CN106164853A - 使用驻留在外部存储器设备上的芯片限制的指令用于启动序列修改的系统和方法 - Google Patents
使用驻留在外部存储器设备上的芯片限制的指令用于启动序列修改的系统和方法 Download PDFInfo
- Publication number
- CN106164853A CN106164853A CN201580018273.1A CN201580018273A CN106164853A CN 106164853 A CN106164853 A CN 106164853A CN 201580018273 A CN201580018273 A CN 201580018273A CN 106164853 A CN106164853 A CN 106164853A
- Authority
- CN
- China
- Prior art keywords
- instruction
- modified instruction
- described modified
- soc
- mac
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F9/00—Arrangements for program control, e.g. control units
- G06F9/06—Arrangements for program control, e.g. control units using stored programs, i.e. using an internal store of processing equipment to receive or retain programs
- G06F9/44—Arrangements for executing specific programs
- G06F9/4401—Bootstrapping
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/57—Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
- G06F21/575—Secure boot
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3236—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using cryptographic hash functions
- H04L9/3242—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials using cryptographic hash functions involving keyed hash functions, e.g. message authentication codes [MACs], CBC-MAC or HMAC
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F2221/00—Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/21—Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/2129—Authenticate client device independently of the user
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F2221/00—Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/21—Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/2149—Restricted operating environment
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/80—Wireless
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Software Systems (AREA)
- Theoretical Computer Science (AREA)
- General Engineering & Computer Science (AREA)
- General Physics & Mathematics (AREA)
- Computer Hardware Design (AREA)
- Physics & Mathematics (AREA)
- Signal Processing (AREA)
- Computer Networks & Wireless Communication (AREA)
- Power Engineering (AREA)
- Storage Device Security (AREA)
- Stored Programmes (AREA)
Applications Claiming Priority (5)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US201461976491P | 2014-04-07 | 2014-04-07 | |
| US61/976,491 | 2014-04-07 | ||
| US14/267,894 | 2014-05-01 | ||
| US14/267,894 US20150286823A1 (en) | 2014-04-07 | 2014-05-01 | System and method for boot sequence modification using chip-restricted instructions residing on an external memory device |
| PCT/US2015/024407 WO2015157131A2 (en) | 2014-04-07 | 2015-04-05 | System and method for boot sequence modification using chip-restricted instructions residing on an external memory device |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| CN106164853A true CN106164853A (zh) | 2016-11-23 |
Family
ID=54210008
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| CN201580018273.1A Pending CN106164853A (zh) | 2014-04-07 | 2015-04-05 | 使用驻留在外部存储器设备上的芯片限制的指令用于启动序列修改的系统和方法 |
Country Status (7)
| Country | Link |
|---|---|
| US (1) | US20150286823A1 (enExample) |
| EP (1) | EP3134843A2 (enExample) |
| JP (1) | JP2017517795A (enExample) |
| KR (1) | KR20160142319A (enExample) |
| CN (1) | CN106164853A (enExample) |
| BR (1) | BR112016023531A2 (enExample) |
| WO (1) | WO2015157131A2 (enExample) |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN108279935A (zh) * | 2016-12-30 | 2018-07-13 | 北京中科晶上科技股份有限公司 | 一种针对片上系统的操作系统启动引导方法 |
Families Citing this family (9)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US10846099B2 (en) * | 2016-10-07 | 2020-11-24 | Blackberry Limited | Selecting a boot loader on an electronic device |
| JP2018078485A (ja) * | 2016-11-10 | 2018-05-17 | キヤノン株式会社 | 情報処理装置および情報処理装置の起動方法 |
| US11409882B2 (en) * | 2019-12-02 | 2022-08-09 | International Business Machines Corporation | Secure embedded microcontroller image load |
