Invention Grant
- Patent Title: Hardware security module access management in a cloud computing environment
-
Application No.: US14574728Application Date: 2014-12-18
-
Publication No.: US09836308B2Publication Date: 2017-12-05
- Inventor: Volker M. M. Boenisch , Reinhard Buendgen , Franziska Geisert , Jakob C. Lang , Mareike Lattermann , Angel Nunez Mencias
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agent Nicholas D. Bowman
- Main IPC: G06F7/04
- IPC: G06F7/04 ; G06F9/44 ; G06F21/57 ; G06F9/455

Abstract:
Trusted firmware on a host server is used for managing access to a hardware security module (HSM) connected to the host server. The HSM stores confidential information associated with an operating system. As part of access management, the firmware detects a boot device identifier associated with a boot device configured to boot the operating system on the host server. The firmware then receives a second boot device identifier from the HSM. The boot device identifier and the second boot device identifier are then compared by the firmware. Based on the comparison, the firmware determines that the boot device identifier matches with the second boot device identifier. Based on this determination, the firmware grants the operating system access to the HSM.
Public/Granted literature
- US20160092243A1 HARDWARE SECURITY MODULE ACCESS MANAGEMENT IN A CLOUD COMPUTING ENVIRONMENT Public/Granted day:2016-03-31
Information query