International Journal of Information Technology and Computer Science(IJITCS)

ISSN: 2074-9007 (Print), ISSN: 2074-9015 (Online)

Published By: MECS Press

IJITCS Vol.2, No.2, Dec. 2010

A Clientless Endpoint Authentication SchemeBased on TNC

Kun Wu,Zhongying Bai

Index Terms

Trusted network connect, network access control, clientless endpoint authentication


Trusted Network Connect (TNC) proposes a hierarchical and scalable architecture to securely and efficiently control endpoints` admission to the trusted computing platform to implement message passing and resource sharing. But, not all endpoints support or run a functional TNC client performing integrity checking, which represents a security risk in lots of environments. We have to consider the problem how to make these "clientless endpoints" access to trusted networks. It is of significance for improving the TNC mechanism. To solve the problem above, under the framework of TNC, this paper comes up with a clientless endpoint authentication scheme named CEAS. CEAS designs five enforcement mechanisms and the related message format to authenticate and authorize clientless endpoints. Furthermore, after the endpoints have connected to the networks, their initial determinations may be dynamically modified according to the updated circumstances. The experiment results prove that CEAS has the capability of effectively and flexibly making clientless endpoints access to trusted networks in a controlled and secure manner.

Cite This Paper

Kun Wu, Zhongying Bai, "A Clientless Endpoint Authentication SchemeBased on TNC", International Journal of Information Technology and Computer Science(IJITCS), vol.2, no.2, pp.9-16, 2010. DOI: 10.5815/ijitcs.2010.02.02


