Invention Grant
US07200761B1 Method to use secure passwords in an unsecure program environment
失效
在不安全的程序环境中使用安全密码的方法
- Patent Title: Method to use secure passwords in an unsecure program environment
- Patent Title (中): 在不安全的程序环境中使用安全密码的方法
-
Application No.: US09711028Application Date: 2000-11-09
-
Publication No.: US07200761B1Publication Date: 2007-04-03
- Inventor: Joseph Wayne Freeman , Randall Scott Springfield , Steven Dale Goodman , Isaac Karpel
- Applicant: Joseph Wayne Freeman , Randall Scott Springfield , Steven Dale Goodman , Isaac Karpel
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Dillon & Yudell LLP
- Agent George E. Grosser
- Main IPC: G06F9/00
- IPC: G06F9/00 ; G06F11/30 ; G06F15/173 ; G06F15/16 ; H04L9/00

Abstract:
During power up initialization, security data such as passwords and other sensitive data which are stored in a lockable memory device are read and copied to protected system management interrupt (SMI) memory space, subject to verification by code running in the SMI memory space that the call to write the security data originates with a trusted entity. Once copied to SMI memory space, the security data is erased from regular system memory and the lockable storage device is hard locked (requiring a reset to unlock) against direct access prior to starting the operating system. The copy of the security data within the SMI memory space is invisible to the operating system. However, the operating system may initiate a call to code running in the SMI memory space to check a password entered by the user, with the SMI code returning a “match” or “no match” indication. The security data may thus be employed after the lockable memory device is hard locked and the operating system is started.
Information query