发明名称 SYSTEM AND METHOD FOR ESTABLISHING PERPETUAL TRUST AMONG PLATFORM DOMAINS
摘要 A method may include generating a first shared secret for a present boot session of the information handling system and determining if a second shared secret existed for a prior boot session of the information handling system. If the second shared secret existed for the prior boot session, the method may include encrypting the first shared secret with the second shared secret and communicating the first shared secret encrypted by the second shared secret from a first information handling resource to a second information handling resource. If the second shared secret did not exist for the prior boot session, the method may include communicating the first shared secret unencrypted from the first information handling resource to the second information handling resource. The method may additionally include securely communicating between the first information handling resource and the second information handling resource using the first shared secret for encryption and decryption.
申请公布号 US2014237262(A1) 申请公布日期 2014.08.21
申请号 US201414260460 申请日期 2014.04.24
申请人 Jaber Muhammed;Savage Marshal;Khatri Mukund Purshottam 发明人 Jaber Muhammed;Savage Marshal;Khatri Mukund Purshottam
分类号 G06F21/57;H04L9/08 主分类号 G06F21/57
代理机构 代理人
主权项 1. An information handling system comprising: a processor; a service processor; a basic input/output system (BIOS); a non-transitory memory accessible to the processor; a first information handling resource to: generate a first shared secret for a present boot session of the information handling system; determine if a second shared secret existed for a prior boot session of the information handling system; when the second shared secret existed for the prior boot session, communicate the first shared secret encrypted by the second shared secret; when the second shared secret did not exist for the prior boot session, communicate the first shared secret unencrypted; and securely communicate during the present boot session using the first shared secret for encryption and decryption of communications; and a second information handling resource configured to: receive the first shared secret; when the second shared secret existed for the prior boot session, decrypt the first shared secret with the second shared secret; and securely communicate during the present boot session using the first shared secret for encryption and decryption of communications, wherein the first information handling resource and the second information handling resource are selected from: the basic input/output system (BIOS) and the service processor.
地址 Austin TX US