发明名称 Method and system for hierarchical platform boot measurements in a trusted computing environment
摘要 An architecture for a distributed data processing system comprises a system-level service processor along with one or more node-level service processors; each are uniquely associated with a node, and each is extended to comprise any components that are necessary for operating the nodes as trusted platforms, such as a TPM and a CRTM in accordance with the security model of the Trusted Computing Group. These node-level service processors then inter-operate with the system-level service processor, which also contains any components that are necessary for operating the system as a whole as a trusted platform. A TPM within the system-level service processor aggregates integrity metrics that are gathered by the node-level service processors, thereafter reporting integrity metrics as requested, e.g., to a hypervisor, thereby allowing a large distributed data processing system to be validated as a trusted computing environment while allowing its highly parallelized initialization process to proceed.
申请公布号 US7752458(B2) 申请公布日期 2010.07.06
申请号 US20080258332 申请日期 2008.10.24
申请人 INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 BADE STEVEN A.;CATHERMAN RYAN CHARLES;HOFF JAMES PATRICK;TERRELL WILLIAM LEE
分类号 G06F11/30;G06F21/00;H04L9/32 主分类号 G06F11/30
代理机构 代理人
主权项
地址