17 stories on
Sort by: Date | Relevance
whitepaper To achieve meaningful attestation, virtualization is used to establish several di? The attestation process is limited to a fragment of the software running on the platform, more specifically, to the part requesting access to sensitive data.
[29 Feb 2008]
whitepaper It places particular emphasis on how those methods can be made extensible and flexible with the goal of obtaining a generic attestation and sealing framework for VMs. Lack of security of virtual machines and lack of trust into correct execution of...
[29 Feb 2008]
whitepaper Based on verifying the genuineness of the running program, the paper proposes two distributed software-based attestation schemes that are well tailored for sensor networks. Sensors that operate in an unattended, harsh or hostile environment are...
[03 Sep 2007]
whitepaper Trusted Computing Platforms provide the functionality of remote attestation, i.e.attesting the configuration and status of a system to a remote entity. Remote attestation hereby proves integrity and authenticity of system environments.
[31 Aug 2007]
whitepaper Based on verifying the genuineness of the running program, the paper proposes two distributed software-based attestation schemes that are well tailored for sensor networks. Sensors that operate in an unattended, harsh or hostile environment are...
[13 Aug 2007]
whitepaper IT organizations need to become involved in Sarbanes-Oxley attestation activities quickly. While the US Securities and Exchange Commission (SEC) has extended the dates for compliance with Section 404 of the Act, this move was only an...
[01 Aug 2007]
whitepaper It divides an attestation process into a global attestation phase that verifies that a Trusted Virtual Domains (TVD) is fundamentally secure and supporting essential trusted primitives and a local attestation phase that verifies the integrity of a...
[19 Jul 2007]
whitepaper Especially, its token services for attestation & authorization, and its cryptographic services for data confidentiality & integrity are detailed. This paper is to leverage familiarity with smart card application, i.e.understanding and practical...
[08 Mar 2007]
whitepaper This Oracle white paper discusses the fundamental premise of attestation and the role of identity management in achieving cost-effective, sustainable compliance. Attestation is the requirement that management periodically certifies that only...
[04 Jan 2007]
whitepaper This paper describes the direct anonymous attestation scheme (DAA). Direct anonymous attestation can be seen as a group signature without the feature that a signature can be opened, i.e.the anonymity is not revocable.
[12 Apr 2005]
whitepaper Now is the time to examine and improve your IT processes and systems for SOA compliance. Success depends upon the ability to initiate and maintain a disciplined methodology that reflects an institution's needs for IT controls as they relate to...
[23 Mar 2005]
whitepaper The 404 Rules define standards for assessing internal controls over financial reporting and require an issuer to include in its annual report a management report on the effectiveness of its internal controls over financial reporting (internal...
[23 Mar 2005]
whitepaper The OSC is currently undecided about whether to require external auditor attestation. Section 404 of the Sarbanes-Oxley Act of 2002 (S-Ox) and related U.S. SEC rules require the management of public companies to prepare an annual report on internal...
[23 Mar 2005]
whitepaper A number of certification and attestation obligations are already in place. The Sarbanes-Oxley Act of 2002 is, by any standard, a complex piece of legislation, one that has engendered confusion and consternation in some quarters of the business...
[19 Dec 2004]
whitepaper It will continue long after the first attestation. A successful Sarbox compliance initiative requires extensive communication among company departments, specifically between accounting, finance, treasury, and information technology.
[16 Dec 2004]
News Four major features will be included in the first version of NGSCB: A technology called process isolation will seal off trusted applications so they can't be attacked; sealed storage will allow applications to store data securely; secure path will...
[07 May 2003]
News The feature, remote attestation, allows an application running on a computer to phone home and check that it's current status, or integrity, can be verified. Cryptographers and security firms took opposite sides over the potential privacy dangers...
[17 Apr 2003]
Sort by: Date | Relevance
Copyright ©1995-2008 CNET Networks, Inc. All rights reserved. Top of page