摘要:
A data processing system and method are disclosed for automatically recovering from an unsuccessful boot of the system. A boot of the system is initiated utilizing a first boot code stored in a first storage location. A determination is made regarding whether the boot was successful. If a determination is made that the boot was unsuccessful, a boot is reattempted utilizing a second boot code stored in a second storage device.
摘要:
Described is a computer system which can automatically provide its capabilities to a main computer without powering on to facilitate configuring the system in its shipping package. The computer system is coupled to a remote computer via a data communication link. The system includes a communication subsystem which is supplied with auxiliary power and is operative to detect when a valid communication link is established between the computer system and the main computer. After the detection the communication subsystem sends a first packet to the main computer via the communication subsystem. The first packet includes data which specifically identifies the computer system. When the communication link is coupled to the communication subsystem through the packaging and a power source is coupled to a power connector of the system through the packaging, the system is operative to send the first packet without powering on.
摘要:
Described is a computer system which is operable to allow configuration to occur on the system unit without removing the system unit from its packaging. The computer system is coupled to a remote computer via a data communication link. The system is operative to detect whether it is in a configuration mode when a power source and a network connection are made through the packaging. If the configuration mode is detected by the system, the system powers on and places itself in the configuration mode to allow (1) the remote computer to transfer signals to the system via the communication link to set up data transfers to the memory of the system, and (2) the remote computer to transfer data to the memory of the system for storage therein, whereby the system is configured at least in part in its packaging.
摘要:
A method for associating a pass phrase with a secured public/private key pair is disclosed. A user public/private key pair is first established for a user. The user public/private key pair includes a user public key and a user private key. Then, the user public/private key pair is encrypted along with a random password, utilizing a chip public key. Next, a first symmetric key is generated. The random password is encrypted utilizing the first symmetric key. A first password is generated by hashing a first pass phrase. Finally, the first password is encrypted along with the first symmetric key, also utilizing the chip public key. As a result, a user can access the user private key to perform an authentication function by providing the first pass phrase.
摘要:
A method for associating a password with a secured public/private key pair is disclosed. A user public/private key pair is first established for a user. The user public/private key pair includes a user public key and a user private key. Then, the user public/private key pair is encrypted along with a random password, utilizing a chip public key. Next, a first password is generated by hashing a pass phrase. Finally, the random password is encrypted along with the first password, also utilizing the chip public key. As a result, a user can assess the user private key to perform an authentication function by providing the pass phrase.
摘要:
A method and system for booting up a computer system in a secure fashion is disclosed. The method and system comprise determining the presence of a security feature element during an initialization of the computer system wherein the security feature element includes a public key and a corresponding private key, storing a portion of the public key in a nonvolatile memory within the computer system if the security feature element is present and utilizing an algorithm to determine the presence of the security feature element prior to a subsequent boot-up of the computer system. Through the use of the present invention, a computer system is capable of being booted up whereby the computer system determines if a security feature element was previously present in the system. If a security feature element was previously present in the computer system, any stored keys, along with the secrets that they protect, are prevented from being compromised. It is also an object of the present invention to preclude the system from compromising any keys and associated secrets if a security feature element in the system was not previously present in the system.
摘要:
A method, computer program, and system for paging platform configuration registers in and out of a trusted platform module. In a trusted computing platform, an unlimited number of platform configuration registers can be obtained through paging. The trust platform module encrypts and decrypts platform configuration registers for storage outside the trusted platform module.
摘要:
When a flash unlock routine unlocks the flash memory to permit updating of a BIOS image, a message is left in secure non-volatile memory, such as a EEPROM. Upon the next re-boot, the boot block code will detect the special message in the non-volatile memory and perform a signature verification of the next block of code that is to be executed during the POST process. This code block will check the remainder of the BIOS image before POST proceeds.
摘要:
Multiple PCI adapter cards are supported by a single PCI slot through the aspects of the present invention. A computer system aspect includes an &mgr;ATX planar including at least one PCI slot, and a riser card mounted in the at least one PCI slot, the riser card supporting multiple PCI adapter cards and providing signal generation to allow the multiple PCI adapter cards to utilize the at least one PCI slot. The riser card aspect includes a PCI connector for coupling to a PCI slot on the &mgr;ATX planar, a plurality of PCI slots for attaching a plurality of PCI adapter cards, and a logic device for providing separate bus signal pairs to each of the plurality of PCI adapter cards from a single signal pair of the PCI slot on the &mgr;ATX planar.
摘要:
A method and system are disclosed for transmitting a network packet which identifies only selected ones of a plurality of client computer systems. The client computer systems are coupled to a server computer system to form a network. A logical group is specified which includes only a first plurality of the plurality of client computer systems by specifying one of a plurality of group identifiers. A network packet is then transmitted utilizing the network to the logical group. The network packet includes the group identifier which identifies the logical group, wherein only the logical group are the intended recipients of the packet.