Invention Grant
- Patent Title: Computer initialization for secure kernel
- Patent Title (中): 安全核心的计算机初始化
-
Application No.: US11939568Application Date: 2007-11-14
-
Publication No.: US07921286B2Publication Date: 2011-04-05
- Inventor: David Rudolph Wooten
- Applicant: David Rudolph Wooten
- Applicant Address: US WA Redmond
- Assignee: Microsoft Corporation
- Current Assignee: Microsoft Corporation
- Current Assignee Address: US WA Redmond
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
Dynamic Root of Trust for Measurement (DRTM) mechanisms can be initiated, not by CPU-manufacturer-specific instructions, but by the execution of code in System Management Mode (SMM) that can modify the values stored in specific Platform Configuration Registers (PCRs) of a Trusted Platform Module (TPM). The SMM code can be verified prior to execution and it can be trusted based on the secure mechanisms used to update such code. The SMM code can restore a known, trusted state of the computing device and can initiate the measuring of subsequently executed code. In such a manner the Trusted Computing Base (TCB) can be limited.
Public/Granted literature
- US20090125716A1 COMPUTER INITIALIZATION FOR SECURE KERNEL Public/Granted day:2009-05-14
Information query