CN101794362A - Trusted computation trust root device for computer and computer - Google Patents

Trusted computation trust root device for computer and computer Download PDF

Info

Publication number
CN101794362A
CN101794362A CN 201010034553 CN201010034553A CN101794362A CN 101794362 A CN101794362 A CN 101794362A CN 201010034553 CN201010034553 CN 201010034553 CN 201010034553 A CN201010034553 A CN 201010034553A CN 101794362 A CN101794362 A CN 101794362A
Authority
CN
China
Prior art keywords
interface
trust
module
computer
pci
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN 201010034553
Other languages
Chinese (zh)
Inventor
李光
牛峰
吴悠
郝福珍
王江少
张拥政
张淑芬
张心臻
唐海
张玉
张鹏
范耀学
章文康
葛小蔓
张金霞
杨红
郑玉冰
马文龙
吴迪
贾立宗
从秀芳
刘绍方
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huabei Computing Technique Inst
Original Assignee
Huabei Computing Technique Inst
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huabei Computing Technique Inst filed Critical Huabei Computing Technique Inst
Priority to CN 201010034553 priority Critical patent/CN101794362A/en
Publication of CN101794362A publication Critical patent/CN101794362A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Storage Device Security (AREA)

Abstract

The embodiment of the invention provides a trusted computation trust root device for a computer and the computer. The device comprises a circuit board, an interface conversion module and at least one trust root module, wherein the circuit board is connected with an interface, the interface is matched with a PCI (Programmable Communication Interface), a PCI-E interface or a USB interface of a computer motherboard, the interface conversion module and the trust root module are both arranged on the circuit board, the interface conversion module is used for exchanging data between the interface of the circuit board and the PCI interface, the PCI-E interface or the USB interface of the computer, and the trust root module is used for carrying out secret key production and encryption and decryption treatment, storing a secret key and sensitive data and supplying integrity measurement, data safety protection and identity authentication information. The device can be used for an ordinary computer to enable the ordinary computer to have the safety of a trusted computer.

