SECURE FIRMWARE UPDATES
    20.
    发明申请
    SECURE FIRMWARE UPDATES 审中-公开
    安全公司更新

    公开(公告)号:WO2014035908A1

    公开(公告)日:2014-03-06

    申请号:PCT/US2013/056688

    申请日:2013-08-26

    CPC classification number: G06F8/65 G06F21/572

    Abstract: A firmware update system is described that collectively handles secure firmware updates for hardware resources in a defined and consistent manner. The firmware update system may be configured to manage at least some firmware updates in a pre-boot environment (e.g., before an operating system is loaded). By doing so, the firmware update system exercises control over the updates and reduce entry points exposed to attackers. In one approach, update states are defined for hardware resources that are managed by the firmware update system. In a pre-boot environment, the update states for the managed hardware resources are set to enable firmware updates. The firmware update system may then detect and apply firmware updates available for the managed hardware resources. Update states may be set to disable before loading the operating so that firmware updates for managed resources are disabled outside of the secure pre-boot environment.

    Abstract translation: 描述了以定义和一致的方式共同处理硬件资源的安全固件更新的固件更新系统。 固件更新系统可以被配置为在预引导环境(例如,在加载操作系统之前)管理至少一些固件更新。 通过这样做,固件更新系统对更新进行控制,并减少暴露给攻击者的入口点。 在一种方法中,为由固件更新系统管理的硬件资源定义更新状态。 在预引导环境中,管理硬件资源的更新状态被设置为启用固件更新。 然后,固件更新系统可以检测和应用可用于被管理硬件资源的固件更新。 可以在加载操作之前将更新状态设置为禁用,以便在安全预引导环境之外禁用被管理资源的固件更新。

Patent Agency Ranking