Invention Grant
US07694121B2 System and method for protected operating system boot using state validation
有权
使用状态验证的受保护操作系统引导的系统和方法
- Patent Title: System and method for protected operating system boot using state validation
- Patent Title (中): 使用状态验证的受保护操作系统引导的系统和方法
-
Application No.: US10882134Application Date: 2004-06-30
-
Publication No.: US07694121B2Publication Date: 2010-04-06
- Inventor: Bryan Mark Willman , Paul England , Kenneth D. Ray , Jamie Hunter , Lonnie Dean McMichael , Derek Norman LaSalle , Pierre Jacomet , Mark Eliot Paley , Thekkthalackal Varugis Kurien , David B. Cross
- Applicant: Bryan Mark Willman , Paul England , Kenneth D. Ray , Jamie Hunter , Lonnie Dean McMichael , Derek Norman LaSalle , Pierre Jacomet , Mark Eliot Paley , Thekkthalackal Varugis Kurien , David B. Cross
- Applicant Address: US WA Redmond
- Assignee: Microsoft Corporation
- Current Assignee: Microsoft Corporation
- Current Assignee Address: US WA Redmond
- Agency: Woodcock Washburn LLP
- Main IPC: G06F9/00
- IPC: G06F9/00

Abstract:
A mechanism for protected operating system boot that prevents rogue components from being loaded with the operating system, and thus prevents divulgence of the system key under inappropriate circumstances. After a portion of the machine startup procedure has occurred, the operating system loader is run, the loader is validated, and a correct machine state is either verified to exist and/or created. Once the loader has been verified to be a legitimate loader, and the machine state under which it is running is verified to be correct, the loader's future behavior is known to protect against the loading of rogue components that could cause divulgence of the system key. With the loader's behavior being known to be safe for the system key, the validator may unseal the system key and provides it to the loader.
Public/Granted literature
- US20060005034A1 System and method for protected operating system boot using state validation Public/Granted day:2006-01-05
Information query