发明名称 MIGRATION OF COMPUTER SECRETS
摘要 Described is a technology by which computer data secrets sealed by a trusted platform module (TPM) or like device may be securely migrated from a physical source computing machine to a physically different destination machine. For example, migration of TPM secrets allows migration of a virtual machine from one physical machine to another. A destination machine receives a set of data sealed at a source machine. The set of data includes a migration key and a secret sealed by the migration key. The destination machine performs attestation with a key server to attest that the destination machine is entitled to access the sealed secret, via credentials, known good configuration and/or other policy compliance. The key server unseals the migration key, and provides a returned key (e.g., the migration key or a session key) to the destination machine for unsealing the secrets.
申请公布号 US2009154709(A1) 申请公布日期 2009.06.18
申请号 US20070958376 申请日期 2007.12.17
申请人 MICROSOFT CORPORATION 发明人 ELLISON CARL M.
分类号 H04L9/32 主分类号 H04L9/32
代理机构 代理人
主权项
地址