Attesting a Component of a System During a Boot Process
    11.
    发明申请
    Attesting a Component of a System During a Boot Process 有权
    在引导过程中验证系统的组件

    公开(公告)号:US20120084549A1

    公开(公告)日:2012-04-05

    申请号:US13241835

    申请日:2011-09-23

    IPC分类号: G06F9/00

    摘要: A method, apparatus and program product for attesting a component of a system during a boot process. The method comprises the steps of: verifying that the system is in a trusted state; in response to verifying that the system is in a trusted state, requesting an enrollment of the system wherein the requesting step further comprises the step of: retrieving enrollment data associated with the system; retrieving current input data associated with the component of the system; comparing the current input data against the enrollment data in order to determine whether the system can retain its trusted state; wherein in response to the comparing step, if the current input data matches the enrollment data, the system retains its trusted state; and accepting the trusted state until receipt of a notification, from the system having a retained trusted state, of an update to the system.

    摘要翻译: 一种用于在引导过程期间证明系统的组件的方法,装置和程序产品。 该方法包括以下步骤:验证系统处于可信状态; 响应于验证系统处于可信状态,请求系统的注册,其中所述请求步骤还包括以下步骤:检索与所述系统相关联的注册数据; 检索与系统的组件相关联的当前输入数据; 将当前输入数据与登记数据进行比较,以确定系统是否可以保留其可信状态; 其中响应于所述比较步骤,如果所述当前输入数据与所述注册数据匹配,则所述系统保持其可信状态; 以及接受所述受信任状态,直到从具有保留的可信状态的系统接收到到所述系统的更新的通知。