CN100458807C - 验证初始可信设备到被保护处理系统的绑定 - Google Patents

验证初始可信设备到被保护处理系统的绑定 Download PDF

Info

Publication number
CN100458807C
CN100458807C CNB2005800358006A CN200580035800A CN100458807C CN 100458807 C CN100458807 C CN 100458807C CN B2005800358006 A CNB2005800358006 A CN B2005800358006A CN 200580035800 A CN200580035800 A CN 200580035800A CN 100458807 C CN100458807 C CN 100458807C
Authority
CN
China
Prior art keywords
binding
processing system
given device
response
generating
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Lifetime
Application number
CNB2005800358006A
Other languages
English (en)
Chinese (zh)
Other versions
CN101044489A (zh
Inventor
S·贝德
D·C·查利纳
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Lenovo International Ltd
Original Assignee
International Business Machines Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by International Business Machines Corp filed Critical International Business Machines Corp
Publication of CN101044489A publication Critical patent/CN101044489A/zh
Application granted granted Critical
Publication of CN100458807C publication Critical patent/CN100458807C/zh
Anticipated expiration legal-status Critical
Expired - Lifetime legal-status Critical Current

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/57Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Hardware Design (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Software Systems (AREA)
  • Theoretical Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Storage Device Security (AREA)
  • Hardware Redundancy (AREA)
  • Information Transfer Between Computers (AREA)
CNB2005800358006A 2004-10-21 2005-06-23 验证初始可信设备到被保护处理系统的绑定 Expired - Lifetime CN100458807C (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
US10/970,461 2004-10-21
US10/970,461 US7143287B2 (en) 2004-10-21 2004-10-21 Method and system for verifying binding of an initial trusted device to a secured processing system

Publications (2)

Publication Number Publication Date
CN101044489A CN101044489A (zh) 2007-09-26
CN100458807C true CN100458807C (zh) 2009-02-04

Family

ID=34970960

Family Applications (1)

Application Number Title Priority Date Filing Date
CNB2005800358006A Expired - Lifetime CN100458807C (zh) 2004-10-21 2005-06-23 验证初始可信设备到被保护处理系统的绑定

Country Status (8)

Country Link
US (1) US7143287B2 (enExample)
EP (1) EP1805571B1 (enExample)
JP (1) JP4410821B2 (enExample)
CN (1) CN100458807C (enExample)
AT (1) ATE479154T1 (enExample)
DE (1) DE602005023195D1 (enExample)
TW (1) TWI365654B (enExample)
WO (1) WO2006045644A1 (enExample)

