Starts up of modules of a second module group only when modules of a first group have been started up legitimately
    25.
    发明授权
    Starts up of modules of a second module group only when modules of a first group have been started up legitimately 有权
    仅当第一组的模块合法启动时,才启动第二个模块组的模块

    公开(公告)号:US08510544B2

    公开(公告)日:2013-08-13

    申请号:US12991516

    申请日:2009-05-25

    IPC分类号: G06F9/00 G06F9/24 H04L29/06

    摘要: The present invention provides an information processing apparatus that is capable of continuously performing secure boot between module groups in the case where software of a terminal device consists of module groups provided by a plurality of providers, while keeping independence between the providers. The information processing apparatus is provided with a linkage certificate that contains a first configuration comparison value, which indicates a cumulative hash value of the first module group to be started up by secure boot, and a module measurement value, which indicates a hash value of the first module of the second module group to be started up by secure boot. After the secure boot of the first module group, it is verified that the first module group has been started up by comparison with the first configuration comparison value.

    摘要翻译: 本发明提供一种信息处理装置,其能够在终端装置的软件由多个提供者提供的模块组成的情况下连续地执行模块组之间的安全引导,同时保持提供者之间的独立性。 该信息处理装置具有包含第一配置比较值的连接证书,该第一配置比较值指示通过安全引导来启动的第一模块组的累积散列值,以及指示所述第一配置比较值的散列值 第二个模块组的第一个模块通过安全启动启动。 在第一模块组的安全引导之后,通过与第一配置比较值进行比较来验证第一模块组是否被启动。

    Information processing terminal and status notification method
    29.
    发明授权
    Information processing terminal and status notification method 有权
    信息处理终端和状态通知方式

    公开(公告)号:US08086861B2

    公开(公告)日:2011-12-27

    申请号:US12305126

    申请日:2007-06-14

    IPC分类号: H04L9/00 H04L9/32

    摘要: The present invention aims at providing an information processing terminal, a status notification system, and a status notification method that can protect both privacy and security when a status of the information processing terminal is notified to a server. An information processing terminal 10 has a disclosure/nondisclosure determination section 1001 that determines a notifiable server for each entry; a log concealing section 1002 that conceals an entry; a multi-log measurement section 1003 that commands to update hashes as to a plurality of parties; a log configuration section 1004 that configures a log directed at a notified party and that causes performance of signing action; a verification request section 1005 that requests verification; a policy storage section 1006 that stores a policy used for determining a party that can be notified; and a log storage section 1007 for storing the entry. The information processing terminal 10 commands accumulation, into a hash, of entries subjected to processing suitable for each notified party, such as concealing operation.

    摘要翻译: 本发明旨在提供一种信息处理终端,状态通知系统和状态通知方法,当信息处理终端的状态被通知给服务器时,可以保护隐私和安全。 信息处理终端10具有确定每个条目的通知服务器的公开/非公开确定部分1001; 隐藏条目的日志隐藏部分1002; 命令更新关于多个方的散列的多对数测量部分1003; 日志配置部分1004,其配置针对被通知方的日志并导致签名动作的执行; 请求验证的验证请求部分1005; 存储用于确定可以通知的一方的策略的策略存储部分1006; 以及用于存储条目的日志存储部分1007。 信息处理终端10向诸如隐藏操作之类的处理适合于每个被通知方的处理的条目进行散列散列。