| KR20220156329A (ko) | 2021-05-18 | 2022-11-25 | 삼성전자주식회사 | 전자 장치 및 전자 장치에 보안 부팅을 적용하는 방법 |
| US12537688B2 (en) | 2021-12-23 | 2026-01-27 | Eque Corporation | Systems configured for credential exchange with a dynamic cryptographic code and methods thereof |
| US11570180B1 (en) * | 2021-12-23 | 2023-01-31 | Eque Corporation | Systems configured for validation with a dynamic cryptographic code and methods thereof |
| JP2023105421A (ja) * | 2022-01-19 | 2023-07-31 | キヤノン株式会社 | 情報処理装置および情報処理装置の制御方法 |
| CN116866097A (zh) * | 2022-03-26 | 2023-10-10 | 隆胜(深圳)科技有限公司 | 一种离线式智能家居自组网方法 |
| CN119376804B (zh) * | 2024-12-31 | 2025-04-11 | 中国星网网络应用研究院有限公司 | 芯片启动方法、装置、计算机可读存储介质、计算机程序产品、芯片以及计算设备 |
Citations (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101082939A (zh) * | 2006-05-31 | 2007-12-05 | 中国科学院微电子研究所 | 一种片上系统设计中的复位电路设计方法 |
| US20080086628A1 (en) * | 2006-10-06 | 2008-04-10 | Stephane Rodgers | Method and system for two-stage security code reprogramming |
| US20090019275A1 (en) * | 2007-07-13 | 2009-01-15 | Park Dong-Jin | Secure Boot Method and Semiconductor Memory System Using the Method |
| CN101504692A (zh) * | 2009-03-25 | 2009-08-12 | 炬力集成电路设计有限公司 | 一种验证和测试片上系统的系统及方法 |
| US20120210115A1 (en) * | 2011-02-11 | 2012-08-16 | Park Dong-Jin | Secure Boot Method and Method for Generating a Secure Boot Image |
Family Cites Families (23)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20030159047A1 (en) * | 2000-09-26 | 2003-08-21 | Telefonaktiebolaget L M Ericsson (Publ) | Method of securing and exposing a logotype in an electronic device |
| JP2002259152A (ja) * | 2000-12-26 | 2002-09-13 | Matsushita Electric Ind Co Ltd | フラッシュメモリ書換方法 |
| US6859876B2 (en) * | 2000-12-29 | 2005-02-22 | Hewlett-Packard Development Company, L.P. | System and method for detecting and using a replacement boot block during initialization by an original boot block |
| US7237121B2 (en) * | 2001-09-17 | 2007-06-26 | Texas Instruments Incorporated | Secure bootloader for securing digital devices |
| US6715085B2 (en) * | 2002-04-18 | 2004-03-30 | International Business Machines Corporation | Initializing, maintaining, updating and recovering secure operation within an integrated system employing a data access control function |
| US6907522B2 (en) * | 2002-06-07 | 2005-06-14 | Microsoft Corporation | Use of hashing in a secure boot loader |
| US7142891B2 (en) * | 2003-10-10 | 2006-11-28 | Texas Instruments Incorporated | Device bound flashing/booting for cloning prevention |
| US7500098B2 (en) * | 2004-03-19 | 2009-03-03 | Nokia Corporation | Secure mode controlled memory |
| US8112618B2 (en) * | 2004-04-08 | 2012-02-07 | Texas Instruments Incorporated | Less-secure processors, integrated circuits, wireless communications apparatus, methods and processes of making |
| US8239673B2 (en) * | 2004-04-08 | 2012-08-07 | Texas Instruments Incorporated | Methods, apparatus and systems with loadable kernel architecture for processors |
| US20060294312A1 (en) * | 2004-05-27 | 2006-12-28 | Silverbrook Research Pty Ltd | Generation sequences |
| US7523299B2 (en) * | 2005-07-29 | 2009-04-21 | Broadcom Corporation | Method and system for modifying operation of ROM based boot code of a network adapter chip |
| KR101338477B1 (ko) * | 2006-04-19 | 2013-12-10 | 한국전자통신연구원 | 이동 통신 시스템의 인증키 생성 방법 |
| US8209550B2 (en) * | 2007-04-20 | 2012-06-26 | Telefonaktiebolaget Lm Ericsson (Publ) | Method and apparatus for protecting SIMLock information in an electronic device |
| US9613215B2 (en) * | 2008-04-10 | 2017-04-04 | Nvidia Corporation | Method and system for implementing a secure chain of trust |
| US20100106953A1 (en) * | 2008-10-23 | 2010-04-29 | Horizon Semiconductors Ltd. | Method for patching rom boot code |
| WO2010073444A1 (ja) * | 2008-12-24 | 2010-07-01 | パナソニック株式会社 | バスコントローラ及び初期ブートプログラムのパッチ方法 |
| TWI584625B (zh) * | 2010-04-12 | 2017-05-21 | 內數位專利控股公司 | 網路裝置及用來執行網路裝置的完整性確認的方法 |
| JP2012185606A (ja) * | 2011-03-04 | 2012-09-27 | Denso Wave Inc | 携帯端末 |
