首页> 外国专利> Software and firmware verification by distributed ledger and intrusion detection systems

Software and firmware verification by distributed ledger and intrusion detection systems

机译:通过分布式分类帐和入侵检测系统验证软件和固件

摘要

A software ecosystem includes a software supply chain in which each of the participants in the software supply chain produce software components using reproducible builds. By using deterministic compilation practices, each of the software components produced by a respective participant should be identical. The software ecosystem also includes a set of tamper proof distributed ledgers. Hashes of the software components are generated and securely recorded in the set of distributed ledgers. The software ecosystem also includes an intrusion detection system configured to compare hashes of the software components to determine when one or more of the software components has been generated in a corrupt manner. The secure software ecosystem includes a full-platform approach to integrity which incorporates designing against attacks, rather than patching after them, which creates a paradigm in which computing platforms can be trusted because they have been designed to operate in an untrustworthy environment.
机译:软件生态系统包括软件供应链,其中软件供应链中的每个参与者使用可重复构建产生软件组件。通过使用确定性编译实践,各个参与者产生的每个软件组件应该是相同的。软件生态系统还包括一组防篡改分布式分配区。生成软件组件的散列,并在分布式分区集合中牢固地记录。软件生态系统还包括入侵检测系统,该入侵检测系统被配置为比较软件组件的散布,以确定何时以腐败方式生成一个或多个软件组件。安全的软件生态系统包括一个完整的完整性方法,它包含针对攻击的设计,而不是在它们之后修补,它创造了一个可信计算平台的范例,因为它们被设计成在不值得信任的环境中运行。

著录项

  • 公开/公告号US11138314B1

    专利类型

  • 公开/公告日2021-10-05

    原文格式PDF

  • 申请/专利权人 MUININ CORPORATION P.B.C;

    申请/专利号US202017026970

  • 发明设计人 JAMES GETTYS;D RAMESH K. RAO;JOHN RYAN;

    申请日2020-09-21

  • 分类号G06F11;G06F21/56;H04L9/32;G06F8/71;G06F8/60;

  • 国家 US

  • 入库时间 2022-08-24 21:26:24

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号