Description

Trusted computation trust root device for computer and computing machine
Technical field
The present invention relates to field of computer technology, particularly relate to a kind of trusted computation trust root device for computer and computing machine.
Background technology
Traditional security means often concentrates on network boundary, and this is that people treat mistaken ideas on the information security issue.In fact, terminal is the source of creating and depositing significant data, and most attacks is all initiated from terminal.Trace sth. to its source, safety problem mainly is dangerous caused by terminal architecture and operating system, for example may cause resource to be free to use, especially run time version can be revised, rogue program can be implanted attacker, destroying even more serious wantonly is that legal users is not carried out strict access control, and the visit of can exceeding one's powers causes dangerous accident.The conventional security means have been overemphasized ease for use, and have ignored security.In traditional system, key and authorization message all directly are stored among internal memory and the hard disk, and the assailant has a lot of methods to obtain them.Cause terminal dangerous.
How to implement high-grade safety precaution for solving from the terminal operation platform; will be with unsafe factor from terminal source Be Controlled; be by Trusted Computing (Trusted Computing at present; TC) technology realizes; Trusted Computing is promptly by introducing safety chip (TPM to computer hardware platforms; Trusted Platform Module; reliable platform module or TCM; Trusted Cryptography Module; credible password module) framework, these secret datas such as key and authorization message are all protected by safety chip (TPM or TCM).The security that improves terminal system by its security feature that provides, thereby in the active defence that has fundamentally realized various unsafe factors.Its core is to set up a kind of faith mechanism between user and computing machine, the network platform.
The computing machine of existing Trusted Computing framework, because safety chip (TPM or TCM) will be set, generally to adopt the mainboard of particular architectures, integrated security chip (TPM or TCM) thereon, or safety chip (TPM or TCM) is installed, thereby form computing machine with Trusted Computing function by special interface is set.And common computing machine is not owing to be provided with safety chip (TPM or TCM) on the mainboard, or do not have the interface of installation safety chip (TPM or TCM), thereby cause to realize Trusted Computing, thereby cause common computing machine can't utilize reliable computing technology to improve security in the use.
Summary of the invention
Based on above-mentioned existing in prior technology problem, the embodiment of the invention provides a kind of trusted computation trust root device for computer and computing machine, solves common computer the problem that safety chip is realized Trusted Computing can't be installed.
The objective of the invention is to be achieved through the following technical solutions:
The embodiment of the invention provides a kind of trusted computation trust root device for computer, comprising:
Circuit board, interface modular converter and at least one root of trust module;
Described circuit board is provided with interface, and the pci interface of described interface and computer motherboard or PCI-E interface or USB interface are complementary; Described interface modular converter and root of trust module all are arranged on the circuit board;
Described interface modular converter is used for each module is carried out exchanges data through the pci interface of the interface of described circuit board and computing machine or PCI-E interface or USB interface;
Described root of trust module is used to carry out key generation, encryption and decryption processing, and storage key and sensitive data, provides integrity measurement, data security protecting and authentication information.
The embodiment of the invention also provides a kind of computing machine, comprising:
Main frame, trusted computation trust root device, memory storage, input media and output unit; Wherein trusted computation trust root device adopts above-mentioned trusted computation trust root device;
Described memory storage, input media and output unit all with described main frame in mainboard be electrically connected; Described trusted computation trust root device is connected to the PCI slot of mainboard in the described main frame or PCI-E slot or USB interface and is electrically connected with described mainboard.
From the technical scheme that the invention described above embodiment provides as can be seen, by interface modular converter, identification module, main control module and at least one root of trust module being set on the circuit board of interface having to be complementary, form the trusted computation trust root device that uses on a kind of pci interface that is connected to the common computer mainboard or PCI-E interface or the USB interface in the embodiment of the invention with the pci interface of computing machine or PCI-E interface or USB interface.Utilize this trusted computation trust root device to make common computer increase the Trusted Computing function, make common computer possess the security of trusted computer in better simply mode.
Description of drawings
The structured flowchart of the trusted computation trust root device that Fig. 1 provides for the embodiment of the invention one;
The structured flowchart of the another kind of trusted computation trust root device that Fig. 2 provides for the embodiment of the invention one;
The structured flowchart of the trusted computation trust root device that Fig. 3 provides for the embodiment of the invention two;
The structured flowchart of the another kind of trusted computation trust root device that Fig. 4 provides for the embodiment of the invention two;
The structural representation of the computing machine that Fig. 5 provides for the embodiment of the invention three.
Embodiment
The invention will be further described below in conjunction with the drawings and specific embodiments.
Embodiment one
Present embodiment one provides a kind of trusted computation trust root device for computer, is applied in the common computer, makes common computer possess the Trusted Computing function, and as shown in Figure 1, this trusted computation trust root device comprises:
Circuit board 1, interface modular converter 3 and at least one root of trust module 4;
