-
公开(公告)号:EP3479283A1
公开(公告)日:2019-05-08
申请号:EP17735717.5
申请日:2017-06-22
发明人: YOUNG, Robert D. , BARKELEW, Jonathan Bret , AIGNER, Ronald , MICHAUD, Alain L. , COX, Jeremiah J.
摘要: A device includes a reset resistant store and a trusted key service. The reset resistant store maintains data across various different device reset or data invalidation operations. The trusted key service maintains, for each of one or more operating systems that run on the device from a boot configuration, an encrypted key associated with the boot configuration. The device also has a master key that is specific to the device. Each of the keys associated with a boot configuration is encrypted using the master key. When booting the device, the boot configuration being run on the device is identified, and the key associated with that boot configuration is obtained (e.g., from the reset resistant store or the encrypted key vault). The master key is used to decrypt the obtained key, and the obtained key is used to decrypt secrets associated with the operating system run from the boot configuration.
-
公开(公告)号:EP3479283B1
公开(公告)日:2020-09-30
申请号:EP17735717.5
申请日:2017-06-22
-
公开(公告)号:EP3821328A1
公开(公告)日:2021-05-19
申请号:EP19737360.8
申请日:2019-06-19
-
-