ETRI-Knowledge Sharing Plaform

KOREAN
논문 검색
Type SCI
Year ~ Keyword

Detail

Journal Article SecureDom: Secure Mobile-sensitive Information Protection with Domain Separation
Cited 7 time in scopus Share share facebook twitter linkedin kakaostory
Authors
Su-Wan Park, JeongNyeo Kim, Deok Gyu Lee
Issue Date
2016-07
Citation
Journal of Supercomputing, v.72, no.7, pp.2682-2702
ISSN
0920-8542
Publisher
Springer
Language
English
Type
Journal Article
DOI
https://dx.doi.org/10.1007/s11227-015-1578-6
Abstract
The virtualization techniques are receiving more attention lately in mobile device security. In this study, we present SecureDom which is the device security of data-centric that aims to protect private, enterprise or sensitive data from various attacks and threats. To achieve it, we provide the mobile device security platform based on domain separation and suggests three essential secure functions which should be offered for secure domain: authentication/access control (AAC) module, secure storage (STR) module and encryption/key management (EKM) module. In secure functions, the AAC module applies two-factor authentication by user and app to access SD, the STR module introduces the enhanced abilities of secure filesystem and EKM module is in charge of security algorithms for data encryption, integrity validation or key generation. Here, EKM module can utilize the existing encryption module that is certified by cryptographic validation program. In the experiment, it demonstrates that some notable overheads are caused in the performance of virtualization engine and inter-domain communication (IDC) performance based on hypervisor, while it provides the strong isolation in domain, IDC, filesystem and resource and the separation of processes.
KSP Keywords
Data-centric, Domain separation, Encryption module, Inter-domain communication, Key generation, Key management, Mobile device security, Security algorithms, Security of data, Sensitive Data, Sensitive information