Wherein, described circuit board 1 is provided with interface 2, and interface 2 can adopt pci interface or PCI-E interface or USB interface, and the pci interface of it and computer motherboard or PCI-E interface (being PCI slot or the PCI-E slot on the computer motherboard) or USB interface are complementary; When interface 2 adopts pci interface or PCI-E interface, generally be to be electrically connected pci interface or the PCI-E interface that forms by the golden finger that printing on interface module and the circuit board forms, wherein the golden finger on the circuit board has been realized and the physics compatibility of PCI slot or PCI-E slot, and interface module then realizes and the PCI slot of computer motherboard or the compatibility on the PCI-E slot data exchange agreement; When interface 2 adopts USB interface, generally be to be electrically connected the USB interface that forms with USB plug by interface module, wherein USB plug has realized the physics compatibility with the USB interface of computer motherboard, and interface module then realizes the compatibility on the USB interface data exchange agreement with computer motherboard;
Interface modular converter 3 in the above-mentioned trusted computation trust root device and root of trust module 4 all are arranged on the circuit board 1;
Described interface modular converter 3 is electrically connected with interface 2 and each module of circuit board 1 respectively, is used for each module (root of trust module 4) is carried out exchanges data through the pci interface of the interface 2 of described circuit board 1 and computing machine or PCI-E interface or USB interface; This interface modular converter 3 can adopt the asic chip with pci interface or PCI-E interface or usb function; Or adopt CPLD chip or fpga chip, and on CPLD chip or fpga chip, realize pci interface or PCI-E interface bridge function or usb function with IP kernel;
Described root of trust module 4 is the chips that can independently carry out key generation, encryption and decryption; inside has the chip of separate processor and storage unit; general TPM chip or the TCM chip of adopting; but this root of trust module 4 storage keys and sensitive data; for the computing platform at place provides integrity measurement, data security protecting and authentication service.As shown in Figure 2, the root of trust module generally can be provided with a plurality of, and each root of trust module can be respectively applied for data processing that Trusted Computing is provided and the storage for the different rights user.
When the interface in the above-mentioned trusted computation trust root device adopts USB interface, can be made into the form of built-in device or external device, be connected with common computer, make common computer possess the function of trusted computer by USB interface; When the product that connect in the above-mentioned trusted computation trust root device adopted pci interface or PCI-E interface, this trust root device can be made into the integrated circuit board form, was inserted on the PCI slot of common computer mainboard or the PCI-E slot to use, and had advantage easy to use.
When above-mentioned trusted computation trust root device uses, can be connected on the PCI slot or PCI-E slot or USB interface of common computer mainboard; After computing machine powers up, trusted computation trust root device starts, after computer BIOS starts, can normally visit corresponding root of trust module on the trusted computation trust root device, after from trust plate module, obtaining the root of trust data, normally start, start-up course afterwards is consistent with general trusted computer start-up mode.And, can realize user's the identification and the scheduling of a plurality of root of trust modules further by integrated identification and Control Software in BIOS or booting operating system program (OS Loader).
The trust root device that the embodiment of the invention provides, since possess with the common computer mainboard on PCI slot or the interface that is complementary of PCI E slot or USB interface, can be connected to easily on the common computer mainboard and use, need not to redesign computer motherboard, as long as install, upgrade and carry out the corresponding software of Trusted Computing, can make common computer realize all functions of trusted computer.And, when a plurality of root of trust modules (polylith TPM chip or TCM chip promptly are provided) are set on a trusted computation trust root device, each operating system on the dummy machine system of operation be can satisfy on computers and the demand of a root of trust chip, the security of multiple operating system on the raising virtual machine independently used.
Embodiment two
Present embodiment two provides a kind of trusted computation trust root device for computer, be applied in the common computer, make common computer possess the Trusted Computing function, the trust root device that provides in the structure of this trust root device and the foregoing description one is basic identical, the trust root device of different is present embodiment also is provided with identification module 5 and main control module 6, as shown in Figure 3, the identification module 5 of this trust root device and main control module 6 all are arranged on the circuit board 1, identification module 5 and main control module 6 are electrically connected with interface modular converter 3 respectively, main control module 6 respectively with identification module 5, each root of trust module is electrically connected;
Described identification module 5 is used for user's identity is discerned, and the user profile of confirming after will discerning transfers to described main control module 6; This identification module 4 can adopt any in the identity recognition devices such as fingerprint identification module, iris recognition module, USB KEY identification module, smart card (IC-card) identification module;
Described main control module 6 is used for opening corresponding root of trust module according to the authority of the user profile of the affirmation of described identification module 5, realizes a plurality of root of trust modules are carried out schedule access; This main control module 6 can adopt asic chip; Or adopt CPLD chip or fpga chip, and on CPLD chip or fpga chip, realize control function with IP kernel.
Root of trust module in the trust root device of present embodiment generally also can be provided with a plurality of, is electrically connected with described main control module 6 and interface modular converter 3 respectively, and each root of trust module is respectively applied for data processing that Trusted Computing is provided and the storage for the different rights user.
