-
1.
公开(公告)号:US07945786B2
公开(公告)日:2011-05-17
申请号:US11731164
申请日:2007-03-30
申请人: Alok Kumar , Minal B. Patel , Kuo-Lang Tseng , Ramesh M. Thomas , Madhukar Tallam , Aneet Chopra , Ned M. Smith , David W. Grawrock , David Champagne
发明人: Alok Kumar , Minal B. Patel , Kuo-Lang Tseng , Ramesh M. Thomas , Madhukar Tallam , Aneet Chopra , Ned M. Smith , David W. Grawrock , David Champagne
CPC分类号: G06F9/45558 , G06F9/4418 , G06F21/51 , G06F21/79 , G06F2009/45587
摘要: A processing system features random access memory (RAM), a processor, and a trusted platform module (TPM). When the processing system enters a sleep mode during which the RAM is to stay powered, the processing system may measuring a VMM and one or more secure VMs in the processing system. However, the processing system may not measure or encrypt all of system memory. Upon resuming from sleep, the processing system may verify the measurements, to ensure that the VMM and secure VMs have not been tampered with. Other steps may include sealing encryption keys to the TPM, while preserving the blobs in memory. Other embodiments are described and claimed.
摘要翻译: 处理系统具有随机存取存储器(RAM),处理器和可信平台模块(TPM)。 当处理系统进入休眠模式期间,RAM将保持供电状态,处理系统可以测量处理系统中的VMM和一个或多个安全VM。 然而,处理系统可能不能测量或加密所有的系统存储器。 从休眠状态恢复时,处理系统可以验证测量结果,以确保VMM和安全VM没有被篡改。 其他步骤可以包括将加密密钥封装到TPM,同时保留存储器中的斑点。 描述和要求保护其他实施例。
-
公开(公告)号:US20080244292A1
公开(公告)日:2008-10-02
申请号:US11731164
申请日:2007-03-30
申请人: Alok Kumar , Minal B. Patel , Kuo-Lang Tseng , Ramesh M. Thomas , Mudhukar Tallam , Aneet Chopra , Ned M. Smith , David W. Grawrock , David Champagne
发明人: Alok Kumar , Minal B. Patel , Kuo-Lang Tseng , Ramesh M. Thomas , Mudhukar Tallam , Aneet Chopra , Ned M. Smith , David W. Grawrock , David Champagne
CPC分类号: G06F9/45558 , G06F9/4418 , G06F21/51 , G06F21/79 , G06F2009/45587
摘要: A processing system features random access memory (RAM), a processor, and a trusted platform module (TPM). When the processing system enters a sleep mode during which the RAM is to stay powered, the processing system may measuring a VMM and one or more secure VMs in the processing system. However, the processing system may not measure or encrypt all of system memory. Upon resuming from sleep, the processing system may verify the measurements, to ensure that the VMM and secure VMs have not been tampered with. Other steps may include sealing encryption keys to the TPM, while preserving the blobs in memory. Other embodiments are described and claimed.
摘要翻译: 处理系统具有随机存取存储器(RAM),处理器和可信平台模块(TPM)。 当处理系统进入休眠模式期间,RAM将保持供电状态,处理系统可以测量处理系统中的VMM和一个或多个安全VM。 然而,处理系统可能不能测量或加密所有的系统存储器。 从休眠状态恢复时,处理系统可以验证测量结果,以确保VMM和安全VM没有被篡改。 其他步骤可以包括将加密密钥封装到TPM,同时保留存储器中的斑点。 描述和要求保护其他实施例。
-