Invention Grant
- Patent Title: Methods and arrangements to launch trusted, co-existing environments
- Patent Title (中): 启动信任,共存环境的方法和安排
-
Application No.: US11527180Application Date: 2006-09-26
-
Publication No.: US08510859B2Publication Date: 2013-08-13
- Inventor: Vincent J. Zimmer , Lyle Cool
- Applicant: Vincent J. Zimmer , Lyle Cool
- Applicant Address: US CA Santa Clara
- Assignee: Intel Corporation
- Current Assignee: Intel Corporation
- Current Assignee Address: US CA Santa Clara
- Agency: Schubert Law Group PLLC
- Main IPC: G06F21/00
- IPC: G06F21/00

Abstract:
Methods and arrangements to launch trusted, distinct, co-existing environments are disclosed. Embodiments may launch trusted, distinct, co-existing environments in pre-OS space with high assurance. A hardware-enforced isolation scheme may isolate the partitions to facilitate storage and execution of code and data. In many embodiments, the system may launch a partition manager to establish embedded and main partitions. Embedded partitions may not be visible to the main OS and may host critical operations. A main partition may host a general-purpose OS and user applications, and may manage resources that are not assigned to the embedded partitions. Trustworthiness in the launch of the embedded partition is established by comparing integrity metrics for the runtime environment against integrity measurements of a trusted runtime environment for the embedded partition, e.g., by sealing a cryptographic key with the integrity metrics in a trusted platform module. Other embodiments are described and claimed.
Public/Granted literature
- US20080077993A1 Methods and arrangements to launch trusted, co-existing environments Public/Granted day:2008-03-27
Information query