WO2011163263A2 - System and method for n-ary locality in a security co-processor - Google Patents
System and method for n-ary locality in a security co-processor Download PDFInfo
- Publication number
- WO2011163263A2 WO2011163263A2 PCT/US2011/041294 US2011041294W WO2011163263A2 WO 2011163263 A2 WO2011163263 A2 WO 2011163263A2 US 2011041294 W US2011041294 W US 2011041294W WO 2011163263 A2 WO2011163263 A2 WO 2011163263A2
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- security
- computing system
- processor module
- mode
- current
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/70—Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer
- G06F21/71—Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure computing or processing of information
- G06F21/74—Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure computing or processing of information operating in dual or compartmented mode, i.e. at least one secure mode
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/57—Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F2221/00—Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/21—Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/2111—Location-sensitive, e.g. geographical location, GPS
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F2221/00—Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/21—Indexing scheme relating to G06F21/00 and subgroups addressing additional information or applications relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/2151—Time stamp
Definitions
- the present invention relates generally to computer security and trusted computing, and more specifically, to expanding locality in a computing system environment.
- TPMs trusted platform modules
- Locality typically means that there is an identification of a software environment present in a computing system corresponding with a "machine mode" of the system.
- Machine modes can include one or more of the version of microcode running on the system, regular macrocode (e.g., the Basic Input/Output System (BIOS), and a static operating system (OS)), a trusted operational environment (e.g., a hypervisor from a third party to support trusted execution technologies), and other hardware-driven indicia.
- regular macrocode e.g., the Basic Input/Output System (BIOS)
- OS static operating system
- trusted operational environment e.g., a hypervisor from a third party to support trusted execution technologies
- other hardware-driven indicia e.g., a hypervisor from a third party to support trusted execution technologies
- the security co-processor module is typically used to provide security operations for software running on the computing system. Binding of the software environment with the machine mode can be used to provide additional security. However, limiting system operations using only the machine mode binding may be insufficient in some circumstances.
- Figure 1 is a diagram of data input to a security co-processor module for enhanced locality according to an embodiment of the present invention
- Figure 2 is a diagram illustrating a processing system having a security coprocessor module according to an embodiment of the present invention
- Figure 3 is a flow diagram illustrating initialization of the security co-processor module according to an embodiment of the present invention.
- Figure 4 is a flow diagram illustrating security policy processing of the security coprocessor module according to an embodiment of the present invention.
- One of the features provided for in a trusted computing system is obtaining a measurement of the current environment of the computing system.
- This measurement includes, at least in part, a cryptographic hash of the firmware and the operating system (OS).
- the measurement may also include hashes of other software components.
- the measurement may be used for sealed storage and can also be used for reporting on the environment to an external party.
- the current environment may also be known as the machine mode.
- Embodiments of the present invention enhance the security co-processor module and the concept of locality based on machine mode by including additional attributes in the measurement of the current environment of the computing system.
- additional attributes are that overall security and control of the computing system may be improved.
- a security co-processor module processes the additional attributes when determining the measurement.
- the additional attributes for purposes of measurement in this context are not handled by other software executing on the computing system (e.g., application programs, the OS, or BIOS). This avoids having vulnerable, higher level software participate in measurement using the additional attributes and expose possible attack points to a hacker.
- the security co-processor module comprises a Trusted Platform Module (TPM)
- TPM Trusted Platform Module
- TPM provides protected storage, execution, and a well defined enrollment/registration mechanism.
- One embodiment of the present invention defines a broad access control space S, S having one or more sets S_i, where the locality attributes comprise an N-tuple of ⁇ Machine Mode M, Trusted Time T, Location L>, or ⁇ M_i, T_i, L_i> for all values of i. That is, the current trusted time and the current geographic location of the computing system may be included with the machine mode in the measurement.
- the value i may indicate a selected one of a set of measurements in the access control space S.
- Each S i in S may indicate an acceptable combination of machine mode, trusted time, and location whereby further operations of the computing system by higher level software (such as the OS and application programs) may be performed.
- the access control space S may be further extended to include another information item called a hardware vendor string.
