Decentralized Translator of Trust: Supporting Heterogeneous TEE for Critical Infrastructure Protection
Rabimba Karanjai, Rowan Collier, Zhimin Gao, Lin Chen, Xinxin Fan,, Taeweon Suh, Weidong Shi, Lei Xu

TL;DR
This paper introduces DHTee, a decentralized blockchain-based system that enables secure interaction and trust establishment among heterogeneous TEE devices in critical infrastructure, enhancing security and flexibility.
Contribution
It proposes a novel decentralized coordination mechanism using blockchain to support heterogeneous TEE environments in critical infrastructure protection.
Findings
Supports mutual trust among diverse TEE devices.
Enables secure attestation across different TEE technologies.
Flexible integration of new TEE schemes without system disruption.
Abstract
Trusted execution environment (TEE) technology has found many applications in mitigating various security risks in an efficient manner, which is attractive for critical infrastructure protection. First, the natural of critical infrastructure requires it to be well protected from various cyber attacks. Second, performance is usually important for critical infrastructure and it cannot afford an expensive protection mechanism. While a large number of TEE-based critical infrastructure protection systems have been proposed to address various security challenges (e.g., secure sensing and reliable control), most existing works ignore one important feature, i.e., devices comprised the critical infrastructure may be equipped with multiple incompatible TEE technologies and belongs to different owners. This feature makes it hard for these devices to establish mutual trust and form a unified TEE…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsCloud Data Security Solutions · Security and Verification in Computing · Access Control and Trust
