Fengjing Shao, Rencheng Sun, Kegang Diao, Xiaopeng Wang
{"title":"A New Secure Architecture of Network Computer Based on Single CPU and Dual Bus","authors":"Fengjing Shao, Rencheng Sun, Kegang Diao, Xiaopeng Wang","doi":"10.1109/SEC.2008.61","DOIUrl":null,"url":null,"abstract":"Internet is facing a serious problem: open and security. Private data, such as credit card information, login account and password, and etc., is easily theft by hackers. In this paper, we propose a new secure architecture of network computer (SANC). This new architecture is aimed to build a kind of low-cost intrusion-free network computer and reduce vulnerability of Neumann model. It is comprised of one CPU and two physically isolated system buses, secure and non-secure. Only non-secure bus has Internet interfaces. Devices, storing private data, can only be accessed through secure bus. Internet related applications, only running on the non-secure bus, have no opportunity to access resources on the secure bus. Besides, only one CPU can efficiently control the cost. To control the connection between CPU and two system buses, and ensure only one bus can be connected to CPU at the same time, a bus bridge (BB) is designed.","PeriodicalId":231129,"journal":{"name":"2008 Fifth IEEE International Symposium on Embedded Computing","volume":"170 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2008-10-06","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"7","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2008 Fifth IEEE International Symposium on Embedded Computing","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/SEC.2008.61","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 7
Abstract
Internet is facing a serious problem: open and security. Private data, such as credit card information, login account and password, and etc., is easily theft by hackers. In this paper, we propose a new secure architecture of network computer (SANC). This new architecture is aimed to build a kind of low-cost intrusion-free network computer and reduce vulnerability of Neumann model. It is comprised of one CPU and two physically isolated system buses, secure and non-secure. Only non-secure bus has Internet interfaces. Devices, storing private data, can only be accessed through secure bus. Internet related applications, only running on the non-secure bus, have no opportunity to access resources on the secure bus. Besides, only one CPU can efficiently control the cost. To control the connection between CPU and two system buses, and ensure only one bus can be connected to CPU at the same time, a bus bridge (BB) is designed.