Platform-agnostic remote attestation with WebAssembly components

dc.contributorAalto-yliopistofi
dc.contributorAalto Universityen
dc.contributor.advisorKjällman, Jimmy
dc.contributor.authorXie, Wentao
dc.contributor.schoolPerustieteiden korkeakoulufi
dc.contributor.schoolSchool of Scienceen
dc.contributor.supervisorGunn, Lachlan
dc.date.accessioned2025-10-21T17:01:54Z
dc.date.available2025-10-21T17:01:54Z
dc.date.issued2025-09-29
dc.description.abstractWhen communicating with services and functions in the cloud and at the edge, it’s often essential to verify that the communication takes place with a node operating with a trusted configuration, e.g., a specific piece of software running in a Trusted Execution Environment. Remote attestation plays a critical role in establishing such trust between distributed nodes. However, vendor-provided attestation evidence formats differ across hardware platforms (e.g., AMD SEV-SNP, Intel TDX), making verification with different TEE platforms a complex undertaking. This thesis proposes a solution in which each platform’s verification logic is encapsulated into a sandboxed WebAssembly component, which a verifier can load and use through a single, uniform interface with minimal overhead. The implementation leverages the Trustee attestation service framework and implements two WebAssembly components that support the verification of attestation evidence for both AMD SEV-SNP and Intel TDX, facilitating multi-platform attestation in a consistent and secure manner. In addition, the attestation service is integrated with an In-Network Data Fabric to demonstrate its applicability.en
dc.format.extent65
dc.format.mimetypeapplication/pdfen
dc.identifier.urihttps://aaltodoc.aalto.fi/handle/123456789/140250
dc.identifier.urnURN:NBN:fi:aalto-202510218418
dc.language.isoenen
dc.programmeMaster's Programme in Computer, Communication and Information Sciencesen
dc.programme.majorComputer Scienceen
dc.subject.keywordremote attestationen
dc.subject.keywordconfidential computingen
dc.subject.keywordWebAssemblyen
dc.subject.keywordtrusted execution environmenten
dc.subject.keywordAMD SEV-SNPen
dc.subject.keywordIntel TDXen
dc.titlePlatform-agnostic remote attestation with WebAssembly componentsen
dc.typeG2 Pro gradu, diplomityöfi
dc.type.ontasotMaster's thesisen
dc.type.ontasotDiplomityöfi
local.aalto.electroniconlyyes
local.aalto.openaccessyes

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
master_Xie_Wentao_2025.pdf
Size:
1.47 MB
Format:
Adobe Portable Document Format