Invention Grant
- Patent Title: Hardware supported virtualized cryptographic service
- Patent Title (中): 硬件支持虚拟化加密服务
-
Application No.: US12750141Application Date: 2010-03-30
-
Publication No.: US08375437B2Publication Date: 2013-02-12
- Inventor: David J. Linsley , Stefan Thom
- Applicant: David J. Linsley , Stefan Thom
- Applicant Address: US WA Redmond
- Assignee: Microsoft Corporation
- Current Assignee: Microsoft Corporation
- Current Assignee Address: US WA Redmond
- Main IPC: G06F9/00
- IPC: G06F9/00 ; G06F11/30

Abstract:
A Trusted Platform Module (TPM) can be utilized to provide hardware-based protection of cryptographic information utilized within a virtual computing environment. A virtualized cryptographic service can interface with the virtual environment and enumerate a set of keys that encryption mechanisms within the virtual environment can utilize to protect their keys. The keys provided by the virtualized cryptographic service can be further protected by the TPM-specific keys of the TPM on the computing device hosting the virtual environment. Access to the protected data within the virtual environment can, thereby, only be granted if the virtualized cryptographic service's keys have been protected by the TPM-specific keys of the TPM on the computing device that is currently hosting the virtual environment. The virtualized cryptographic service's keys can be protected by TPM-specific keys of TPMs on selected computing devices to enable the virtual environment to be hosted by other computing devices.
Public/Granted literature
- US20110246785A1 HARDWARE SUPPORTED VIRTUALIZED CRYPTOGRAPHIC SERVICE Public/Granted day:2011-10-06
Information query