- the hardware vendor string may comprise a bit string of arbitrary length and composition, and may uniquely identify one or more of the hardware vendor of the computing system, the security co-processor module, the processor of the computing system, and/or other hardware system components.
- the hardware vendor string may be used by the security co-processor for attestation purposes.
- the access control space S in this embodiment may be ⁇ Machine Mode M, Trusted Time T, Location L, Hardware Vendor String HVS>, or ⁇ M_i, T_i, L_i, HSV_i> for all values of i.
- the access control space S may be further extended to include additional attributes such as environmental factors.
- Environmental factors may include such data items as temperature, acceleration, capacitance, elevation, and orientation of the computing system. Other environmental factors may also be included. In one embodiment, the environmental factors may be used by the security co-processor module for assisting in controlling the use of the computer system.
- the access control space S in this embodiment may be ⁇ Machine Mode M, Trusted Time T, Location L, Hardware Vendor String HVS, Environmental Factors EF>, or ⁇ M_i, T_i, L_i, HSV_i, EF_i> for all values of i.
- Environmental Factors may include one or more of the attributes listed above (temperature, acceleration, capacitance, elevation, and orientation).
- access control space S may comprise any combination of the above identified attributes.
- FIG. 1 is a diagram of data input to a security co-processor module for enhanced locality according to an embodiment of the present invention.
- Security co-processor module 100 provides trusted computing services and operations to a computing system.
- security co-processor module 100 comprises a Trusted Platform Module (TPM).
- TPM Trusted Platform Module
- other types of security co-processor modules may be used.
- other security co-processors include the International Business Machines (IBM) 4758 PCI Cryptographic Co-Processor, commercially available from IBM, and the Texas Instruments (TI) M-Shield, commercially available from TI.
- IBM International Business Machines
- TI Texas Instruments
- a TPM has been defined by the Trusted Computing Group (TCG) in the Trusted Computing Platform Association (TCPA) Main Specification 1.2, February 2002, and successive versions, available from the TCG.
- TCG Trusted Computing Group
- TCPA Trusted Computing Platform Association
- a TPM operates somewhat like a "smart card" on a motherboard of a computing system (such as a desktop or laptop personal computer (PC), a mobile computing device, a cellular phone, or other computing device), to provide various security functions to the system.
- the TPM includes at least one public/private key pair for use in cryptographic operations, can generate anonymous key pairs for use by other entities within the system, can perform encryption and decryption operations, can sign and verify data, and can establish a root of trust for the system.
- the TPM is considered to be difficult to break into and affect its operations.
- the TPM which is used as a root of trust for a computing platform, has a set of Platform Configuration Registers (PCRs), and at least one public/private key pair.
- PCRs Platform Configuration Registers
- a root of trust component will load a software module, compute the hash of the software module, send the hash to a PCR, and then transfer control to that software module.
- the software module may then repeat this process with a new software module, and may send the hash of the new software module to a new PCR, or it may extend the hash of a PCR that was previously used. This process may be repeated many times. In the end, there are one or more PCRs that have a measurement of all the software that is in control of the trusted computing environment.
- the TPM may encrypt a portion of data called a blob, which consists of a set of PCR values and a secret. Later, when the blob is presented to the TPM for decryption, the TPM will decrypt it, and check whether the PCR values specified in the blob are the same as the PCR values that are currently stored in the PCRs in the TPM. Only if this check passes will the TPM release the decrypted secret to the platform. Thus the sealed secret is only available to the computing environment specified by the blob. If some other environment has launched on the computing platform, then the TPM will not release the secret.
- the processing system when the processing system is booted up, during the boot sequence measurements of various software components (such as the BIOS, option ROMs, and so on) may be registered into one or more PCRs. This is known as the machine mode.
- the measurement comprises a cryptographic hash of the code of one or more of the software components.
- security co-processor module 100 In order to bind data to a current machine mode, security co-processor module 100 accepts machine mode 106 and data 102 as input data. Using known cryptographic operations, the security co-processor module binds the machine mode to the data to produce bound data 104. Other software components may then infer trust in the bound data due to the security co-processor module's operations.
