Invention Grant
- Patent Title: Ticket-based personalization
- Patent Title (中): 基于门票的个性化
-
Application No.: US13246802Application Date: 2011-09-27
-
Publication No.: US08607343B2Publication Date: 2013-12-10
- Inventor: Jason D. Gosnell , Jerrold V. Hauck , Michael Brouwer , Tahoma Toelkes
- Applicant: Jason D. Gosnell , Jerrold V. Hauck , Michael Brouwer , Tahoma Toelkes
- Applicant Address: US CA Cupertino
- Assignee: Apple Inc.
- Current Assignee: Apple Inc.
- Current Assignee Address: US CA Cupertino
- Agency: Blakely, Sokoloff, Taylor & Zafman LLP
- Main IPC: G06F12/14
- IPC: G06F12/14 ; G06F7/04 ; H04L29/06 ; H04L9/32 ; H04L9/00 ; H04L9/28

Abstract:
Securely installing and booting software of a device to run OS authorized according to a ticket that is validated by a nonce generated by application processor (AP) in booted OS stage prior to entering a restore mode is described. AP in booted OS stage generates a pre-flight nonce that is stored in a trusted location (effaceable storage). AP in booted OS stage performs one-way hash of pre-flight nonce and sends the hashed pre-flight nonce to ticket authorization server. AP enters restore mode. AP in first stage bootloader receives a ticket from the ticket authorization server including a signed copy of the hashed pre-flight nonce. AP in first stage bootloader validates the signed ticket by comparing one-way hash of the pre-flight nonce stored in the trusted location and the hashed nonce in the signed ticket. Pre-flight nonce expires after timeout period and upon reboot of AP. Other embodiments are also described.
Public/Granted literature
- US20120311313A1 TICKET-BASED PERSONALIZATION Public/Granted day:2012-12-06
Information query