Invention Publication
- Patent Title: Trust Zone Attestation for Secure Loading of Service OS
-
Application No.: US18305507Application Date: 2023-04-24
-
Publication No.: US20240354416A1Publication Date: 2024-10-24
- Inventor: Shekar Babu SURYANARAYANA , Manjunath GR , Venkata Rama krishna Rao ATTA
- Applicant: Dell Products L.P.
- Applicant Address: US TX Round Rock
- Assignee: Dell Products L.P.
- Current Assignee: Dell Products L.P.
- Current Assignee Address: US TX Round Rock
- Main IPC: G06F21/57
- IPC: G06F21/57 ; G06F3/06 ; G06F9/4401

Abstract:
Disclosed subject matter implements a secure, cloud-based boot sequence for a recovery OS. In at least some embodiments, a three phase solution is employed. The first phase, which may occur during the DXE phase of a boot sequence, establishes trust by configuring at least a portion system memory as a trust zone RAM disk and attesting modules that interact with the RAM disk. The second phase downloads file from the cloud and performs a cumulative hash verification and handshaking with the EC. During the third phase, a memory identification table for the trust zone s migrated to OS runtime environment to enable secured, OS runtime access to the RAM disk contents.
Information query