Invention Grant
- Patent Title: Secure boot chain for live boot systems
-
Application No.: US15827509Application Date: 2017-11-30
-
Publication No.: US11416616B2Publication Date: 2022-08-16
- Inventor: Robert W. Kliewer , Micky S. Martin , Mickey J. Malone, II
- Applicant: Forcepoint LLC
- Applicant Address: US TX Austin
- Assignee: Forcepoint LLC
- Current Assignee: Forcepoint LLC
- Current Assignee Address: US TX Austin
- Agency: Jackson Walker LLP
- Agent Christopher J. Rourk
- Main IPC: G06F21/57
- IPC: G06F21/57 ; H04L9/30 ; G06F9/54 ; G06F9/4401

Abstract:
A system is provided for managing booting of an OS that includes a UEFI controller comprising embedded application code instructions and a pre-loaded signed certificate, a boot process controller comprising application code instructions for the OS, pre-loaded signed certificates, and a plurality of application hash identifiers. The boot process controller receives signed communications from the UEFI controller and determines if the UEFI controller is authorized to manage the OS. The UEFI controller manages the OS in response to a positive authorization. The boot process controller determines if the UEFI controller is authorized to manage the OS in response to installation or execution of the OS. The UEFI controller receives a signed communication from the boot loader program, compares the signed communications with the plurality of application identifiers, and executes the boot loader program in response to the pre-loaded signed certificate matching an application identifier from the plurality.
Public/Granted literature
- US20190163911A1 SECURE BOOT CHAIN FOR LIVE BOOT SYSTEMS Public/Granted day:2019-05-30
Information query