首页> 外国专利> PROTECTION OF SECURED BOOT SECRETS FOR OPERATING SYSTEM REBOOT

PROTECTION OF SECURED BOOT SECRETS FOR OPERATING SYSTEM REBOOT

机译:保护操作系统启动时的安全启动机密

摘要

Protecting secured boot secrets while starting an operating system. Embodiments include starting a first operating system using a trusted computing base, protecting a portion of the system memory to prevent access to the portion of the system memory by the first operating system, and storing secured boot secrets in the protected portion of the system memory. Based at least on identifying that a second operating system is to be started to replace the first operating system, embodiments include configuring one or more memory data structures, including code of the second operating system, in the protected portion of the system memory. The protected portion of the system memory is unprotected, while mitigating attacks on the portion of system memory, and processor state is set to execute the code of the second operating system. The second operating system starts using the secured boot secrets stored in the portion of the system memory.
机译:启动操作系统时保护安全的启动机密。实施例包括使用可信计算库来启动第一操作系统,保护系统存储器的一部分以防止第一操作系统访问系统存储器的该部分,以及将安全的引导秘密存储在系统存储器的受保护的部分中。至少基于识别出将要启动第二操作系统来代替第一操作系统,实施例包括在系统存储器的受保护部分中配置一个或多个存储器数据结构,包括第二操作系统的代码。在减轻对系统内存部分的攻击的同时,系统内存的受保护部分不受保护,并且处理器状态被设置为执行第二操作系统的代码。第二个操作系统开始使用存储在系统内存部分中的安全启动密码。

著录项

  • 公开/公告号US2017286686A1

    专利类型

  • 公开/公告日2017-10-05

    原文格式PDF

  • 申请/专利权人 MICROSOFT TECHNOLOGY LICENSING LLC;

    申请/专利号US201615085054

  • 发明设计人 ANDREY SHEDEL;ALAIN GEFFLAUT;

    申请日2016-03-30

  • 分类号G06F21/57;G06F9/54;H04L9/32;G06F9/44;

  • 国家 US

  • 入库时间 2022-08-21 13:49:55

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号