This paper presents LIRA-V, a lightweight system for performing remote attestation between constrained devices using the RISC-V architecture. We propose using read-only memory and the RISC-V Physical Memory Protection (PMP) primitive to build a trust anchor for remote attestation and secure channel creation. Moreover, we show how LIRA-V can be used for trusted communication between two devices using mutual attestation. We present the design, implementation and evaluation of LIRA-V using an off-the-shelf RISC-V microcontroller and present performance results to demonstrate its suitability. To our knowledge, we present the first remote attestation mechanism suitable for constrained RISC-V devices, with applications to cyber-physical systems and Internet of Things (IoT) devices.
翻译:本文介绍了使用RISC-V结构对受限制装置进行远程验证的轻量级系统LIRA-V。我们建议使用只读存储和RISC-V物理内存保护(PMP)原始系统为远程验证和安全频道创建建立一个信任锚;此外,我们展示了如何利用相互验证来利用LIRA-V系统在两个装置之间进行可信赖的通信。我们介绍了使用现成的RISC-V微控制器对LIRA-V进行设计、实施和评估的情况,并展示了性能结果,以证明它是否合适。我们了解,我们介绍了适用于受限制的RISC-V设备的第一台远程验证机制,并介绍了对网络物理系统和物联网装置的应用。