发明名称 System and method for protected operating system boot using state validation
摘要 A mechanism for protected operating system boot that prevents rogue components from being loaded with the operating system, and thus prevents divulgence of the system key under inappropriate circumstances. After a portion of the machine startup procedure has occurred, the operating system loader is run, the loader is validated, and a correct machine state is either verified to exist and/or created. Once the loader has been verified to be a legitimate loader, and the machine state under which it is running is verified to be correct, the loader's future behavior is known to protect against the loading of rogue components that could cause divulgence of the system key. With the loader's behavior being known to be safe for the system key, the validator may unseal the system key and provides it to the loader.
申请公布号 US2006005034(A1) 申请公布日期 2006.01.05
申请号 US20040882134 申请日期 2004.06.30
申请人 MICROSOFT CORPORATION 发明人 WILLMAN BRYAN M.;ENGLAND PAUL;RAY KENNETH D.;HUNTER JAMIE;MCMICHAEL LONNY D.;LASALLE DEREK N.;JACOMET PIERRE;PALEY MARK E.;KURIEN THEKKTHALACKAL V.;CROSS DAVID B.
分类号 H04K1/00;G06F9/00;G06F9/24;G06F9/445;G06F11/00;G06F15/177;G06F21/00;G06N;H04L9/00 主分类号 H04K1/00
代理机构 代理人
主权项
地址