- Geographic location 108 may be included as an attribute in the access control space.
- a current geographic location of the computing system may be obtained from a global positioning system (GPS) component of the computing system according to well known methods. The current geographic location of the computing system may be used to control operations of the computing system depending on where the system is and what rules have been set up by a system administrator regarding location and system usage.
- GPS global positioning system
- Trusted time 1 10 may also be included as an attribute in the access control space. Obtaining a value for time that can be trusted in a computing system is desirable. For example, trusted time may be used in conjunction with other processing to improve the robustness of content protection mechanisms to assure that premium content is available for the digital home. It may be used in a content protection environment to assure that the computing platform owner downloads a revocation list of compromised keys on a periodic basis. It may also be used to provide a secure way to enable content to be purchased for access during a temporary time window. However, if the time value can be modified by an unscrupulous user without detection by the computing system, then computer security and content protection systems may be compromised.
- TPM Trusted Platform Module
- trusted time may be provided as disclosed in the US patent application entitled "Method for Providing Trusted Time in a
- a hardware vendor string 112 may also be included as an attribute in the access control space.
- the hardware vendor string may comprise a bit string of arbitrary length and composition, and may uniquely identify one or more of the hardware vendor of the computing system, the security co-processor module, the processor of the computing system, and/or other hardware system components.
- One or more environmental factors 1 14 may also be included as attributes in the access control space. Environment conditions such as temperature, acceleration, capacitance, elevation, and orientation of the computing system may be determined and/or sensed by appropriate known devices and sensors and input to the security co-processor module.
- Sample computing system 200 may be used, for example, to execute the processing for embodiments of the present invention.
- Sample system 200 is representative of processing systems based on the PENTIUM®, CORE, CORE DUO, CORE QUAD, or Celeron® family of processors available from Intel Corporation, although other systems (including personal computers (PCs) or servers having other processors, engineering workstations, other set-top boxes, mobile computing devices, handheld computing devices, cellular phones, and the like) and architectures may also be used.
- FIG. 2 is a block diagram of a system 200 of one embodiment of the present invention.
- the system 200 includes a processor 202 that processes data signals.
- Processor 202 may be coupled to a processor bus 204 that transmits data signals between processor 202 and other components in the system 200.
- System 200 includes a memory 206.
- Memory 206 may store instructions and/or data represented by data signals that may be executed by processor 202.
- the instructions and/or data may comprise code for performing any and/or all of the techniques of the present invention.
- Memory 206 may also contain additional software and/or data such as hardware vendor string 232.
- a bridge/memory controller 210 may be coupled to the processor bus 204 and memory 206.
- the bridge/memory controller 210 directs data signals between processor 202, memory 206, and other components in the system 200 and bridges the data signals between processor bus 204, memory 206, and a first input/output (I/O) bus 208.
- graphics device 214 interfaces to a display device (not shown) for displaying images rendered or otherwise processed by the graphics device 214 to a user.
- First I/O bus 208 may comprise a single bus or a combination of multiple buses. First I/O bus 208 provides communication links between components in system 200.
- a security co-processor module 216 (such as a TPM, for example) may be coupled to bus bridge 212.
- Security co-processor module may include PCRs 217, at least one security policy 228, and a security mode 230.
- the security mode may specify operation of the security co-processor module in either a normal mode or an enhanced mode.
- the security policy may specify how the access control space attributes may be used to provide increased security and control of the computing system.
- the security co-processor module may include the hardware vendor string 232 stored thereon.
- a second I/O bus 220 may comprise a single bus or a combination of multiple buses.
- the second I/O bus 220 provides communication links between components in system 200.
- additional devices may be coupled to the second I/O bus to provide additional attributes to the security co-processor module.
- a GPS device 222 may be included to provide current geographic location data.
- a trusted time device 224 may be included to provide the current trusted time.
- One or more environmental factors devices 226 may be included to provide the environmental factors data. For example, sensing devices for temperature, acceleration, capacitance, elevation, orientation, or other factors may be included.
