摘要: The advances and adoption of Trusted Computing hardware assisted virtualisation technologies in standard PC platforms promise new approaches build- ing a robust platform for security sensitive software modules. amal- gam these allows an attractive off-the-shelf environment, capable supporting levels potentially higher than commonly deployed today. This ar- ticle proposes practical approach combining technology elements available today to create such using components. design supports operating high-security low-security compartments side by side. high compart- ment is able use the functionality Platform Module. low compartment isolated through hardware-assisted virtualisation. boots via Intel Execution Technology resist manipulation. We discuss building blocks architecture present number open research challenges.