Optional function multi-function instruction
    7.
    发明授权
    Optional function multi-function instruction 有权
    可选功能多功能指令

    公开(公告)号:US08103860B2

    公开(公告)日:2012-01-24

    申请号:US11692382

    申请日:2007-03-28

    IPC分类号: G06F9/00

    摘要: A method, system and program product for executing a multi-function instruction in a computer system by specifying, via the multi-function instruction, either a capability query or execution of a selected function of one or more optional functions, wherein the selected function is an installed optional function, wherein the capability query determines which optional functions of the one or more optional functions are installed on the computer system.

    摘要翻译: 一种用于在计算机系统中执行多功能指令的方法,系统和程序产品,所述方法,系统和程序产品通过经由所述多功能指令来指定一个或多个可选功能的所选功能的能力查询或执行,其中所选择的功能是 安装的可选功能,其中所述能力查询确定所述一个或多个可选功能的哪些可选功能被安装在所述计算机系统上。

    Method and apparatus for controlling the configuration of a
cryptographic processor
    10.
    发明授权
    Method and apparatus for controlling the configuration of a cryptographic processor 失效
    用于控制密码处理器的配置的方法和装置

    公开(公告)号:US6108425A

    公开(公告)日:2000-08-22

    申请号:US884721

    申请日:1997-06-30

    IPC分类号: H04L9/32 H04L9/30

    CPC分类号: H04L9/3249 H04L2209/56

    摘要: The capabilities of a cryptographic module are controlled by a crypto configuration control (CCC) register that is initialized by one or more self-signed commands that are preformulated and signed with the digital signature key of the crypto module itself. The crypto module accepts a self-signed command only if the self-signature can be validated using the signature verification key of the module. In one implementation, the final configuration is determined by a single self-signed command. In another implementation, a first self-signed command is used to create an temporary configuration that allows one or more initialization authorities to issue additional commands fixing the final configuration. The self-signed commands are maintained separately from the crypto module and are distributed to the end user either physically or electronically. After the self-signed commands have been created and the secret exponent has been embedded in a particular crypto module, all copies of the secret exponent external to the crypto module are destroyed.

    摘要翻译: 加密模块的能力由加密配置控制(CCC)寄存器控制,该密码配置控制(CCC)寄存器由一个或多个自签名命令初始化,该命令由加密模块本身的数字签名密钥预先配置和签名。 只有当使用模块的签名验证密钥验证自签名时,加密模块才接受自签名命令。 在一个实现中,最终配置由单个自签名命令确定。 在另一个实现中,第一个自签名命令用于创建临时配置,允许一个或多个初始化权限发布修复最终配置的附加命令。 自签名命令与加密模块分开维护,并以物理或电子方式分发给最终用户。 在创建了自签名命令并且将秘密指数嵌入到特定加密模块中之后,密码模块外部的秘密指数的所有拷贝都被销毁。