-
公开(公告)号:US20100082987A1
公开(公告)日:2010-04-01
申请号:US12241496
申请日:2008-09-30
IPC分类号: H04L9/32
CPC分类号: G06F21/34 , G06F2221/2129
摘要: A transparent trust validation of an unknown platform can be performed by communicationally coupling it to a trusted device, such as a portable peripheral device carried by a user, or one or more remote computing devices. Information from the unknown platform can be obtained by boot code copied to it from the trusted device and such information can be validated by the trusted device. The trusted device can then provide an encrypted version of decryption key to the boot code which can request the Trusted Platform Module (TPM) of the unknown platform to decrypt and return the decryption key. If the information originally obtained from the unknown platform and validated by the trusted device was authentic, the TPM will be able to provide the decryption key to the boot code, enabling it to decrypt an encrypted volume comprising applications, operating systems or other components.
摘要翻译: 可以通过将其通信地耦合到诸如用户携带的便携式外围设备或一个或多个远程计算设备的可信设备来执行未知平台的透明信任验证。 来自未知平台的信息可以通过从可信设备复制到其中的引导代码获得,并且这样的信息可以由受信任的设备验证。 可信设备然后可以向引导代码提供解密密钥的加密版本,该引导代码可以请求未知平台的可信平台模块(TPM)来解密并返回解密密钥。 如果最初从未知平台获得并由可信设备验证的信息是真实的,则TPM将能够向引导代码提供解密密钥,使其能够解密包括应用,操作系统或其他组件的加密卷。
-
公开(公告)号:US08127146B2
公开(公告)日:2012-02-28
申请号:US12241496
申请日:2008-09-30
IPC分类号: H04L9/00
CPC分类号: G06F21/34 , G06F2221/2129
摘要: A transparent trust validation of an unknown platform can be performed by communicationally coupling it to a trusted device, such as a portable peripheral device carried by a user, or one or more remote computing devices. Information from the unknown platform can be obtained by boot code copied to it from the trusted device and such information can be validated by the trusted device. The trusted device can then provide an encrypted version of decryption key to the boot code which can request the Trusted Platform Module (TPM) of the unknown platform to decrypt and return the decryption key. If the information originally obtained from the unknown platform and validated by the trusted device was authentic, the TPM will be able to provide the decryption key to the boot code, enabling it to decrypt an encrypted volume comprising applications, operating systems or other components.
摘要翻译: 可以通过将其通信地耦合到诸如用户携带的便携式外围设备或一个或多个远程计算设备的可信设备来执行未知平台的透明信任验证。 来自未知平台的信息可以通过从可信设备复制到其中的引导代码获得,并且这样的信息可以由受信任的设备验证。 可信设备然后可以向引导代码提供解密密钥的加密版本,该引导代码可以请求未知平台的可信平台模块(TPM)来解密并返回解密密钥。 如果最初从未知平台获得并由可信设备验证的信息是真实的,则TPM将能够向引导代码提供解密密钥,使其能够解密包括应用,操作系统或其他组件的加密卷。
-
公开(公告)号:US08607065B2
公开(公告)日:2013-12-10
申请号:US12249042
申请日:2008-10-10
申请人: Stefan Thom , Kevin M. Litwack , Shon Eizenhoefer , Erik L. Holt , Yash Gandhi
发明人: Stefan Thom , Kevin M. Litwack , Shon Eizenhoefer , Erik L. Holt , Yash Gandhi
CPC分类号: H04L63/0853 , G06F21/57 , G06F21/575 , H04L9/3234 , H04L9/3236 , H04L63/029 , H04L63/0428 , H04L2209/127
摘要: Techniques are provided to allow remote initialization of a Trusted Platform Module. The results may be trusted and confidential even if the target device has malicious operating system or other software running.
摘要翻译: 提供技术以允许远程初始化可信平台模块。 即使目标设备具有恶意操作系统或其他软件运行,结果也可能被信任和保密。
-
公开(公告)号:US20100095120A1
公开(公告)日:2010-04-15
申请号:US12249042
申请日:2008-10-10
申请人: Stefan Thom , Kevin M. Litwack , Shon Eizenhoefer , Erik L. Holt , Yash Gandhi
发明人: Stefan Thom , Kevin M. Litwack , Shon Eizenhoefer , Erik L. Holt , Yash Gandhi
IPC分类号: H04L9/00
CPC分类号: H04L63/0853 , G06F21/57 , G06F21/575 , H04L9/3234 , H04L9/3236 , H04L63/029 , H04L63/0428 , H04L2209/127
摘要: Techniques are provided to allow remote initialization of a Trusted Platform Module. The results may be trusted and confidential even if the target device has malicious operating system or other software running.
摘要翻译: 提供技术以允许远程初始化可信平台模块。 即使目标设备具有恶意操作系统或其他软件运行,结果也可能被信任和保密。
-
-
-