发明名称 PREVENTING A ROLLBACK ATTACK IN A COMPUTING SYSTEM THAT INCLUDES A PRIMARY MEMORY BANK AND A BACKUP MEMORY BANK
摘要 Preventing a rollback attack in a computing system that includes a primary memory bank and a backup memory bank, including during startup of the computing system: determining whether the computing system is attempting to use firmware in the backup memory bank; responsive to determining that the computing system is attempting to use firmware in the backup memory bank, determining whether the firmware in the backup memory bank is a previous version of firmware in the primary memory bank; responsive to determining that the firmware in the backup memory bank is a previous version of firmware in the primary memory bank, determining whether a system administrator has authorized the use of the firmware in the backup memory bank; and responsive to determining that the system administrator has authorized the use of the firmware in the backup memory bank, configuring the computing system to utilize the firmware in the backup memory bank.
申请公布号 US2015143163(A1) 申请公布日期 2015.05.21
申请号 US201314081008 申请日期 2013.11.15
申请人 LENOVO ENTERPRISE SOLUTIONS (SINGAPORE) PTE. LTD. 发明人 DASARI SHIVA R.;GUNDAM RAGHUSWAMYREDDY
分类号 G06F11/14;G06F9/445 主分类号 G06F11/14
代理机构 代理人
主权项 1. A method of preventing a rollback attack in a computing system that includes a primary memory bank and a backup memory bank, the method comprising: during startup of the computing system: determining, by an attack prevention module, whether the computing system is attempting to use firmware in the backup memory bank; responsive to determining that the computing system is attempting to use firmware in the backup memory bank, determining, by the attack prevention module, whether the firmware in the backup memory bank is a previous version of firmware in the primary memory bank; responsive to determining that the firmware in the backup memory bank is a previous version of firmware in the primary memory bank, determining, by the attack prevention module, whether a system administrator has authorized the use of the firmware in the backup memory bank; and responsive to determining that the system administrator has authorized the use of the firmware in the backup memory bank, configuring, by the attack prevention module, the computing system to utilize the firmware in the backup memory bank.
地址 SINGAPORE SG