In the above-mentioned trust root device non-volatile memory module 7 can also be set, it is electrically connected with main control module 6 and interface modular converter 3 respectively, when being used for the root of trust module stores insufficient space when main control module 6 control, data after the root of trust module encrypt are stored, and the safe read-write of this non-volatile memory module 7 is by main control module 6 controls.These non-volatile memory module 7 general Flash chips that adopt are to limited the replenishing in the root of trust module stores space in this trust root device.
Interface modular converter 3 can be arranged on separately on the circuit board 1 in the above-mentioned trust root device, is electrically connected with interface 2 and each module; This interface modular converter 3 also can be arranged in the main control module 6 (referring to Fig. 4), realizes being electrically connected with interface 2 and each module by main control module 6, promptly realizes the function of two modules (being main control module and interface modular converter) in a main control module 6.This interface modular converter 3 mainly provides root of trust module 4, identification module 5 is connected with interface 2 (being pci interface or PCI-E interface or USB interface), realize each module of compatible other form interface compatible mutually by this interface modular converter 3 with interface 2 (being pci interface or PCI-E interface or USB interface), as root of trust chip TPM or TCM external interface are the LPC interfaces mostly at present, can't be directly be connected, and can realize that by interface modular converter 3 root of trust chip and pci interface or PCI-E interface or USB interface are connected with pci interface or PCI-E interface or USB interface; Identification module 5 generally provides serial ports or USB interface, also can't directly be connected with pci interface or PCI-E interface, and can realize that by interface modular converter 3 identification module is connected with pci interface or PCI-E interface.Also can be in the main control module 6 of integrated interface modular converter 3 interface module (referring to Fig. 4) of integrated interface 2, as can be in a CPLD or FPGA the interface module of integrated main control module, interface modular converter 3 and interface 2, the integrated function of three modules in a main control module like this, improve integrated level, also be convenient to reduce the cost of entire equipment.
When the interface in the above-mentioned trusted computation trust root device adopts USB interface, can be made into the form of built-in device or external device, be connected with common computer, make common computer possess the function of trusted computer by USB interface; When the product that connect in the above-mentioned trusted computation trust root device adopted pci interface or PCI-E interface, this trust root device can be made into the integrated circuit board form, was inserted on the PCI slot of common computer mainboard or the PCI-E slot to use, and had advantage easy to use.
When above-mentioned trusted computation trust root device uses, can be connected on the PCI slot or PCI-E slot or USB interface of common computer mainboard, after computing machine powers up, the user at first needs to carry out authentication by the identification module on the trusted computation trust root device, after authentication is passed through, main control module is opened corresponding root of trust module according to user's authority, computer BIOS starts, can normally visit corresponding root of trust module, after from trust plate module, obtaining the root of trust data, normally start, start-up course afterwards is consistent with general trusted computer start-up mode.
The trust root device that the embodiment of the invention provides, since possess with the common computer mainboard on PCI slot or the interface that is complementary of PCI-E slot or USB interface, can be connected to easily on the common computer mainboard and use, need not to redesign computer motherboard, as long as install, upgrade and carry out the corresponding software of Trusted Computing, can make common computer realize all functions of trusted computer.Utilize this trust root device, make that common computer is to finish to user's identification in trust root device, software can't directly touch this trust root device on the computing machine, thereby has improved the security of identification.And, when a plurality of root of trust modules (polylith TPM chip or TCM chip promptly are provided) are set on a trust root device, each operating system on the dummy machine system of operation be can satisfy on computers and the demand of a root of trust chip, the security of multiple operating system on the raising virtual machine independently used.
Embodiment three
Present embodiment three provides a kind of computing machine, and as shown in Figure 5, this computing machine comprises:
Main frame 21, trusted computation trust root device 25, memory storage (not shown), input media 22 and output unit 23; Wherein be provided with mainboard 24 in the main frame 21, described trusted computation trust root device 25 adopts the trusted computation trust root device that provides in the foregoing description one;
Described memory storage, input media 22 and output unit 23 all are electrically connected with mainboard 24 in the described main frame 21; Described trusted computation trust root device 25 is connected on the PCI slot of mainboards 24 in the described main frame 21 or PCI-E slot or the USB interface and is electrically connected with described mainboard 24.
This computing machine and common hardware structure of computer are basic identical, different is that this computing machine also comprises trusted computation trust root device, on the PCI slot or PCI-E slot or USB interface that trusted computation trust root device are connected to mainboard in the main frame, thereby make this computing machine with the cooperation of corresponding software under, possessed the security of trusted computer.
The above; only for the preferable embodiment of the present invention, but protection scope of the present invention is not limited thereto, and anyly is familiar with those skilled in the art in the technical scope that the present invention discloses; the variation that can expect easily or replacement all should be encompassed within protection scope of the present invention.Therefore, protection scope of the present invention should be as the criterion with the protection domain of claims.

