Invention Grant
- Patent Title: Controlling access by a network interface
-
Application No.: US15825068Application Date: 2017-11-28
-
Publication No.: US10996969B1Publication Date: 2021-05-04
- Inventor: Jason Alexander Harland , Matthew Shawn Wilson , Anthony Nicholas Liguori , Erez Tsidon
- Applicant: Amazon Technologies, Inc.
- Applicant Address: US WA Seattle
- Assignee: Amazon Technologies, Inc.
- Current Assignee: Amazon Technologies, Inc.
- Current Assignee Address: US WA Seattle
- Agency: Klarquist Sparkman, LLP
- Main IPC: G06F9/455
- IPC: G06F9/455 ; G06F13/42 ; G06F13/10

Abstract:
A server computer toggles between a protected mode and an unprotected mode. In the protected mode, users are unable to access configuration information due to a Base Address Register (BAR) being cleared. However, a service provider can access a Trusted Platform Module (TPM) through an Application Program Interface (API) request. In an unprotected mode, the BAR is programmed so that users can access the configuration information, but the TPM is blocked. Blocking of the TPM is achieved by changing a configuration file, which changes an overall image of the card. With the modified image not matching an original image, the TPM blocks access to data, such as encryption keys. Separate interfaces can be used for user access (PCIe) and service provider access (Ethernet) to the server computer. The server computer can then be toggled back to the protected mode by switching the configuration file to the original configuration file.
Information query