首页> 外国专利> TRUSTED COMPUTING BASE EVIDENCE BINDING FOR A MIGRATABLE VIRTUAL MACHINE

TRUSTED COMPUTING BASE EVIDENCE BINDING FOR A MIGRATABLE VIRTUAL MACHINE

机译:可移植虚拟机的可信计算基础证据绑定

摘要

In an embodiment, at least one computer readable medium has instructions stored thereon for causing a system to cryptographically sign, at a secure platform services enclave (PSE) of a computing system and using a secure attestation key (SGX AK), a public portion of a trusted platform module attestation key (TPM AK) associated with a trusted computing base of a physical platform, to form a certified TPM AK public portion. Also included are instructions to store the certified TPM AK public portion in the PSE, and instructions to, responsive to an attestation request received from a requester at a virtual trusted platform module (vTPM) associated with a virtual machine (VM) that has migrated onto the physical platform, provide to the requester the certified TPM AK public portion stored in the PSE. Other embodiments are described and claimed.
机译:在一个实施例中,至少一个计算机可读介质具有存储在其上的指令,以使系统在计算系统的安全平台服务区(PSE)并使用安全证明密钥(SGX AK)对系统的公共部分进行密码签名。与物理平台的可信计算基础相关联的可信平台模块证明密钥(TPM AK),以形成认证的TPM AK公共部分。还包括将认证的TPM AK公共部分存储在PSE中的指令,以及响应于从与迁移到其中的虚拟机(VM)关联的虚拟可信平台模块(vTPM)的请求者接收到的证明请求的指令。物理平台,向请求者提供存储在PSE中的经过认证的TPM AK公共部分。描述和要求保护其他实施例。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号