Logo image
STBEAT: Software Update on Trusted Environment Based on ARM TrustZone
期刊文章   開放取用(OA)

STBEAT: Software Update on Trusted Environment Based on ARM TrustZone

Qi-Xian Huang, Min-Yi Chiu, Chi-Shen YehHung-Min Sun
Sustainability (Switzerland), 卷.14(20), 13660
10/2022

摘要

access control ARM TrustZone security data security embedded software embedded system STM32 Computer Science (miscellaneous) Geography Planning and Development Renewable Energy Sustainability and the Environment Building and Construction Environmental Science (miscellaneous) Energy Engineering and Power Technology Hardware and Architecture Computer Networks and Communications Management Monitoring Policy and Law
In recent years, since edge computing has become more and more popular, its security issues have become apparent and have received unprecedented attention. Thus, the current research concentrates on security not only regarding devices such as PCs, smartphones, tablets, and IoTs, but also the automobile industry. However, since attack vectors have become more sophisticated than ever, we cannot just protect the zone above the system software layer in a certain operating system, such as Linux, for example. In addition, the challenges in IoT devices, such as power consumption, performance efficiency, and authentication management, still need to be solved. Since most IoT devices are controlled remotely, the security regarding system maintenance and upgrades has become a big issue. Therefore, a mechanism that can maintain IoT devices within a trusted environment based on localhost or over-the-air (OTA) will be a viable solution. We propose a mechanism called STBEAT, integrating an open-source project with ARM TrustZone to solve the challenges of upgrading the IoT system and updating system files more safely. This paper focuses on the ARMv7 architecture and utilizes the security stack from TrustZone to OP-TEE under the STM32 board package, and finally obtains the security key from the trusted application, which is used to conduct the cryptographic operations and then install the newer image on the MMC interface. To sum up, we propose a novel software update strategy and integrated ARM TrustZone security extension to beef up the embedded ecosystem.

檔案與連結 (1)

url
https://doi.org/10.3390/su142013660檢視
已出版(紀錄版本) 開放

相關連結

指標

1 檢視次數

詳細資料

Logo image