Secure Resume for Encrypted Drives
    2.
    发明申请
    Secure Resume for Encrypted Drives 有权
    加密驱动器的安全恢复

    公开(公告)号:US20120239939A1

    公开(公告)日:2012-09-20

    申请号:US13049071

    申请日:2011-03-16

    IPC分类号: H04L9/32 G06F21/00

    摘要: Systems, methods and products are described that provide secure resume for encrypted drives. One aspect provides a method including: receiving an indication to resume from a suspended state at a computing device; responsive to authenticating a user at one or more input devices, accessing a value in a BIOS derived from authenticating the user at the one or more input devices; responsive to accessing the value, releasing a credential for unlocking one or more encrypted drives; and thereafter proceeding to resume from the suspend state.

    摘要翻译: 描述了为加密驱动器提供安全恢复的系统,方法和产品。 一个方面提供了一种方法,包括:在计算设备处接收从暂停状态恢复的指示; 响应于在一个或多个输入设备处验证用户,访问在所述一个或多个输入设备处认证所述用户而导出的BIOS中的值; 响应于访问该值,释放用于解锁一个或多个加密驱动器的凭证; 之后继续从暂停状态恢复。

    Secure Boot With Minimum Number of Re-Boots
    3.
    发明申请
    Secure Boot With Minimum Number of Re-Boots 有权
    安全启动与最少的重新启动

    公开(公告)号:US20120239917A1

    公开(公告)日:2012-09-20

    申请号:US13049050

    申请日:2011-03-16

    IPC分类号: G06F9/00

    CPC分类号: G06F21/575

    摘要: Systems, methods and products are described that provide secure boot with a minimum number of re-boots. One aspect provides a method including receiving an indication to boot from a power off state at a computing device; responsive to authenticating a user at one or more input devices, releasing a value derived from authenticating the user at the one or more input devices; responsive to releasing the value, unlocking one or more encrypted drives with a previously established alternate credential; and thereafter proceeding to boot from the power off state. By not having to call the non-BIOS software each boot, this minimizes the number of reboots for each boot cycle.

    摘要翻译: 描述了系统,方法和产品,提供了最少数量的重新启动的安全启动。 一方面提供一种方法,包括从计算设备处的关闭电源状态接收指示以引导; 响应于在一个或多个输入设备上认证用户,释放在所述一个或多个输入设备处认证用户导出的值; 响应于释放该值,用先前建立的替代证书解锁一个或多个加密的驱动器; 然后从断电状态开始引导。 通过不必每次启动都调用非BIOS软件,这样可以最大限度地减少每个启动周期的重新启动次数。

    Secure boot with minimum number of re-boots
    4.
    发明授权
    Secure boot with minimum number of re-boots 有权
    安全启动与最少数量的重新启动

    公开(公告)号:US08473747B2

    公开(公告)日:2013-06-25

    申请号:US13049050

    申请日:2011-03-16

    IPC分类号: G06F21/00

    CPC分类号: G06F21/575

    摘要: Systems, methods and products are described that provide secure boot with a minimum number of re-boots. One aspect provides a method including receiving an indication to boot from a power off state at a computing device; responsive to authenticating a user at one or more input devices, releasing a value derived from authenticating the user at the one or more input devices; responsive to releasing the value, unlocking one or more encrypted drives with a previously established alternate credential; and thereafter proceeding to boot from the power off state. By not having to call the non-BIOS software each boot, this minimizes the number of reboots for each boot cycle.