Claims (10)

1. a trusted computation trust root device for computer is characterized in that, comprising:
Circuit board, interface modular converter and at least one root of trust module;
Described circuit board is provided with interface, and the pci interface of described interface and computer motherboard or PCI-E interface or USB interface are complementary; Described interface modular converter and root of trust module all are arranged on the circuit board;
Described interface modular converter is used for each module is carried out exchanges data through the pci interface of the interface of described circuit board and computing machine or PCI-E interface or USB interface;
Described root of trust module is used to carry out key generation, encryption and decryption processing, and storage key and sensitive data, provides integrity measurement, data security protecting and authentication information.
2. trusted computation trust root device for computer as claimed in claim 1 is characterized in that, described root of trust module can be a plurality of, is respectively applied for alignment processing different rights user's secure data.
3. trusted computation trust root device for computer as claimed in claim 1 or 2 is characterized in that, described trust root device also comprises: identification module and main control module; Described identification module and main control module all are arranged on the described circuit board, are electrically connected with described interface modular converter respectively;
Described identification module is used for user's identity is discerned, and the user profile of confirming after will discerning transfers to described main control module;
Described main control module, the authority that is used for the user profile confirmed according to described identification module is opened corresponding root of trust module.
4. trusted computation trust root device for computer as claimed in claim 3, it is characterized in that, described trust root device also comprises: the non-volatile memory module, be electrically connected with described main control module, when being used for the root of trust module stores insufficient space when described master control module controls, the data after the storage root of trust module encrypt.
5. trusted computation trust root device for computer as claimed in claim 3 is characterized in that, described identification module adopts any in fingerprint identification module, iris recognition module, USB KEY identification module, the smartcard identification module.
6. trusted computation trust root device for computer as claimed in claim 3 is characterized in that, described main control module adopts asic chip; Or described main control module adopts CPLD chip or the fpga chip of realizing control function by IP kernel thereon.
7. trusted computation trust root device for computer as claimed in claim 1 is characterized in that, described interface modular converter is arranged on separately on the described circuit board, is electrically connected with interface and each module of described circuit board; Perhaps, described interface modular converter is arranged in the described main control module, is electrically connected with interface and each module of described circuit board by main control module.
8. as claim 1,2 or 7 each described trusted computation trust root device for computer, it is characterized in that described interface modular converter adopts the asic chip of pci interface or PCI-E interface or USB interface; Or described interface modular converter adopts CPLD chip or the fpga chip of realizing pci interface or PCI-E interface or usb function by IP kernel thereon.
9. trusted computation trust root device for computer as claimed in claim 1 is characterized in that, described root of trust module adopts TPM chip or TCM chip.
10. a computing machine is characterized in that, comprising:
Main frame, trusted computation trust root device, memory storage, input media and output unit; Wherein trusted computation trust root device adopts aforesaid right to require each described trusted computation trust root device in 1~9;
Described memory storage, input media and output unit all with described main frame in mainboard be electrically connected; Described trusted computation trust root device is connected to the PCI slot of mainboard in the described main frame or PCI-E slot or USB interface and is electrically connected with described mainboard.
CN 201010034553 2010-01-22 2010-01-22 Trusted computation trust root device for computer and computer Pending CN101794362A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 201010034553 CN101794362A (en) 2010-01-22 2010-01-22 Trusted computation trust root device for computer and computer

