The Trusted Execution Environment: Delivering Enhanced Security at a Lower Cost to the Mobile Market White Paper June 2015, revised from February 2011
[email protected] | www.globalplatform.org | © 2015 GlobalPlatform Inc. Table of Contents About GlobalPlatform Publication Acknowledgements Intended Audience & Companion Documents Executive Summary INTRODUCTION: The Increasing Need for Security with Connected Devices SECTION 1: Defining and Understanding the Trusted Execution Environment 1.1. Leveraging the TEE for Service Deployment 1.2. Evolving Service Administration via the TEE 1.3. A Summary of TEE Benefits SECTION 2: Understanding the TEE Vis-à-Vis the SE and REE SECTION 3: Different Perspectives on TEE Security 3.1. Security Perspectives across Different Markets 3.2. Security Perspective from Different Actors SECTION 4: Detailed Use Cases 4.1. Mobile Payments 4.2. The Enterprise & ‘Bring Your Own Device’ 4.3. Content Protection: Media 4.4. Governmental Use Cases SECTION 5: Why Standardize the TEE (proprietary vs. standard)? SECTION 6: Conclusion APPENDIX A: Abbreviations APPENDIX B: Definitions APPENDIX C: Comparing Rich OS, TEE, and SE APPENDIX D: Table of Figures © 2015 GlobalPlatform Inc. 2 About GlobalPlatform GlobalPlatform defines and develops specifications to facilitate the secure deployment and management of multiple embedded applications on secure chip technology. Its standardized infrastructure empowers service providers to develop services once and deploy across different markets, devices and channels. GlobalPlatform’s security and privacy parameters enable dynamic combinations of secure and non-secure services from multiple providers on the same device, providing a foundation for market convergence and innovative new cross-sector partnerships. GlobalPlatform is the international industry standard for trusted end-to-end secure deployment and management solutions.