author        = {Ronald T{\"o}gl and Michael Hutter},
  title         = {An Approach to Introducing Locality in Remote Attestation using Near Field Communications},
  journal       = {The Journal of Supercomputing},
  year          = {2011},
  volume        = {55},
  pages         = {207--227},
  number        = {2},
  doi           = {10.1007/s11227-010-0407-1},
  url           = {http://www.springerlink.com/content/d837j5844868v471/},
  abstract      = {Remote Attestation, as devised by the Trusted Computing Group, is based on a secure hardware component�the Trusted Platform Module (TPM). It allows to reach trust decisions between different network hosts. However, attestation cannot be applied in an important field of application�the identification of physically encountered, public computer platforms. Unfortunately, such computer terminals are especially exposed and the software running on them cannot be assumed unaltered and secure. Three challenges arise. The cryptographic protocols that actually perform the attestation do not provide for human-intelligible trust status analysis, easily graspable conveyance of results, nor the intuitive identification of the computer platform involved. Therefore, the user needs a small portable device, a token, to interact with local computer platforms. It can perform an attestation protocol, report the result to the user, even if the display the user faces cannot be trusted and may be connected to the platform under scrutiny. In addition, the token must establish that the particular machine faced actually contains the TPM that performs the attestation. In this paper, we demonstrate an attestation token architecture which is based on a commodity smart phone and which is more efficient and flexible than previous proposals. Furthermore, we introduce an autonomic and low-cost Near Field Communication (NFC) compatible interface to the TPM that provides a direct channel for proof of the TPMs identity and local proximity to the attestation token.}