发明申请
- 专利标题: Method for extending the CRTM in a trusted platform
- 专利标题(中): 在可信平台上扩展CRTM的方法
-
申请号: US10887441申请日: 2004-07-08
-
公开(公告)号: US20060010326A1公开(公告)日: 2006-01-12
- 发明人: Steven Bade , Ronald Perez , Leendert Van Doorn , Helmut Weber
- 申请人: Steven Bade , Ronald Perez , Leendert Van Doorn , Helmut Weber
- 申请人地址: US NY Armonk
- 专利权人: International Business Machines Corporation
- 当前专利权人: International Business Machines Corporation
- 当前专利权人地址: US NY Armonk
- 主分类号: H04L9/00
- IPC分类号: H04L9/00
摘要:
A method, system and computer program product for enhancing the functionality of the existing core root of trust measurement (CRTM). The CRTM is extended to allow platform manufacturer controlled and certified code to be incorporated into the function of the CRTM, wherein the manufacturer may define the policy for accepting a new function into the CRTM. When a firmware or software module image is compiled, the build process generates a hash value of the compiled firmware or software image, wherein the hash value reflects a fingerprint (or short hand) representation of the compiled image. A determination is made as to whether the hash value of the firmware or software image is to be a CRTM extension. If so, a digital signature of the module is created using the CRTM extension private key. This signature value is added to the firmware or software module.
信息查询