Apparatus, system, and method for authentication of a core root of trust measurement chain
    51.
    发明授权
    Apparatus, system, and method for authentication of a core root of trust measurement chain 有权
    用于认证信任测度链核心根的装置,系统和方法

    公开(公告)号:US08433924B2

    公开(公告)日:2013-04-30

    申请号:US11612367

    申请日:2006-12-18

    IPC分类号: G06F21/00

    CPC分类号: G06F21/57 G06F2221/2153

    摘要: An apparatus, system, and method are disclosed for authentication of a core root of trust measurement chain. The apparatus for authentication of a CRTM chain is provided with a plurality of modules configured to carry out the steps of retrieving a decryption key from a predetermined location on the device selected for authentication, decrypting an authentication signal using the decryption key, and communicating the decrypted authentication signal to a user. In the described embodiments, these modules include a retrieval module, a decryption module, and a communication module. Beneficially, such an apparatus, system, and method would reliably verify that a link in the CRTM chain has not been corrupted, modified, or infected with a computer virus. Specifically, such an apparatus, system, and method would enable verification that the hypervisor has not been corrupted, modified, or infected with a computer virus.

    摘要翻译: 公开了用于认证信任度量链核心根的装置,系统和方法。 用于认证CRTM链的装置设置有多个模块,其被配置为执行从所选择的用于认证的设备上的预定位置检索解密密钥的步骤,使用解密密钥解密认证信号,以及传送解密密钥 认证信号给用户。 在所描述的实施例中,这些模块包括检索模块,解密模块和通信模块。 有利的是,这样的装置,系统和方法可以可靠地验证CRTM链中的链路没有被破坏,修改或感染计算机病毒。 具体来说,这样的装置,系统和方法将能够验证管理程序没有被计算机病毒破坏,修改或感染。

    Apparatus, system, and method for improving user boot via a storage area network
    52.
    发明授权
    Apparatus, system, and method for improving user boot via a storage area network 有权
    用于通过存储区域网络改进用户引导的装置,系统和方法

    公开(公告)号:US08086840B2

    公开(公告)日:2011-12-27

    申请号:US12361529

    申请日:2009-01-28

    摘要: An apparatus, system, and method are disclosed for remotely booting a client from a storage area network (“SAN”). A connection module enables a client, such as a diskless client, to connect to two or more storage area networks (“SANs”), the SANs belonging to a group of redundant SANs, each SAN in the group redundantly storing at least a portion of substantially identical operating system data for the client. The boot module enables the client to remotely boot an operating system from the two or more redundant SANs. The boot module makes at least one read request to each of the two or more connected SANs, each read request configured to retrieve a disparate portion of the operating system data for loading the operating system onto the client. The boot module loads the operating system onto the client using a combination of data retrieved from the two or more connected SANs.

    摘要翻译: 公开了用于从存储区域网络(“SAN”)远程引导客户端的装置,系统和方法。 连接模块使诸如无盘客户端之类的客户端能够连接到两个或多个存储区域网络(“SAN”),属于一组冗余SAN的SAN,该组中的每个SAN冗余地存储至少一部分 基本上相同的操作系统数据为客户端。 引导模块使客户端能够从两个或多个冗余SAN远程引导操作系统。 引导模块对两个或多个连接的SAN中的每一个进行至少一个读取请求,每个读取请求被配置为检索用于将操作系统加载到客户端上的操作系统数据的不同部分。 引导模块使用从两个或多个连接的SAN检索的数据的组合将操作系统加载到客户端上。

    INTEGRATED POWER ADAPTER FOR A LAPTOP
    56.
    发明申请
    INTEGRATED POWER ADAPTER FOR A LAPTOP 有权
    集成电源适配器

    公开(公告)号:US20090243542A1

    公开(公告)日:2009-10-01

    申请号:US12059339

    申请日:2008-03-31

    IPC分类号: H02J7/00

    CPC分类号: G06F1/263

    摘要: A power pack arrangement for a laptop computer, wherein an AC/DC adapter is integrated with a battery pack to form one cohesive unit freely insertable into and removable from a laptop computer housing.

    摘要翻译: 一种用于膝上型计算机的电源组件,其中AC / DC适配器与电池组一体化,以形成可自由地插入到膝上型计算机外壳中并可从其移除的一个内聚单元。

    Password Management Outside of a Bios
    57.
    发明申请
    Password Management Outside of a Bios 有权
    一个Bios之外的密码管理

    公开(公告)号:US20090222909A1

    公开(公告)日:2009-09-03

    申请号:US12040535

    申请日:2008-02-29

    IPC分类号: G06F21/00

    CPC分类号: G06F21/31 G06F21/575

    摘要: In accordance with at least one presently preferred embodiment of the present invention, there is broadly contemplated herein the managing of a POP not solely in the BIOS but at least partly in a more secure location. In accordance with a particularly preferred embodiment of the present invention, this location could be in a NVRAM (non-volatile random access memory) inside a TPM (trusted platform module). Most preferably, this location will contain code that the BIOS preferably will need to access and employ in order to complete the booting of the system.

    摘要翻译: 根据本发明的至少一个目前优选的实施例,这里广泛考虑到不仅在BIOS中管理POP,而且至少部分地在更安全的位置。 根据本发明的特别优选的实施例,该位置可以在TPM(可信平台模块)内的NVRAM(非易失性随机存取存储器)中。 最优选地,该位置将包含BIOS优选地需要访问和应用以便完成系统引导的代码。

    APPARATUS, SYSTEM, AND METHOD FOR AUTHENTICATION OF A CORE ROOT OF TRUST MEASUREMENT CHAIN
    59.
    发明申请
    APPARATUS, SYSTEM, AND METHOD FOR AUTHENTICATION OF A CORE ROOT OF TRUST MEASUREMENT CHAIN 有权
    用于认证信任测量链的核心的装置,系统和方法

    公开(公告)号:US20080148064A1

    公开(公告)日:2008-06-19

    申请号:US11612367

    申请日:2006-12-18

    IPC分类号: G06F12/14

    CPC分类号: G06F21/57 G06F2221/2153

    摘要: An apparatus, system, and method are disclosed for authentication of a core root of trust measurement chain. The apparatus for authentication of a CRTM chain is provided with a plurality of modules configured to carry out the steps of retrieving a decryption key from a predetermined location on the device selected for authentication, decrypting an authentication signal using the decryption key, and communicating the decrypted authentication signal to a user. In the described embodiments, these modules include a retrieval module, a decryption module, and a communication module. Beneficially, such an apparatus, system, and method would reliably verify that a link in the CRTM chain has not been corrupted, modified, or infected with a computer virus. Specifically, such an apparatus, system, and method would enable verification that the hypervisor has not been corrupted, modified, or infected with a computer virus.

    摘要翻译: 公开了用于认证信任度量链核心根的装置,系统和方法。 用于认证CRTM链的装置设置有多个模块,其被配置为执行从所选择的用于认证的设备上的预定位置检索解密密钥的步骤,使用解密密钥解密认证信号,以及传送解密密钥 认证信号给用户。 在所描述的实施例中,这些模块包括检索模块,解密模块和通信模块。 有利的是,这样的装置,系统和方法可以可靠地验证CRTM链中的链路没有被破坏,修改或感染计算机病毒。 具体来说,这样的装置,系统和方法将能够验证管理程序没有被计算机病毒破坏,修改或感染。