-
公开(公告)号:US20240419802A1
公开(公告)日:2024-12-19
申请号:US18460237
申请日:2023-09-01
Applicant: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Inventor: NIGEL JOHN EDWARDS , Blaine R. SOUTHAM , Luis E. LUCIANI, JR. , Darrell R. HASKELL , Nicholas Mark HAWKINS , Walton A. ROSEN , Guilherme DE CAMPOS MAGALHAES , Kairo Cesar Pinto TAVARES , Timothy PLETCHER
IPC: G06F21/57
Abstract: Systems and methods are provided for agentless attestation. Agentless attestation can measure the integrity of customer servers without requiring an agent software program to be downloaded to each of the enterprise computer devices. In particular, the system can integrate several standalone components to measure the integrity of monitored devices. This also allows the data center to authenticate, verify, audit, and update any hardware change, including a Platform Certificate.
-
公开(公告)号:US20220278855A1
公开(公告)日:2022-09-01
申请号:US17188047
申请日:2021-03-01
Applicant: Hewlett Packard Enterprise Development LP
IPC: H04L9/32
Abstract: Example implementations relate to a method and system for provisioning an identity certificate for a BMC of a platform. Based on the certificate signing request (CSR) received from the BMC, a certificate authority (CA) associated with the platform manufacturer may verify the identity of the security processor and private key of BMC. A cryptographic audit session log between a provisioning service of the platform and the security coprocessor of the platform is received along with the CSR at the CA implemented in a cloud system. The CA verifies the signature on the received cryptographic audit session log. After verification, validation tools at the cloud system determine a first time and second time associated with the security coprocessor. When the difference between the first time and the second time is below an expected time of cryptographic communication, the CSR is considered as a valid request and an identity certificate for the BMC is generated and transmitted to the platform.
-