Trusted computing has become a new and challenging research issue in the field of information security. To further enhance the safety of BIOS, we construct a trusted computing platform based on extensible firmware interface (EFI), the trust chain is transferred from the first stage of EFI to the operating system by applying TPM (trusted platform module) and TSS (TCG software stack). We presented the principle mechanism of EFI and the realization framework of trusted computing platform, proposed the key technologies such as chain of trust, construction of TMP and TSS, validation of file integrity, and etc. Theoretic analysis demonstrated the effectiveness of this new trusted computing platform.
Weiwei FangBingru YangPeng ZhengZhi-Gang Tang
Zhidong ShenLi LiFei YanXiaoping Wu