发明名称 Associating a signing key with a software component of a computing platform
摘要 A method and system is provided for operatively associating a signing key with a software component of a computing platform. The computing platform includes a trusted device and on start-up first loads a set of software components with each component being measured prior to loading and a corresponding integrity metric recorded in registers of the trusted device. The system stores a key-related item in secure persistent storage, the key-related item being either the signing key or authorisation data for its use. The trusted device is arranged to enable a component of the software-component set to obtain the key-related item, this enabling only occurring when the current register values correspond to values only present prior to loading of components additional to those of the software-component set. Certificate evidence is provided indicating that the signing key is operatively associated with a component of the software-component set.
申请公布号 GB0822726(D0) 申请公布日期 2009.01.21
申请号 GB20080022726 申请日期 2008.12.15
申请人 BYFORD, ALLAN N 发明人
分类号 G06F21/57 主分类号 G06F21/57
代理机构 代理人
主权项
地址