- Embodiments of the present invention are related to the use of the system 200 as a component in a processing system. According to one embodiment, such processing may be performed by the system 200 in response to processor 202 executing sequences of instructions in memory 206. Such instructions may be read into memory 206 from another computer-readable medium. Execution of the sequences of instructions causes processor 202 to execute processing for the application according to embodiments of the present invention. In an alternative embodiment, hardware circuitry may be used in place of or in combination with software instructions to implement portions of embodiments of the present invention. Thus, the present invention is not limited to any specific combination of hardware circuitry and software.
- FIG. 3 is a flow diagram illustrating initialization of the security co-processor module according to an embodiment of the present invention.
- the security co-processor module determines if obtaining and using geographic location is enabled as a capability for the computing system. If so, at block 304, the security co-processor module adds geographic location as an entry in the security policy 228. If not, the security co-processor module at block 306 determines if obtaining and using trusted time is enabled as a capability for the computing system. If so, at block 308, the security co-processor module adds trusted time as an entry in the security policy.
- the security co-processor module at block 310 determines if obtaining and using a hardware vendor string is enabled as a capability for the computing system. If so, at block 312, the security co-processor module adds the hardware vendor string as an entry in the security policy. If not, the security co-processor module at block 314 determines if obtaining and using one or more environmental factors is enabled as a capability for the computing system. If so, at block 316, the security coprocessor module adds the relevant environmental factors as an entry in the security policy. If any of the geographic location, trusted time, hardware vendor string, or environmental factors is enabled, then the security mode 230 may be set to enhanced at block 320. Otherwise, the security mode may be set to normal.
- Further initialization processing for the security co-processor module according to the selected security mode may be performed at block 322.
- the processing in 322 may include, but is not limited to, effecting security-sensitive operations, such as 1) generating a random number; 2) cryptographic signing; 3) cryptographic verification; 4) sealing (encrypt against environment factor); 5) unsealing (decrypting against environment factor); and 6) quote (sign object from remote attestation).
- the order of checking for the various attributes may be changed.
- the security co-processor module may reference previously stored specific conditions of usage and acceptable values for that attribute, or may provide the capability to securely set those conditions. For example, the acceptable range of geographic locations at which the computing system may be operated at may be set. In one embodiment, setting of the conditions of usage and acceptable values may be performed after security co-processor module initialization is complete by a system administrator via a secure firmware mechanism.
- FIG. 4 is a flow diagram illustrating security policy processing of the security co- processor module according to an embodiment of the present invention.
- the security coprocessor module may receive, after start block 400, a request to perform an operation at block 402.
- the security co-processor module at block 404 obtains the security mode. If the security mode is normal, then the machine mode may be checked by the security co- processor module at block 416. If the machine mode is acceptable, then the requested operation may be executed by the security co-processor module at block 418, and processing returns to a caller at block 414. However, if the machine mode is not acceptable, then an error may be reported at block 412, and processing returns at block 414.
- the security co-processor module gets the security policy at block 406, analyzes the security policy and determines what attributes in addition to machine mode need to be considered prior to executing the operation.
- the security co-processor module gets one or more of the current geographic location, trusted time, hardware vendor string, and/or environmental factors according to the entries in the security policy.
- the security co-processor module determines if the requested operation is acceptable based on the attribute data obtained from the various devices of the computing system according to the security policy. That is, the security coprocessor module may compare the current values of the attributes to ranges and/or values set in the associated security policy entries for those attributes. If the operation is determined to be acceptable, then processing continues at block 416. If not, an error may be reported at block 412.
- the security co-processor module may determine if the current geographic location is within a prescribed range or boundary. If not, the security co-processor module may deny implementation of certain operations or services on the computing system (for example, a forced shutdown of the system). In another example, if the trusted time does not match other time indicators on the computing system, the security co-processor module may determine that the other time indicators have been tampered with, and take appropriate action. In a further example, if any of the environmental factors are outside of specified ranges, then appropriate actions may be taken. For example, if the temperature is too high, the computing system may be shut down.
- checking the machine mode takes place after checking the other attributes when the security mode is enhanced. In other embodiments, this order of processing may be changed so the other attributes are checked after checking the machine mode.