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 201010034553 CN101794362A (en) 2010-01-22 2010-01-22 Trusted computation trust root device for computer and computer

Publications (1)

Publication Number Publication Date
CN101794362A true CN101794362A (en) 2010-08-04

Family

ID=42587048

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 201010034553 Pending CN101794362A (en) 2010-01-22 2010-01-22 Trusted computation trust root device for computer and computer

Country Status (1)

Country Link
CN (1) CN101794362A (en)

Cited By (15)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102012985A (en) * 2010-11-19 2011-04-13 国网电力科学研究院 Sensitive data dynamic identification method based on data mining
CN105307109A (en) * 2015-11-19 2016-02-03 上海斐讯数据通信技术有限公司 USB (Universal Serial Bus) wireless connector, wireless connection system and USB wireless communication method
CN105653995A (en) * 2015-09-01 2016-06-08 刘晓建 Repeatedly-use dependable computing apparatus of common computer man-computer interaction equipment
CN106324864A (en) * 2016-11-23 2017-01-11 上海擎感智能科技有限公司 Intelligent glasses, configuration method thereof and configuration method
CN106341224A (en) * 2016-07-20 2017-01-18 国网安徽省电力公司信息通信分公司 Customized server-based TCM application system and system guidance method
CN106529221A (en) * 2016-11-22 2017-03-22 北京中金国信科技有限公司 FPGA program copying prevention method and PCI-E password card
CN106844241A (en) * 2017-02-27 2017-06-13 郑州云海信息技术有限公司 A kind of safety card, security card slot and board
CN106933764A (en) * 2017-03-31 2017-07-07 山东超越数控电子有限公司 A kind of credible password module and its method of work based on domestic TCM chips
CN108140092A (en) * 2015-12-02 2018-06-08 密码研究公司 Equipment with multiple trusted roots
CN109117638A (en) * 2018-07-13 2019-01-01 中国电子科技集团公司第三十研究所 A kind of credible and secure mainboard of height and its control method based on physics switching
CN109426736A (en) * 2017-08-22 2019-03-05 鸿富锦精密工业(武汉)有限公司 Credible main board system
CN111538993A (en) * 2020-04-16 2020-08-14 南京东科优信网络安全技术研究院有限公司 Device and method for performing credibility measurement by introducing external hardware trust root
CN114090488A (en) * 2021-11-11 2022-02-25 深圳市同泰怡信息技术有限公司 Credibility measurement expansion board, basic input and output system, credibility measurement method and device
WO2022237551A1 (en) * 2021-05-12 2022-11-17 华为技术有限公司 Secure boot device and method
CN117155714A (en) * 2023-10-31 2023-12-01 苏州元脑智能科技有限公司 Communication device, method, system, apparatus, medium, encryption system, and server

