发明名称 RAPID DATA PROTECTION FOR STORAGE DEVICES
摘要 A computing device uses a data encryption and decryption system that includes a trusted runtime and an inline cryptographic processor. The trusted runtime provides a trusted execution environment, and the inline cryptographic processor provides decryption and encryption of data in-line with storage device read and write operations. When a portion (e.g., partition) of a storage device is defined, the trusted runtime generates an encryption key and provides the encryption key to the inline cryptographic processor, which uses the encryption key to encrypt data written to the portion and decrypt data read from the portion. Access to the portion can be subsequently protected by associating the key with authentication credentials of a user or other entity. The trusted runtime protects the encryption key based on an authentication key associated with the authentication credentials, allowing subsequent access to the encryption key only in response to the proper authentication credentials being provided.
申请公布号 EP3120291(A1) 申请公布日期 2017.01.25
申请号 EP20150716217 申请日期 2015.03.18
申请人 Microsoft Technology Licensing, LLC 发明人 BASMOV, Innokentiy;NYSTRÖM, Magnus Bo Gustaf;FERGUSON, Niels T.;SEMENKO, Alex M.
分类号 G06F21/74;G06F21/78 主分类号 G06F21/74
代理机构 代理人
主权项
地址