发明名称 System and method for trusted early boot flow
摘要 In some embodiments, the invention involves extending trusted computing environments to the boot firmware. In at least one embodiment, the present invention is intended to enable the trusted environment to be extended forward to the pre-boot environment in addition to post-OS load environment. Embodiments of the present invention enable the trusted environment to extend to the firmware at power-on. The firmware is integrated within the secure perimeter which was previously only available to the OS. In other words, the BIOS is made to be a trusted entity, as well as the OS. Extensible firmware interface (EFI) modules are signed with a public key. The processor has an embedded private key. EFI modules are verified using the keys to ensure a trusted environment from boot to OS launch. Other embodiments are described and claimed.
申请公布号 US7752428(B2) 申请公布日期 2010.07.06
申请号 US20050096832 申请日期 2005.03.31
申请人 INTEL CORPORATION 发明人 DATTA SHAMANNA M.;ZIMMER VINCENT J.;ROTHMAN MICHAEL A.
分类号 G06F9/00 主分类号 G06F9/00
代理机构 代理人
主权项
地址