Families Citing this family (47)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7500269B2 (en) 2005-01-07 2009-03-03 Cisco Technology, Inc. Remote access to local content using transcryption of digital rights management schemes
US7533258B2 (en) * 2005-01-07 2009-05-12 Cisco Technology, Inc. Using a network-service credential for access control
JP2006203564A (ja) * 2005-01-20 2006-08-03 Nara Institute Of Science & Technology マイクロプロセッサ、ノード端末、コンピュータシステム及びプログラム実行証明方法
US20060294380A1 (en) * 2005-06-28 2006-12-28 Selim Aissi Mechanism to evaluate a token enabled computer system
US8615663B2 (en) 2006-04-17 2013-12-24 Broadcom Corporation System and method for secure remote biometric authentication
US7730181B2 (en) * 2006-04-25 2010-06-01 Cisco Technology, Inc. System and method for providing security backup services to a home network
CN101102180B (zh) * 2006-07-03 2010-08-25 联想(北京)有限公司 基于硬件安全单元的系统间绑定及平台完整性验证方法
US7912962B2 (en) * 2006-10-06 2011-03-22 Apple Inc. Invitation to bind to a device
US9171161B2 (en) * 2006-11-09 2015-10-27 International Business Machines Corporation Trusted device having virtualized registers
US7984483B2 (en) * 2007-04-25 2011-07-19 Acxess, Inc. System and method for working in a virtualized computing environment through secure access
JP4530027B2 (ja) 2007-11-13 2010-08-25 日本電気株式会社 コンピュータシステム
US8208637B2 (en) * 2007-12-17 2012-06-26 Microsoft Corporation Migration of computer secrets
CN101464932B (zh) * 2007-12-19 2012-08-22 联想(北京)有限公司 硬件安全单元间协作方法、系统及其应用设备
CN101470643B (zh) * 2007-12-24 2012-03-28 联想(北京)有限公司 固定硬件安全单元备份、恢复方法及系统
US8484705B2 (en) * 2008-04-25 2013-07-09 Hewlett-Packard Development Company, L.P. System and method for installing authentication credentials on a remote network device
US20090271852A1 (en) * 2008-04-25 2009-10-29 Matt Torres System and Method for Distributing Enduring Credentials in an Untrusted Network Environment
US9218469B2 (en) 2008-04-25 2015-12-22 Hewlett Packard Enterprise Development Lp System and method for installing authentication credentials on a network device
JP5369502B2 (ja) * 2008-06-04 2013-12-18 株式会社リコー 機器、管理装置、機器管理システム、及びプログラム
US8843742B2 (en) * 2008-08-26 2014-09-23 Hewlett-Packard Company Hypervisor security using SMM
US9047450B2 (en) * 2009-06-19 2015-06-02 Deviceauthority, Inc. Identification of embedded system devices
US9047458B2 (en) * 2009-06-19 2015-06-02 Deviceauthority, Inc. Network access protection
US20100324983A1 (en) * 2009-06-22 2010-12-23 Etchegoyen Craig S System and Method for Media Distribution
US8726407B2 (en) * 2009-10-16 2014-05-13 Deviceauthority, Inc. Authentication of computing and communications hardware
US8418259B2 (en) * 2010-01-05 2013-04-09 Microsoft Corporation TPM-based license activation and validation
US20120066676A1 (en) * 2010-09-09 2012-03-15 Yao Zu Dong Disabling circuitry from initiating modification, at least in part, of state-associated information
WO2012038211A1 (en) 2010-09-22 2012-03-29 International Business Machines Corporation Attesting use of an interactive component during a boot process
US8869264B2 (en) 2010-10-01 2014-10-21 International Business Machines Corporation Attesting a component of a system during a boot process
CN103201747B (zh) * 2010-11-18 2015-11-25 国际商业机器公司 用于验证多个数据处理系统的方法和设备
AU2011100168B4 (en) 2011-02-09 2011-06-30 Device Authority Ltd Device-bound certificate authentication
AU2011101295B4 (en) 2011-06-13 2012-08-02 Device Authority Ltd Hardware identity in multi-factor authentication layer
AU2011101297B4 (en) 2011-08-15 2012-06-14 Uniloc Usa, Inc. Remote recognition of an association between remote devices
CN102508534B (zh) * 2011-09-30 2013-07-24 中国人民解放军海军计算技术研究所 可信主板的启动控制方法
US10450193B2 (en) 2012-03-30 2019-10-22 Monsanto Technology Llc Alcohol reformer for reforming alcohol to mixture of gas including hydrogen
US10223688B2 (en) 2012-09-24 2019-03-05 Samsung Electronics Co., Ltd. Competing mobile payment offers
US9143496B2 (en) 2013-03-13 2015-09-22 Uniloc Luxembourg S.A. Device authentication using device environment information
US20140279566A1 (en) * 2013-03-15 2014-09-18 Samsung Electronics Co., Ltd. Secure mobile payment using media binding
US9286466B2 (en) 2013-03-15 2016-03-15 Uniloc Luxembourg S.A. Registration and authentication of computing devices using a digital skeleton key
US10397215B2 (en) * 2016-09-27 2019-08-27 Visa International Service Assocation Secure element installation and provisioning
WO2020023886A1 (en) * 2018-07-27 2020-01-30 Vchain Inc. Virtual machine tracking across data centers
US11546138B2 (en) * 2018-09-28 2023-01-03 Benjamin Allan Mord Information integrity in blockchain and related technologies
KR102180481B1 (ko) * 2019-05-03 2020-11-18 삼성전자주식회사 번들 정보를 제공하는 방법 및 장치
US12045629B2 (en) 2019-09-30 2024-07-23 Microsoft Technology Licensing, Llc Securely configuring target devices using device identity
US11533174B2 (en) * 2020-01-29 2022-12-20 International Business Machines Corporation Binding secure objects of a security module to a secure guest
CN111241569B (zh) * 2020-04-24 2021-03-30 支付宝(杭州)信息技术有限公司 一种信息处理的方法、装置及设备
US20230403552A1 (en) * 2022-06-13 2023-12-14 Apple Inc. Ultra-wideband session key sharing scheme
WO2024094301A1 (en) * 2022-11-03 2024-05-10 Telefonaktiebolaget Lm Ericsson (Publ) Verification of binding between an equipment binding client and an equipment binding server
GB2630336A (en) 2023-05-24 2024-11-27 Ibm Identity based hierarchical sessions

