Invention Grant
- Patent Title: Cryptographic content-based break-glass scheme for debug of trusted-execution environments in remote systems
-
Application No.: US15161775Application Date: 2016-05-23
-
Publication No.: US10361868B1Publication Date: 2019-07-23
- Inventor: Brandon S. Baker , Uday Savagaonkar
- Applicant: Google Inc.
- Applicant Address: US CA Mountain View
- Assignee: Google LLC
- Current Assignee: Google LLC
- Current Assignee Address: US CA Mountain View
- Agency: Honigman Miller Schwartz and Cohn LLP
- Main IPC: H04L9/32
- IPC: H04L9/32 ; H04L9/06 ; H04L9/30 ; G06F11/36 ; G06F21/62

Abstract:
A method includes receiving a break-glass ticket scope identifying one or more secure containers of a secure container system. The secure containers are instantiated in a non-debuggable state and execute corresponding secure execution environments for contents of the corresponding secure containers. The method also includes generating a pending break-glass ticket having the break-glass ticket scope and transmitting the pending break-glass ticket to a break-glass approver for approver. In response to receiving an approved break-glass ticket from the break-glass approver, the method includes altering an access setting of the one or more secure containers defined in the break-glass ticket scope. The altered access setting allows debugging of the respective contents of the one or more secure containers executing the corresponding secure execution environments.
Information query