Conference item icon

Conference item

Trusted Execution Environment-based authentication gauge (TEEBAG)

Abstract:
We present a new approach to authentication using Trusted Execution Environments (TEEs), by changing the location of authentication from a remote device (e.g. remote authentication server) to user device(s) that are TEE enabled. The authentication takes place locally on the user device and only the outcome is sent back to the remote device. Our approach uses existing features and capabilities of TEEs to enhance the security of user authentication. We reverse the way traditional authentication schemes work: instead of the user presenting their authentication data to a remote device, we request the remote device to send the stored authentication template(s) to the local device. Almost paradoxically, this enhances security of authentication data by supplying it only to a trusted device, and so enabling users to authenticate the intended remote entity. This addresses issues related with bad SSL certificates on local devices, DNS poisoning, and counteracts certain threats posed by the presence of malware. We present a protocol to implement such authentication system discussing its strengths and limitations, before identifying available technologies to implement the architecture.
Publication status:
Published
Peer review status:
Peer reviewed

Actions


Access Document


Publisher copy:
10.1145/3011883.3011892

Authors


More by this author
Institution:
University of Oxford
Division:
MPLS
Department:
Computer Science
Role:
Author
More by this author
Institution:
University of Oxford
Division:
Societies, Other & Subsidiary Companies
Department:
Kellogg College
Oxford college:
Kellogg College
Role:
Author


Publisher:
Association for Computing Machinery
Host title:
NSPW '16 : 2016 New Security Paradigms Workshop
Journal:
NSPW '16 : 2016 New Security Paradigms Workshop More from this journal
Publication date:
2016-09-26
Acceptance date:
2016-07-02
DOI:
ISBN:
9781450348133


Keywords:
Pubs id:
pubs:640184
UUID:
uuid:081bd620-98fe-4bb2-8837-2ddcc579ad7e
Local pid:
pubs:640184
Source identifiers:
640184
Deposit date:
2017-04-06

Terms of use



Views and Downloads






If you are the owner of this record, you can report an update to it here: Report update to this record

TO TOP