{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T04:38:19Z","timestamp":1750307899135,"version":"3.41.0"},"reference-count":10,"publisher":"Association for Computing Machinery (ACM)","issue":"1","license":[{"start":{"date-parts":[[2009,1,1]],"date-time":"2009-01-01T00:00:00Z","timestamp":1230768000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["SIGOPS Oper. Syst. Rev."],"published-print":{"date-parts":[[2009,1]]},"abstract":"<jats:p>This paper introduces our work around combining machine virtualization technology with Trusted Computing Group technology. We first describe our architecture for reducing and containing the privileged code of the Xen Hypervisor. Secondly we describe our Trusted Virtual Platform architecture. This is aimed at supporting the strong enforcement of integrity and security policy controls over a virtual entity where a virtual entity can be either a full guest operating system or virtual appliance running on a virtualized platform. The architecture includes a virtualization-specific integrity measurement and reporting framework. This is designed to reflect all the dependencies of the virtual environment of a guest operating system. The work is a core enabling component of our research around converged devices -- client platforms such as notebooks or desktop PCs that can safely host multiple virtual operating systems and virtual appliances concurrently and report accurately on the trustworthiness of the individually executing entities.<\/jats:p>","DOI":"10.1145\/1496909.1496918","type":"journal-article","created":{"date-parts":[[2009,1,29]],"date-time":"2009-01-29T13:48:36Z","timestamp":1233236916000},"page":"36-43","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":16,"title":["Trusted virtual platforms"],"prefix":"10.1145","volume":"43","author":[{"given":"Chris I.","family":"Dalton","sequence":"first","affiliation":[{"name":"HP Laboratories, Filton Road, Bristol"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"David","family":"Plaquin","sequence":"additional","affiliation":[{"name":"HP Laboratories, Filton Road, Bristol"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wolfgang","family":"Weidner","sequence":"additional","affiliation":[{"name":"HP Laboratories, Filton Road, Bristol"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Dirk","family":"Kuhlmann","sequence":"additional","affiliation":[{"name":"HP Laboratories, Filton Road, Bristol"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Boris","family":"Balacheff","sequence":"additional","affiliation":[{"name":"HP Laboratories, Filton Road, Bristol"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Richard","family":"Brown","sequence":"additional","affiliation":[{"name":"HP Laboratories, Filton Road, Bristol"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2009,1]]},"reference":[{"key":"e_1_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1145\/945445.945462"},{"key":"e_1_2_1_2_1","first-page":"21","volume-title":"USENIX Security Symposium.","author":"Berger S.","year":"2006","unstructured":"Berger , S. , 2006 . vTPM: virtualizing the trusted platform module . USENIX Security Symposium. pp. 21 -- 21 . Berger, S., et al. 2006. vTPM: virtualizing the trusted platform module. USENIX Security Symposium. pp. 21--21."},{"key":"e_1_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1145\/1254810.1254816"},{"key":"e_1_2_1_4_1","unstructured":"McConnell Steve. 1993. Code Complete. Microsoft Press.  McConnell Steve. 1993. Code Complete. Microsoft Press."},{"key":"e_1_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/1346256.1346278"},{"key":"e_1_2_1_6_1","unstructured":"Microsoft. Microsoft Bitlocker Drive Encryption. http:\/\/technet.microsoft.com\/en-us\/windows\/aa905065.aspx.  Microsoft. Microsoft Bitlocker Drive Encryption. http:\/\/technet.microsoft.com\/en-us\/windows\/aa905065.aspx."},{"key":"e_1_2_1_7_1","unstructured":"Trusted Computing Group. http:\/\/www.trustedcomputinggroup.org.  Trusted Computing Group. http:\/\/www.trustedcomputinggroup.org."},{"key":"e_1_2_1_8_1","unstructured":"Tungsten Graphics. Gallium 3D. 2008. http:\/\/www.tungstengraphics.com\/wiki\/index.php\/Gallium3D.  Tungsten Graphics. Gallium 3D. 2008. http:\/\/www.tungstengraphics.com\/wiki\/index.php\/Gallium3D."},{"key":"e_1_2_1_9_1","unstructured":"PCI-SIG Specifications. PCI-SIG IO Virtualization. http:\/\/www.pcisig.com\/specifications\/iov\/  PCI-SIG Specifications. PCI-SIG IO Virtualization. http:\/\/www.pcisig.com\/specifications\/iov\/"},{"key":"e_1_2_1_10_1","volume-title":"Trusted Computing Platforms","author":"Balacheff B.","year":"2002","unstructured":"Balacheff , B. , Trusted Computing Platforms . Prentice Hall , 2002 . Balacheff, B., et al. 2002. Trusted Computing Platforms. Prentice Hall, 2002."}],"container-title":["ACM SIGOPS Operating Systems Review"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1496909.1496918","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1496909.1496918","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T14:47:31Z","timestamp":1750258051000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1496909.1496918"}},"subtitle":["a key enabler for converged client devices"],"short-title":[],"issued":{"date-parts":[[2009,1]]},"references-count":10,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2009,1]]}},"alternative-id":["10.1145\/1496909.1496918"],"URL":"https:\/\/doi.org\/10.1145\/1496909.1496918","relation":{},"ISSN":["0163-5980"],"issn-type":[{"type":"print","value":"0163-5980"}],"subject":[],"published":{"date-parts":[[2009,1]]},"assertion":[{"value":"2009-01-01","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}