    摘要翻译: 描述了系统,方法和产品,提供了最少数量的重新启动的安全启动。 一方面提供一种方法,包括从计算设备处的关闭电源状态接收指示以引导; 响应于在一个或多个输入设备处认证用户,释放在所述一个或多个输入设备处认证用户导出的值; 响应于释放该值,用先前建立的替代证书解锁一个或多个加密的驱动器; 然后从断电状态开始引导。 通过不必每次启动都调用非BIOS软件,这样可以最大限度地减少每个启动周期的重新启动次数。

    Secure resume for encrypted drives
    6.
    发明授权
    Secure resume for encrypted drives 有权
    加密驱动器的安全简历

    公开(公告)号:US08539246B2

    公开(公告)日:2013-09-17

    申请号:US13049071

    申请日:2011-03-16

    IPC分类号: G06F21/00

    摘要: Systems, methods and products are described that provide secure resume for encrypted drives. One aspect provides a method including: receiving an indication to resume from a suspended state at a computing device; responsive to authenticating a user at one or more input devices, accessing a value in a BIOS derived from authenticating the user at the one or more input devices; responsive to accessing the value, releasing a credential for unlocking one or more encrypted drives; and thereafter proceeding to resume from the suspend state.

    摘要翻译: 描述了为加密驱动器提供安全恢复的系统,方法和产品。 一方面提供了一种方法,包括:在计算设备处接收从暂停状态恢复的指示; 响应于在一个或多个输入设备处认证用户,访问在所述一个或多个输入设备处认证所述用户而导出的BIOS中的值; 响应于访问该值,释放用于解锁一个或多个加密驱动器的凭证; 之后继续从暂停状态恢复。

    Arrangements for interfacing with a user access manager
    9.
    发明授权
    Arrangements for interfacing with a user access manager 有权
    用于与用户访问管理器进行连接的安排

    公开(公告)号:US08132019B2

    公开(公告)日:2012-03-06

    申请号:US12140784

    申请日:2008-06-17

    IPC分类号: G06F21/00

    摘要: Arrangements which permit the employment of dedicated user-access management architecture with more than text-based access. Particularly contemplated herein are arrangements for accepting user identifiers that are then communicated to an intermediate user-delineating architecture (i.e., architecture configured for permitting access to encrypted data or sections of a computer on a user-specific basis) in a manner to permit the user-delineating architecture to perform its own task of unlocking data or sections of a computer.

    摘要翻译: 允许使用专用的用户访问管理架构的安排不仅仅是基于文本的访问。 在此特别考虑的是用于接受用户标识符的安排,该用户标识符然后传送到中间用户描述架构(即,被配置为允许以用户特定的基础访问计算机的加密数据或部分的架构),以允许用户 线性架构来执行自己的任务,解锁数据或计算机的部分。

    SECURITY TO EXTEND TRUST
    10.
    发明申请
    SECURITY TO EXTEND TRUST 有权
    安全延长信任

    公开(公告)号:US20110154010A1

    公开(公告)日:2011-06-23

    申请号:US12641029

    申请日:2009-12-17

    IPC分类号: H04L9/00 G06F1/24

    摘要: An exemplary apparatus includes one or more processors; memory; circuitry configured to hash a value associated with core root of trust measurement code and system management code; store the hash in a secure register; load an operating system; validate a certificate associated with the core root of trust measurement code and validate a certificate associated with the system management code; based on the validated certificates, provide an expected hash associated with the core root of trust measurement code and the system management code; decide if the expected hash matches the hash stored in the register; and, if the expected hash matches the hash stored in the register, commence a dynamic root of trust measurement session. Various other apparatuses, systems, methods, etc., are also disclosed.

    摘要翻译: 示例性装置包括一个或多个处理器; 记忆; 配置为对与信任测度代码的核心根和系统管理代码相关联的值进行散列的电路; 将哈希存储在安全寄存器中; 加载操作系统; 验证与信任测度代码的核心根相关联的证书,并验证与系统管理代码相关联的证书; 基于验证的证书,提供与信任测度代码的核心根和系统管理代码相关联的预期散列; 确定预期哈希是否与存储在寄存器中的哈希匹配; 并且如果期望的哈希与存储在寄存器中的哈希匹配,则启动信任测量会话的动态根。 还公开了各种其它装置,系统,方法等。