- the security co-processor module may provide better security and further control of the computing system. Since this capability is an integral part of the security co-processor module, which is more difficult to tamper with than the OS or application programs, overall security of the computing system may be improved.
- the techniques described herein are not limited to any particular hardware or software configuration; they may find applicability in any computing or processing environment.
- the techniques may be implemented in hardware, software, or a combination of the two.
- the techniques may be implemented in programs executing on programmable machines such as mobile or stationary computers, handheld computing devices, personal digital assistants, set top boxes, cellular telephones and pagers, and other electronic devices, that each include a processor, a storage medium readable by the processor (including volatile and non-volatile memory and/or storage elements), at least one input device, and one or more output devices.
- Program code is applied to the data entered using the input device to perform the functions described and to generate output information.
- the output information may be applied to one or more output devices.
- the invention can be practiced with various computer system configurations, including multiprocessor systems, minicomputers, mainframe computers, and the like.
- the invention can also be practiced in distributed computing environments where tasks may be performed by remote processing devices that are linked through a communications network.
- Each program may be implemented in a high level procedural or object oriented programming language to communicate with a processing system.
- programs may be implemented in assembly or machine language, if desired. In any case, the language may be compiled or interpreted.
- Program instructions may be used to cause a general-purpose or special-purpose processing system that is programmed with the instructions to perform the operations described herein. Alternatively, the operations may be performed by specific hardware components that contain hardwired logic for performing the operations, or by any combination of programmed computer components and custom hardware components.
- the methods described herein may be provided as a computer program product that may include a machine readable medium having stored thereon instructions that may be used to program a processing system or other electronic device to perform the methods.
- the term "machine readable medium” used herein shall include any medium that is capable of storing or encoding a sequence of instructions for execution by a machine and that cause the machine to perform any one of the methods described herein.
- machine readable medium shall accordingly include, but not be limited to, solid-state memories, optical and magnetic disks.
- software in one form or another (e.g., program, procedure, process, application, module, logic, and so on) as taking an action or causing a result.
- Such expressions are merely a shorthand way of stating the execution of the software by a processing system cause the processor to perform an action of produce a result.
Landscapes
- Engineering & Computer Science (AREA)
- Computer Hardware Design (AREA)
- Theoretical Computer Science (AREA)
- General Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Software Systems (AREA)
- Physics & Mathematics (AREA)
- General Physics & Mathematics (AREA)
- Mathematical Physics (AREA)
- Storage Device Security (AREA)
Abstract
Description
Claims
Priority Applications (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| AU2011271088A AU2011271088B2 (en) | 2010-06-21 | 2011-06-21 | System and method for n-ary locality in a security co-processor |
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US12/819,933 | 2010-06-21 | ||
| US12/819,933 US8479017B2 (en) | 2010-06-21 | 2010-06-21 | System and method for N-ary locality in a security co-processor |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| WO2011163263A2 true WO2011163263A2 (en) | 2011-12-29 |
| WO2011163263A3 WO2011163263A3 (en) | 2012-02-23 |
Family
ID=44800914
