发明名称 SECURE FACTORY DATA GENERATION AND RESTORATION
摘要 In various embodiments, methods, devices and systems for securely generating, sealing, and restoring factory-generated calibration and provisioning data for an electronic device are described, in which calibration and provisioning data for an electronic device are generated in a distributed manner and stored on a storage system. The calibration data can be retrieved from the storage system during device assembly and finalized calibration and provisioning data for each electronic device can be stored to the storage system. In one embodiment, a sealing server, to attest to the authenticity of the factory-generated data, seals the finalized calibration data. In one embodiment, an electronic device can access a data store containing the factory-generated data and can update or restore calibration or provisioning data for the device from the data store.
申请公布号 US2015261966(A1) 申请公布日期 2015.09.17
申请号 US201414207361 申请日期 2014.03.12
申请人 Apple Inc. 发明人 Mensch Thomas P.;Gosnell Jason D.;Hauck Jerrold V.;Vempaty Muralidhar S.;De Atley Dallas B.
分类号 G06F21/60;H04L29/06 主分类号 G06F21/60
代理机构 代理人
主权项 1. A system for managing factory-generated data for an electronic device, the system comprising: a first factory server coupled to one or more storage systems, to store calibration data generated for one or more modules of the electronic device, the calibration data associated with the one or more modules via a module identifier that is unique to each of the modules, and to transmit the calibration data to the one or more storage systems; a second factory server coupled to the one or more storage systems, to retrieve the calibration data associated with the one or more modules from the one or more storage systems, and to assemble a set of factory data for the electronic device, the factory data including the calibration data, the factory data associated with the electronic device via a device identifier that is unique to the electronic device; and a sealing server coupled to the one or more storage systems, the sealing server to, in response to a request from the electronic device, authenticate the set of factory data for the electronic device via the module identifier of each module, and to create a cryptographic association between the set of factory data and the electronic device after the authentication, wherein a manifest of the cryptographic association is stored on the electronic device.
地址 Cupertino CA US