首页> 外国专利> Implementing authentication protocol for merging multiple server nodes with trusted platform modules utilizing provisioned node certificates to support concurrent node add and remove

Implementing authentication protocol for merging multiple server nodes with trusted platform modules utilizing provisioned node certificates to support concurrent node add and remove

机译:实现认证协议,用于使用可信的平台模块利用提供的节点证书来支持并发节点添加和删除的可信平台模块的多个服务器节点

摘要

A method and computer system for implementing authentication protocol for merging multiple server nodes with trusted platform modules (TPMs) utilizing provisioned node certificates to support concurrent node add and node remove. Each of the multiple server nodes boots an instance of enablement level firmware and extended to a trusted platform module (TPM) on each node as the server nodes are powered up. A hardware secure channel is established between the server nodes for firmware message passing as part of physical configuration of the server nodes to be merged. A shared secret is securely exchanged via the hardware secure channel between the server nodes establishing an initial authentication value shared among all server nodes. All server nodes confirm common security configuration settings and exchange TPM log and platform configuration register (PCR) data to establish common history for future attestation requirements, enabling dynamic changing the server nodes and concurrently adding and removing nodes.
机译:一种用于实现具有可信节点证书的可信平台模块(TPMS)以支持的多个服务器节点合并多个服务器节点来支持并发节点添加和节点删除的方法和计算机系统。多个服务器节点中的每一个启动启用级别固件的实例,并在每个节点上扩展到可信平台模块(TPM),因为服务器节点通电。在作为要合并的服务器节点的物理配置的一部分,在服务器节点之间建立硬件安全通道在服务器节点之间建立。共享秘密通过在所有服务器节点之间建立共享的初始认证值之间的服务器节点之间的硬件安全通道牢固地交换。所有服务器节点确认公共安全配置设置和Exchange TPM日志和平台配置寄存器(PCR)数据以建立常见的历史记录,以满足未来的认证要求,使动态更改服务器节点并同时添加和删除节点。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号