GI LogoGI Logo
  • Anmelden
Digitale Bibliothek
    • Gesamter Bestand

      • Bereiche & Sammlungen
      • Titel
      • Autor
      • Erscheinungsdatum
      • Schlagwort
    • Diese Sammlung

      • Titel
      • Autor
      • Erscheinungsdatum
      • Schlagwort
Digital Bibliothek der Gesellschaft für Informatik e.V.
GI-DL
    • English
    • Deutsch
  • Deutsch 
    • English
    • Deutsch
Dokumentanzeige 
  •   Startseite
  • Lecture Notes in Informatics
  • Proceedings
  • Open Identity Summit
  • P223 - Open Identity Summit 2013
  • Dokumentanzeige
JavaScript is disabled for your browser. Some features of this site may not work without it.
  •   Startseite
  • Lecture Notes in Informatics
  • Proceedings
  • Open Identity Summit
  • P223 - Open Identity Summit 2013
  • Dokumentanzeige

Using Trusted Execution Environments in Two-factor Authentication: comparing approaches

Autor(en):
Rijswijk-Deij, Roland van [DBLP] ;
Poll, Erik [DBLP]
Zusammenfassung
Classic two-factor authentication has been around for a long time and has enjoyed success in certain markets (such as the corporate and the banking environment). A reason for this success are the strong security properties, particularly where user interaction is concerned. These properties hinge on a security token being a physically separate device. This paper investigates whether Trusted Execution Environments (TEE) can be used to achieve a comparable level of security without the need to have a separate device. To do this, we introduce a model that shows the security properties of user interaction in two-factor authentication. The model is used to examine two TEE technologies, Intel's IPT and ARM TrustZone, revealing that, although it is possible to get close to classic two-factor authentication in terms of user interaction security, both technologies have distinct drawbacks. The model also clearly shows an open problem shared by many TEEs: how to prove to the user that they are dealing with a trusted application when trusted and untrusted applications share the same display.
  • Vollständige Referenz
  • BibTeX
Rijswijk-Deij, R. v. & Poll, E., (2013). Using Trusted Execution Environments in Two-factor Authentication: comparing approaches. In: Hühnlein, D. & Roßnagel, H. (Hrsg.), Open Identity Summit 2013. Bonn: Gesellschaft für Informatik e.V.. (S. 20-31).
@inproceedings{mci/Rijswijk-Deij2013,
author = {Rijswijk-Deij, Roland van AND Poll, Erik},
title = {Using Trusted Execution Environments in Two-factor Authentication: comparing approaches},
booktitle = {Open Identity Summit 2013},
year = {2013},
editor = {Hühnlein, Detlef AND Roßnagel, Heiko} ,
pages = { 20-31 },
publisher = {Gesellschaft für Informatik e.V.},
address = {Bonn}
}
DateienGroesseFormatAnzeige
20.pdf146.4Kb PDF Öffnen

Haben Sie fehlerhafte Angaben entdeckt? Sagen Sie uns Bescheid: Feedback abschicken

Mehr Information

ISBN: 978-3-88579-617-6
ISSN: 1617-5468
Datum: 2013
Sprache: en (en)
Typ: Text/Conference Paper

Keywords

  • trusted execution environment
  • Intel Identity Protection Technology
  • IPT
  • ARM TrustZone
  • two-factor authentication
Sammlungen
  • P223 - Open Identity Summit 2013 [24]

Zur Langanzeige


Über uns | FAQ | Hilfe | Impressum | Datenschutz

Gesellschaft für Informatik e.V. (GI), Kontakt: Geschäftsstelle der GI
Diese Digital Library basiert auf DSpace.

 

 


Über uns | FAQ | Hilfe | Impressum | Datenschutz

Gesellschaft für Informatik e.V. (GI), Kontakt: Geschäftsstelle der GI
Diese Digital Library basiert auf DSpace.