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/US2011/041294 Ceased WO2011163263A2 (en) | 2010-06-21 | 2011-06-21 | System and method for n-ary locality in a security co-processor |
Country Status (7)
| Country | Link |
|---|---|
| US (1) | US8479017B2 (en) |
| EP (1) | EP2397959B1 (en) |
| JP (1) | JP5394441B2 (en) |
| KR (1) | KR101276409B1 (en) |
| CN (1) | CN102289612B (en) |
| AU (1) | AU2011271088B2 (en) |
| WO (1) | WO2011163263A2 (en) |
Families Citing this family (15)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| DE112012004661T5 (en) * | 2011-08-05 | 2014-09-11 | Kpit Technologies Ltd. | System for protection of embedded software code |
| US8694786B2 (en) * | 2011-10-04 | 2014-04-08 | International Business Machines Corporation | Virtual machine images encryption using trusted computing group sealing |
| US20140013451A1 (en) * | 2012-07-06 | 2014-01-09 | Sap Ag | Data obfuscation for open data (odata) communications |
| US20140122857A1 (en) * | 2012-10-25 | 2014-05-01 | Lenovo (Singapore) Pte, Ltd. | Apparatus, system and method for motherboard personalization |
| WO2014178889A1 (en) * | 2013-04-30 | 2014-11-06 | Bao Liu | Vlsi tamper detection and resistance |
| WO2014198340A1 (en) * | 2013-06-14 | 2014-12-18 | Nec Europe Ltd. | Method for performing a secure boot of a computing system and computing system |
| US10223363B2 (en) * | 2014-10-30 | 2019-03-05 | Microsoft Technology Licensing, Llc | Access control based on operation expiry data |
| US10740494B2 (en) * | 2017-09-06 | 2020-08-11 | Google Llc | Central and delegate security processors for a computing device |
| US10984123B2 (en) * | 2018-12-10 | 2021-04-20 | International Business Machines Corporation | On-line transmission and control of geographic declaration data |
| TWI756156B (en) * | 2019-04-07 | 2022-02-21 | 新唐科技股份有限公司 | Monitor system booting security device and method thereof |
| US20220179960A1 (en) * | 2019-06-10 | 2022-06-09 | Google Llc | Secure Verification of Firmware |
| US11113188B2 (en) | 2019-08-21 | 2021-09-07 | Microsoft Technology Licensing, Llc | Data preservation using memory aperture flush order |
| US11165588B1 (en) * | 2020-04-09 | 2021-11-02 | International Business Machines Corporation | Key attribute verification |
| CN111625846B (en) * | 2020-04-24 | 2023-08-29 | 公安部第一研究所 | A system state recording method of mobile terminal equipment |
| US11295000B1 (en) | 2020-09-28 | 2022-04-05 | Xilinx, Inc. | Static configuration of accelerator card security modes |
Family Cites Families (17)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US7570614B2 (en) * | 2001-01-25 | 2009-08-04 | Bandspeed, Inc. | Approach for managing communications channels based on performance |
| US6937135B2 (en) | 2001-05-30 | 2005-08-30 | Hewlett-Packard Development Company, L.P. | Face and environment sensing watch |
| GB2376765B (en) | 2001-06-19 | 2004-12-29 | Hewlett Packard Co | Multiple trusted computing environments with verifiable environment identities |
| US7480806B2 (en) * | 2002-02-22 | 2009-01-20 | Intel Corporation | Multi-token seal and unseal |
| US8689000B2 (en) | 2003-05-21 | 2014-04-01 | Hewlett-Packard Development Company, L.P. | Use of certified secrets in communication |
| US20050108171A1 (en) * | 2003-11-19 | 2005-05-19 | Bajikar Sundeep M. | Method and apparatus for implementing subscriber identity module (SIM) capabilities in an open platform |
| US20050133582A1 (en) | 2003-12-22 | 2005-06-23 | Bajikar Sundeep M. | Method and apparatus for providing a trusted time stamp in an open platform |
| JP2006127293A (en) * | 2004-10-29 | 2006-05-18 | Toshiba Corp | Information processing apparatus and operation control method |
| GB2422453A (en) | 2005-01-22 | 2006-07-26 | Hewlett Packard Development Co | Dynamically allocating resources according to a privacy policy |
| MY155110A (en) * | 2006-03-03 | 2015-09-15 | Koninkl Philips Electronics Nv | Clear channel reporting and assisting orphaned nodes in a wireless network |
| US7849312B2 (en) | 2006-03-24 | 2010-12-07 | Atmel Corporation | Method and system for secure external TPM password generation and use |
| US8205238B2 (en) * | 2006-03-30 | 2012-06-19 | Intel Corporation | Platform posture and policy information exchange method and apparatus |
