发明名称 SECURE CREATION OF ENCRYPTED VIRTUAL MACHINES FROM ENCRYPTED TEMPLATES
摘要 Booting a machine in a secure fashion in a potentially unsecure environment. The method includes a target machine beginning a boot process. The method further includes the target machine determining that it needs provisioning data to continue booting. The target machine contacts a secure infrastructure to obtain the provisioning data. The target machine provides an identity claim that can be verified by the secure infrastructure. As a result of the secure infrastructure verifying the identity claim, the target machine receives a request from the secure infrastructure to establish a key sealed to the target machine. The target machine provides the established key to the secure infrastructure. The target machine receives the provisioning data from the secure infrastructure. The provisioning data is encrypted to the established key. The target machine decrypts the encrypted provisioning data, and uses the provisioning data to finish booting.
申请公布号 WO2016118205(A3) 申请公布日期 2016.09.15
申请号 WO2015US58700 申请日期 2015.11.03
申请人 MICROSOFT TECHNOLOGY LICENSING, LLC 发明人 NOVAK, Mark Fishel;BEN-ZVI, Nir;MESSEC, John Anthony;KINSHUMANN, Kinshuman;MCCARRON, Christopher
分类号 G06F21/57 主分类号 G06F21/57
代理机构 代理人
主权项
地址