Cited By (19)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102012985B (en) * 2010-11-19 2013-12-25 国网电力科学研究院 Sensitive data dynamic identification method based on data mining
CN102012985A (en) * 2010-11-19 2011-04-13 国网电力科学研究院 Sensitive data dynamic identification method based on data mining
CN105653995A (en) * 2015-09-01 2016-06-08 刘晓建 Repeatedly-use dependable computing apparatus of common computer man-computer interaction equipment
CN105307109A (en) * 2015-11-19 2016-02-03 上海斐讯数据通信技术有限公司 USB (Universal Serial Bus) wireless connector, wireless connection system and USB wireless communication method
CN108140092A (en) * 2015-12-02 2018-06-08 密码研究公司 Equipment with multiple trusted roots
CN106341224A (en) * 2016-07-20 2017-01-18 国网安徽省电力公司信息通信分公司 Customized server-based TCM application system and system guidance method
CN106529221A (en) * 2016-11-22 2017-03-22 北京中金国信科技有限公司 FPGA program copying prevention method and PCI-E password card
CN106529221B (en) * 2016-11-22 2019-03-19 北京中金国信科技有限公司 A kind of FPGA program anti-copy method and PCI-E cipher card
CN106324864A (en) * 2016-11-23 2017-01-11 上海擎感智能科技有限公司 Intelligent glasses, configuration method thereof and configuration method
CN106844241A (en) * 2017-02-27 2017-06-13 郑州云海信息技术有限公司 A kind of safety card, security card slot and board
CN106933764A (en) * 2017-03-31 2017-07-07 山东超越数控电子有限公司 A kind of credible password module and its method of work based on domestic TCM chips
CN109426736A (en) * 2017-08-22 2019-03-05 鸿富锦精密工业(武汉)有限公司 Credible main board system
CN109117638A (en) * 2018-07-13 2019-01-01 中国电子科技集团公司第三十研究所 A kind of credible and secure mainboard of height and its control method based on physics switching
CN111538993A (en) * 2020-04-16 2020-08-14 南京东科优信网络安全技术研究院有限公司 Device and method for performing credibility measurement by introducing external hardware trust root
WO2021208354A1 (en) * 2020-04-16 2021-10-21 南京东科优信网络安全技术研究院有限公司 Apparatus and method for performing trusted measurement by introducing external hardware root of trust
WO2022237551A1 (en) * 2021-05-12 2022-11-17 华为技术有限公司 Secure boot device and method
CN114090488A (en) * 2021-11-11 2022-02-25 深圳市同泰怡信息技术有限公司 Credibility measurement expansion board, basic input and output system, credibility measurement method and device
CN117155714A (en) * 2023-10-31 2023-12-01 苏州元脑智能科技有限公司 Communication device, method, system, apparatus, medium, encryption system, and server
CN117155714B (en) * 2023-10-31 2024-02-09 苏州元脑智能科技有限公司 Communication device, method, system, apparatus, medium, encryption system, and server

Similar Documents

Publication Publication Date Title
CN101794362A (en) Trusted computation trust root device for computer and computer
CN201820230U (en) Computer and trusted-computing trusted root equipment for same
US9495524B2 (en) Secure user authentication using a master secure element
EP3582129B1 (en) Technologies for secure hardware and software attestation for trusted i/o
CN103703470B (en) System and method for power-on user authentication
US20090132816A1 (en) PC on USB drive or cell phone
CN102063591B (en) Methods for updating PCR (Platform Configuration Register) reference values based on trusted platform
US20050228993A1 (en) Method and apparatus for authenticating a user of an electronic system
CN100432890C (en) Computer starting up identifying system and method
CN100437618C (en) Portable information safety device
CN202362788U (en) Dependable computing device with USB (Universal Serial Bus) interfaces
Dietrich et al. Implementation aspects of mobile and embedded trusted computing
CN101276384A (en) Security control chip and implementing method thereof
CN104969180A (en) User authorization and presence detection in isolation from interference from and control by host central processing unit and operating system
US10747885B2 (en) Technologies for pre-boot biometric authentication
CN101673330A (en) BIOS-based computer security protection method and system
CN102024115B (en) Computer with user security subsystem
US10366025B2 (en) Systems and methods for dual-ported cryptoprocessor for host system and management controller shared cryptoprocessor resources
CN111435396A (en) Intelligent safety master control
US20060112423A1 (en) Secure authentication using a low pin count based smart card reader
CN103823692B (en) A kind of computer operating system starting method
CN103617128B (en) A kind of embedded system and the implementation method of SOS
CN103593596A (en) USB KEY for collecting external biological characteristics
CN201845340U (en) Safety computer provided with user safety subsystem
CN203300226U (en) High-security secret key USB flash disk

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C12 Rejection of a patent application after its publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20100804