Invention Grant
- Patent Title: Local secure service partitions for operating system security
-
Application No.: US14068996Application Date: 2013-10-31
-
Publication No.: US09311483B2Publication Date: 2016-04-12
- Inventor: Thekkthalackal Varugis Kurien , Paul England , Ravindra Nath Pandya , Niels Ferguson
- Applicant: Microsoft Technology Licensing, LLC
- Applicant Address: US WA Redmond
- Assignee: Microsoft Technology Licensing, LLC
- Current Assignee: Microsoft Technology Licensing, LLC
- Current Assignee Address: US WA Redmond
- Agent Timothy Churna; Kate Drakos; Micky Minhas
- Main IPC: G06F11/00
- IPC: G06F11/00 ; G06F12/14 ; G06F12/16 ; G08B23/00 ; G06F21/57 ; G06F9/50

Abstract:
Systems and methods provide multiple partitions hosted on an isolation technology such as a hypervisor where at least one of the partitions, a local secure service partition (LSSP), provides security services to other partitions. The service partitions (LSSPs) host those high assurance services that require strict security isolation, where the service can be shared across partitions and accessed even when the user is not connected to a network. The LSSP also can certify the results of any computation using a key signed by a TPM attestation identity key (AIK), or other key held securely by the hypervisor or a service partition. The LSSPs may be configured to provide trusted audit logs, trusted security scans, trusted cryptographic services, trusted compilation and testing, trusted logon services, and the like.
Public/Granted literature
- US20140059680A1 LOCAL SECURE SERVICE PARTITIONS FOR OPERATING SYSTEM SECURITY Public/Granted day:2014-02-27
Information query