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20030056109A1 (en) * 2001-09-14 2003-03-20 International Business Machines Corporation Method a system for binding a device to a planar
US20030115453A1 (en) * 2001-12-17 2003-06-19 Grawrock David W. Connecting a virtual token to a physical token
US20030188162A1 (en) * 2002-03-29 2003-10-02 Brant Candelore Locking a hard drive to a host
US20030226040A1 (en) * 2002-06-03 2003-12-04 International Business Machines Corporation Controlling access to data stored on a storage device of a trusted computing platform system

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP1076279A1 (en) 1999-08-13 2001-02-14 Hewlett-Packard Company Computer platforms and their methods of operation
ATE348382T1 (de) 2000-01-13 2007-01-15 Koninkl Philips Electronics Nv Verfahren zum schutz des komprimierten inhaltes nach trennung von originaler quelle

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20030056109A1 (en) * 2001-09-14 2003-03-20 International Business Machines Corporation Method a system for binding a device to a planar
US20030115453A1 (en) * 2001-12-17 2003-06-19 Grawrock David W. Connecting a virtual token to a physical token
US20030188162A1 (en) * 2002-03-29 2003-10-02 Brant Candelore Locking a hard drive to a host
US20030226040A1 (en) * 2002-06-03 2003-12-04 International Business Machines Corporation Controlling access to data stored on a storage device of a trusted computing platform system

Also Published As

Publication number Publication date
TW200635323A (en) 2006-10-01
US7143287B2 (en) 2006-11-28
EP1805571A1 (en) 2007-07-11
EP1805571B1 (en) 2010-08-25
JP4410821B2 (ja) 2010-02-03
ATE479154T1 (de) 2010-09-15
WO2006045644A1 (en) 2006-05-04
TWI365654B (en) 2012-06-01
JP2008517390A (ja) 2008-05-22
US20060090070A1 (en) 2006-04-27
DE602005023195D1 (de) 2010-10-07
CN101044489A (zh) 2007-09-26

Similar Documents

Publication Publication Date Title
CN100458807C (zh) 验证初始可信设备到被保护处理系统的绑定
CN100458809C (zh) 用于建立虚拟认证凭证的方法与装置
CN102870093B (zh) 利用虚拟化和证明来远程维护电子网络中多个客户端的系统和方法
JP4064914B2 (ja) 情報処理装置、サーバ装置、情報処理装置のための方法、サーバ装置のための方法および装置実行可能なプログラム
CN100380274C (zh) 用于对上下文加密密钥进行备份和恢复的方法和系统
CN110247756B (zh) 飞地启动及认证
US12034869B2 (en) Identity management for software components
US20050166051A1 (en) System and method for certification of a secure platform
CN102947795A (zh) 安全云计算的系统和方法
CN115001695B (zh) 平台的基板管理控制器身份的安全置备
TW201732669A (zh) 受控的安全碼鑑認
JP2013519929A (ja) 情報処理装置、情報処理システム、ソフトウェアルーチン実行方法およびリモート認証方法
US20050166041A1 (en) Authentication in a distributed computing environment
JP2008507203A (ja) ディストリビューションcdを使用した、署名されたグループにおけるダイレクトプルーフの秘密鍵を装置に伝達する方法
CN110324315B (zh) 离线鉴权系统及其方法
CN110798310A (zh) 使用准许的区块链向IoT中枢的组件委托
JP2018117185A (ja) 情報処理装置、情報処理方法
CN118606925A (zh) 主机、密码服务管理方法、存储介质及程序
CN116305092B (zh) 一种可信的虚拟化系统的实现方法及系统
CN115549948B (zh) 一种基于可信计算的去中心信任链认证方法、系统及介质
Zhang Truxen: A trusted computing enhanced blockchain
KR102162108B1 (ko) Nfv 환경을 위한 lw_pki 시스템 및 그 시스템을 이용한 통신방법.
CN118214562A (zh) 一种基于tee和tpm机密计算节点的证明服务方法
WO2025163752A1 (ja) 情報処理装置、端末、通信システム、通信方法、及びプログラム

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
C41 Transfer of patent application or patent right or utility model
TR01 Transfer of patent right

Effective date of registration: 20160302

Address after: China Hongkong No. 979 King's road, Quarry Bay Taikoo Place Lincoln building 23 floor

Patentee after: Lenovo International Ltd.

Address before: American New York

Patentee before: International Business Machines Corp.

CX01 Expiry of patent term
CX01 Expiry of patent term

Granted publication date: 20090204