST INTERNATIONAL WORKSHOP ON DATABASE TECHNOLOGY AND APPLICATIONS, PROCEEDINGS, 2009, : 7 - 9
  • [47] SWILL: A simple embedded web server library
    Lampoudi, S
    Beazley, DM
    USENIX ASSOCIATION PROCEEDINGS OF THE FREENIX TRACK, 2002, : 19 - 27
  • [48] An easy-to-do embedded Web server
    Witchey, N
    IEEE INTERNET COMPUTING, 1998, 2 (03) : 100 - 100
  • [49] Turn your embedded system into a Web server
    不详
    COMPUTER DESIGN, 1996, 35 (08): : 112 - 112
  • [50] Embedded web server for monitoring environmental parameters
    S. B. Chavan
    P. A. Kadam
    S. R. Sawant
    Instruments and Experimental Techniques, 2009, 52 : 784 - 787