| US8775784B2 (en) * | 2011-11-11 | 2014-07-08 | International Business Machines Corporation | Secure boot up of a computer based on a hardware based root of trust |
| US8386763B1 (en) * | 2012-01-04 | 2013-02-26 | Google Inc. | System and method for locking down a capability of a computer system |
| US20140164753A1 (en) * | 2012-12-06 | 2014-06-12 | Samsung Electronics Co., Ltd | System on chip for performing secure boot, image forming apparatus using the same, and method thereof |
| KR102026393B1 (ko) * | 2013-02-22 | 2019-11-04 | 마벨 월드 트레이드 리미티드 | 판독 전용 메모리의 부트 코드 패칭 |
-
2014
- 2014-05-01 US US14/267,894 patent/US20150286823A1/en not_active Abandoned
-
2015
- 2015-04-05 BR BR112016023531A patent/BR112016023531A2/pt not_active IP Right Cessation
- 2015-04-05 EP EP15776312.9A patent/EP3134843A2/en not_active Withdrawn
- 2015-04-05 KR KR1020167029099A patent/KR20160142319A/ko not_active Withdrawn
- 2015-04-05 CN CN201580018273.1A patent/CN106164853A/zh active Pending
- 2015-04-05 WO PCT/US2015/024407 patent/WO2015157131A2/en not_active Ceased
- 2015-04-05 JP JP2016560693A patent/JP2017517795A/ja active Pending
Patent Citations (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101082939A (zh) * | 2006-05-31 | 2007-12-05 | 中国科学院微电子研究所 | 一种片上系统设计中的复位电路设计方法 |
| US20080086628A1 (en) * | 2006-10-06 | 2008-04-10 | Stephane Rodgers | Method and system for two-stage security code reprogramming |
| US20090019275A1 (en) * | 2007-07-13 | 2009-01-15 | Park Dong-Jin | Secure Boot Method and Semiconductor Memory System Using the Method |
| CN101504692A (zh) * | 2009-03-25 | 2009-08-12 | 炬力集成电路设计有限公司 | 一种验证和测试片上系统的系统及方法 |
| US20120210115A1 (en) * | 2011-02-11 | 2012-08-16 | Park Dong-Jin | Secure Boot Method and Method for Generating a Secure Boot Image |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN108279935A (zh) * | 2016-12-30 | 2018-07-13 | 北京中科晶上科技股份有限公司 | 一种针对片上系统的操作系统启动引导方法 |
Also Published As
| Publication number | Publication date |
|---|---|
| WO2015157131A3 (en) | 2016-03-17 |
| KR20160142319A (ko) | 2016-12-12 |
| US20150286823A1 (en) | 2015-10-08 |
| BR112016023531A2 (pt) | 2017-08-15 |
| EP3134843A2 (en) | 2017-03-01 |
| JP2017517795A (ja) | 2017-06-29 |
| WO2015157131A2 (en) | 2015-10-15 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| CN106164853A (zh) | 使用驻留在外部存储器设备上的芯片限制的指令用于启动序列修改的系统和方法 | |
| CN111984962B (zh) | 固件安全验证方法及装置 | |
| US8060748B2 (en) | Secure end-of-life handling of electronic devices | |
| US7917716B2 (en) | Memory protection for embedded controllers | |
| TWI550436B (zh) | 使用可信賴平台模組來啟動政策及保全韌體之技術 | |
| CN105122258B (zh) | 对系统进行配置的方法、计算系统以及物品 | |
| US20090193211A1 (en) | Software authentication for computer systems | |
| CN100530096C (zh) | 用于安全更新和启动代码镜像的方法和装置 | |
| US9990255B2 (en) | Repairing compromised system data in a non-volatile memory | |
| CN106127056A (zh) | 一种国产bmc芯片可信固件的设计方法 | |
| US10742412B2 (en) | Separate cryptographic keys for multiple modes | |
| US20130091394A1 (en) | Data processing apparatus and validity verification method | |
| CN101577907B (zh) | 一种移动终端的管理方法及装置 | |
| EP3923168B1 (en) | Secure boot at shutdown | |
| TW201602835A (zh) | 允許測試金鑰用於bios安裝之技術 | |
| CN102232221A (zh) | 用于检查安全代码的运行时完整性的方法和系统 | |
| CN101888627B (zh) | 一种移动终端及保护其系统数据的方法 | |
| CN103914664A (zh) | 具有内部存储体保护功能的控制器与控制方法 | |
| CN116756730A (zh) | SoC芯片多级流程控制的可信启动方法及硬件可信根 | |
| US11347837B2 (en) | Method and apparatus for enhancing security of vehicle controller | |
| CN112231709B (zh) | 一种带远程升级功能的系统安全设计方法 | |
| JP5759827B2 (ja) | メモリシステム、情報処理装置、メモリ装置、およびメモリシステムの動作方法 | |
| CN114254294B (zh) | 设备安全验证的方法、计算机设备及存储介质 | |
| CN104778053A (zh) | 一种智能卡初始化控制方法及装置 | |
| CN121743115A (zh) | 一种芯片调试方法及装置、电子设备和存储介质 |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| C06 | Publication | ||
| PB01 | Publication | ||
| C10 | Entry into substantive examination | ||
| SE01 | Entry into force of request for substantive examination | ||
| WD01 | Invention patent application deemed withdrawn after publication | ||
| WD01 | Invention patent application deemed withdrawn after publication |
Application publication date: 20161123 |