| TWI506966B (en) * | 2006-05-09 | 2015-11-01 | 內數位科技公司 | Secure time functionality for a wireless device |
| BRPI0806197A2 (en) * | 2007-01-26 | 2011-08-30 | Interdigital Tech Corp | location information security assurance and access control method and apparatus using location information |
| US8064605B2 (en) | 2007-09-27 | 2011-11-22 | Intel Corporation | Methods and apparatus for providing upgradeable key bindings for trusted platform modules |
| JP5085287B2 (en) * | 2007-11-21 | 2012-11-28 | 株式会社リコー | Information processing apparatus, validity verification method, and validity verification program |
| JP5212718B2 (en) * | 2008-10-30 | 2013-06-19 | 大日本印刷株式会社 | Platform integrity verification system and method |
-
2010
- 2010-06-21 US US12/819,933 patent/US8479017B2/en active Active
-
2011
- 2011-06-08 EP EP11169089.7A patent/EP2397959B1/en not_active Not-in-force
- 2011-06-20 JP JP2011136221A patent/JP5394441B2/en not_active Expired - Fee Related
- 2011-06-20 CN CN201110165535.0A patent/CN102289612B/en not_active Expired - Fee Related
- 2011-06-21 KR KR1020110060195A patent/KR101276409B1/en not_active Expired - Fee Related
- 2011-06-21 AU AU2011271088A patent/AU2011271088B2/en not_active Ceased
- 2011-06-21 WO PCT/US2011/041294 patent/WO2011163263A2/en not_active Ceased
Also Published As
| Publication number | Publication date |
|---|---|
| WO2011163263A3 (en) | 2012-02-23 |
| KR101276409B1 (en) | 2013-07-31 |
| JP5394441B2 (en) | 2014-01-22 |
| AU2011271088A1 (en) | 2012-12-06 |
| CN102289612B (en) | 2015-08-19 |
| CN102289612A (en) | 2011-12-21 |
| JP2012003772A (en) | 2012-01-05 |
| EP2397959A1 (en) | 2011-12-21 |
| EP2397959B1 (en) | 2017-11-08 |
| AU2011271088B2 (en) | 2013-11-07 |
| KR20110139145A (en) | 2011-12-28 |
| US20110314298A1 (en) | 2011-12-22 |
| US8479017B2 (en) | 2013-07-02 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US8479017B2 (en) | System and method for N-ary locality in a security co-processor | |
| KR101662618B1 (en) | Measuring platform components with a single trusted platform module | |
| US11379586B2 (en) | Measurement methods, devices and systems based on trusted high-speed encryption card | |
| AU2012337403B2 (en) | Cryptographic system and methodology for securing software cryptography | |
| US9690498B2 (en) | Protected mode for securing computing devices | |
| US7653819B2 (en) | Scalable paging of platform configuration registers | |
| KR100692348B1 (en) | Dormancy protection | |
| Dave et al. | Care: Lightweight attack resilient secure boot architecture with onboard recovery for risc-v based soc | |
| US8631507B2 (en) | Method of using signatures for measurement in a trusted computing environment | |
| US9015454B2 (en) | Binding data to computers using cryptographic co-processor and machine-specific and platform-specific keys | |
| US20180157840A1 (en) | Rollback resistant security | |
| Gallery et al. | Trusted computing: Security and applications | |
| Fernandez et al. | A cluster of patterns for trusted computing | |
| Yamak et al. | DICEguard: enhancing DICE security for IoT devices with periodic memory forensics: Y. Yamak et al. | |
| Gupta et al. | Security and Cryptography | |
| US9064118B1 (en) | Indicating whether a system has booted up from an untrusted image | |
| Futral et al. | Fundamental principles of intel® txt | |
| US20070150754A1 (en) | Secure software system and method for a printer | |
| Banik et al. | Security at Its Core | |
| CN117556418A (en) | A method and related equipment for determining kernel status | |
| ES2798077T3 (en) | Cryptographic system and methodology to secure software cryptography | |
| Vasudevan et al. | Desired Security Features | |
| Wu | Kernel service protection for client security |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 11798774 Country of ref document: EP Kind code of ref document: A2 |
|
| ENP | Entry into the national phase |
Ref document number: 2011271088 Country of ref document: AU Date of ref document: 20110621 Kind code of ref document: A |
|
| NENP | Non-entry into the national phase |
Ref country code: DE |
|
| 122 | Ep: pct application non-entry in european phase |
Ref document number: 11798774 Country of ref document: EP Kind code of ref document: A2 |