Quote:
Currently, there exist various initiatives that place the trust in
modern computing systems in a hardware component rather
in software only. In these systems, the applications don’t
trust the operating system to protect their data, and the operating
system does not trust the application to properly use
its resources. The result is that the interface that the operating
system exports to each application must change to
support the hardware security features, and some of the protection
aspects of the operating system must be moved into
the hardware.
Quote:
Conclusion
This paper describes Cerium, a trusted computing architecture
that provides tamper-evident program execution.
Cerium uses a physically tamper-resistant CPU and a
-kernel to protect programs from each other and from
hardware attacks. Cerium reports what program is running
and what hardware and software environment surrounds
the program, so the a user can decide whether to
trust a program’s output.