首页> 外国专利> TECHNOLOGIES FOR SECURELY BINDING A PLATFORM MANIFEST TO A PLATFORM

TECHNOLOGIES FOR SECURELY BINDING A PLATFORM MANIFEST TO A PLATFORM

机译:用于将平台清单安全地绑定到平台的技术

摘要

Technologies for securely binding a manifest to a platform include a computing device having a security engine and a field-programmable fuse. The computing device receives a platform manifest indicative of a hardware configuration of the computing device and a manifest hash. The security engine of the computing device blows a bit of a field programmable fuse and then stores the manifest hash and a counter value of the field-programmable fuse in integrity-protected non-volatile storage. In response to a platform reset, the security engine verifies the stored manifest hash and counter value and then determines whether the stored counter value matches the field-programmable fuse. If verified and current, trusted software may calculate a hash of the platform manifest and compare the calculated hash to the stored manifest hash. If matching, the platform manifest may be used to discover platform hardware. Other embodiments are described and claimed.
机译:用于将清单安全地绑定到平台的技术包括具有安全引擎和现场可编程熔丝的计算设备。该计算设备接收指示该计算设备的硬件配置和清单哈希的平台清单。计算设备的安全引擎会烧掉一小部分现场可编程熔丝,然后将清单哈希和现场可编程熔丝的计数器值存储在完整性受保护的非易失性存储器中。响应于平台重置,安全引擎验证存储的清单哈希值和计数器值,然后确定存储的计数器值是否与现场可编程熔丝匹配。如果经过验证并且是最新的,则受信任的软件可以计算平台清单的哈希,并将计算的哈希与存储的清单哈希进行比较。如果匹配,则可以使用平台清单来发现平台硬件。描述和要求保护其他实施例。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号