SecureDom: secure mobile-sensitive information protection with domain separation.
Saved in:
| Title: | SecureDom: secure mobile-sensitive information protection with domain separation. |
|---|---|
| Authors: | Park, Su-Wan1 Parksw10@etri.re.kr, Kim, JeongNyeo1 jnkim@etri.re.kr, Lee, Deok2 deokgyulee@gmail.com |
| Source: | Journal of Supercomputing. Jul2016, Vol. 72 Issue 7, p2682-2702. 21p. |
| Subjects: | Mobile communication systems, Computer security research, Computer access control, Electronic authentication, Computer crime prevention |
| Abstract: | The virtualization techniques are receiving more attention lately in mobile device security. In this study, we present SecureDom which is the device security of data-centric that aims to protect private, enterprise or sensitive data from various attacks and threats. To achieve it, we provide the mobile device security platform based on domain separation and suggests three essential secure functions which should be offered for secure domain: authentication/access control (AAC) module, secure storage (STR) module and encryption/key management (EKM) module. In secure functions, the AAC module applies two-factor authentication by user and app to access SD, the STR module introduces the enhanced abilities of secure filesystem and EKM module is in charge of security algorithms for data encryption, integrity validation or key generation. Here, EKM module can utilize the existing encryption module that is certified by cryptographic validation program. In the experiment, it demonstrates that some notable overheads are caused in the performance of virtualization engine and inter-domain communication (IDC) performance based on hypervisor, while it provides the strong isolation in domain, IDC, filesystem and resource and the separation of processes. [ABSTRACT FROM AUTHOR] |
| Copyright of Journal of Supercomputing is the property of Springer Nature and its content may not be copied or emailed to multiple sites without the copyright holder's express written permission. Additionally, content may not be used with any artificial intelligence tools or machine learning technologies. However, users may print, download, or email articles for individual use. This abstract may be abridged. No warranty is given about the accuracy of the copy. Users should refer to the original published version of the material for the full abstract. (Copyright applies to all Abstracts.) | |
| Database: | Engineering Source |
| FullText | Links: – Type: pdflink Text: Availability: 0 |
|---|---|
| Header | DbId: egs DbLabel: Engineering Source An: 116622838 AccessLevel: 6 PubType: Academic Journal PubTypeId: academicJournal PreciseRelevancyScore: 0 |
| IllustrationInfo | |
| Items | – Name: Title Label: Title Group: Ti Data: SecureDom: secure mobile-sensitive information protection with domain separation. – Name: Author Label: Authors Group: Au Data: <searchLink fieldCode="AR" term="%22Park%2C+Su-Wan%22">Park, Su-Wan</searchLink><relatesTo>1</relatesTo><i> Parksw10@etri.re.kr</i><br /><searchLink fieldCode="AR" term="%22Kim%2C+JeongNyeo%22">Kim, JeongNyeo</searchLink><relatesTo>1</relatesTo><i> jnkim@etri.re.kr</i><br /><searchLink fieldCode="AR" term="%22Lee%2C+Deok%22">Lee, Deok</searchLink><relatesTo>2</relatesTo><i> deokgyulee@gmail.com</i> – Name: TitleSource Label: Source Group: Src Data: <searchLink fieldCode="JN" term="%22Journal+of+Supercomputing%22">Journal of Supercomputing</searchLink>. Jul2016, Vol. 72 Issue 7, p2682-2702. 21p. – Name: Subject Label: Subjects Group: Su Data: <searchLink fieldCode="DE" term="%22Mobile+communication+systems%22">Mobile communication systems</searchLink><br /><searchLink fieldCode="DE" term="%22Computer+security+research%22">Computer security research</searchLink><br /><searchLink fieldCode="DE" term="%22Computer+access+control%22">Computer access control</searchLink><br /><searchLink fieldCode="DE" term="%22Electronic+authentication%22">Electronic authentication</searchLink><br /><searchLink fieldCode="DE" term="%22Computer+crime+prevention%22">Computer crime prevention</searchLink> – Name: Abstract Label: Abstract Group: Ab Data: The virtualization techniques are receiving more attention lately in mobile device security. In this study, we present SecureDom which is the device security of data-centric that aims to protect private, enterprise or sensitive data from various attacks and threats. To achieve it, we provide the mobile device security platform based on domain separation and suggests three essential secure functions which should be offered for secure domain: authentication/access control (AAC) module, secure storage (STR) module and encryption/key management (EKM) module. In secure functions, the AAC module applies two-factor authentication by user and app to access SD, the STR module introduces the enhanced abilities of secure filesystem and EKM module is in charge of security algorithms for data encryption, integrity validation or key generation. Here, EKM module can utilize the existing encryption module that is certified by cryptographic validation program. In the experiment, it demonstrates that some notable overheads are caused in the performance of virtualization engine and inter-domain communication (IDC) performance based on hypervisor, while it provides the strong isolation in domain, IDC, filesystem and resource and the separation of processes. [ABSTRACT FROM AUTHOR] – Name: AbstractSuppliedCopyright Label: Group: Ab Data: <i>Copyright of Journal of Supercomputing is the property of Springer Nature and its content may not be copied or emailed to multiple sites without the copyright holder's express written permission. Additionally, content may not be used with any artificial intelligence tools or machine learning technologies. However, users may print, download, or email articles for individual use. This abstract may be abridged. No warranty is given about the accuracy of the copy. Users should refer to the original published version of the material for the full abstract.</i> (Copyright applies to all Abstracts.) |
| PLink | https://search.ebscohost.com/login.aspx?direct=true&site=eds-live&db=egs&AN=116622838 |
| RecordInfo | BibRecord: BibEntity: Identifiers: – Type: doi Value: 10.1007/s11227-015-1578-6 Languages: – Code: eng Text: English PhysicalDescription: Pagination: PageCount: 21 StartPage: 2682 Subjects: – SubjectFull: Mobile communication systems Type: general – SubjectFull: Computer security research Type: general – SubjectFull: Computer access control Type: general – SubjectFull: Electronic authentication Type: general – SubjectFull: Computer crime prevention Type: general Titles: – TitleFull: SecureDom: secure mobile-sensitive information protection with domain separation. Type: main BibRelationships: HasContributorRelationships: – PersonEntity: Name: NameFull: Park, Su-Wan – PersonEntity: Name: NameFull: Kim, JeongNyeo – PersonEntity: Name: NameFull: Lee, Deok IsPartOfRelationships: – BibEntity: Dates: – D: 01 M: 07 Text: Jul2016 Type: published Y: 2016 Identifiers: – Type: issn-print Value: 09208542 Numbering: – Type: volume Value: 72 – Type: issue Value: 7 Titles: – TitleFull: Journal of Supercomputing Type: main |
| ResultId | 1 |