发明名称 Secure and reliable bootstrap architecture
摘要 Integrity is rarely a valid presupposition in many systems architectures, yet it is necessary to make any security guarantees. To address this problem, the present invention discloses a secure bootstrap process, which presumes a minimal amount of integrity. The basic principle is sequencing the bootstrap process as a chain of progressively higher levels of abstraction, and requiring each layer to check a digital signature of the next layer before control is passed to it. A major design decision is the consequence of a failed integrity check. A simplistic strategy is to simply halt the bootstrap process. However, the bootstrap process of the present invention can be augmented with automated recovery procedures which preserve the security properties of the bootstrap process of the present invention under the additional assumption of the availability of a trusted repository. A variety of means by which such a repository can be implemented are disclosed with attention focused on a network-accessible repository. The recovery process is easily generalized to applications other than the bootstrap process of the present invention, such as standardized desktop management and secure automated recovery of network elements such as routers or "Active Network" elements.
申请公布号 US6185678(B1) 申请公布日期 2001.02.06
申请号 US19980165316 申请日期 1998.10.02
申请人 TRUSTEES OF THE UNIVERSITY OF PENNSYLVANIA 发明人 ARBAUGH WILLIAM A.;FARBER DAVID J.;KEROMYTIS ANGELOS D.;SMITH JONATHAN M.
分类号 G06F11/14;G06F21/00;(IPC1-7):G06F9/00;G06F11/30 主分类号 G06F11/14
代理机构 代理人
主权项
地址