Invention Grant
- Patent Title: Secure storage of workload attestation reports in a virtualized and clustered computer system
-
Application No.: US17148428Application Date: 2021-01-13
-
Publication No.: US11893410B2Publication Date: 2024-02-06
- Inventor: Abhishek Srivastava , David A. Dunn , Jesse Pool , Adrian Drzewiecki
- Applicant: VMware, Inc.
- Applicant Address: US CA Palo Alto
- Assignee: VMware, Inc.
- Current Assignee: VMware, Inc.
- Current Assignee Address: US CA Palo Alto
- Agency: Kim & Stewart LLP
- Main IPC: G06F9/455
- IPC: G06F9/455 ; G06F9/50 ; G06F21/53

Abstract:
An example method of secure attestation of a workload deployed in a virtualized computing system is described. The virtualized computing system includes a host cluster and a virtualization management server, the host cluster having hosts and a virtualization layer executing on hardware platforms of the hosts. The method includes storing, in a trust authority, a pre-defined attestation report for a workload executing in a virtual machine (VM) managed by the virtualization layer, the pre-defined attestation report including a hash of at least a portion of an image of the VM; receiving, at the trust authority from a security module of a host in which the VM executes, an attestation report generated by measuring memory of the VM; comparing the attestation report with the pre-defined attestation report; and generating an indication of validity for the workload based on a result of the comparison.
Public/Granted literature
- US20220222098A1 SECURE STORAGE OF WORKLOAD ATTESTATION REPORTS IN A VIRTUALIZED AND CLUSTERED COMPUTER SYSTEM Public/Granted day:2022-07-14
Information query