Verification for inclusion of platform in data center
    1.
    发明专利
    Verification for inclusion of platform in data center 审中-公开
    包含数据中心平台的验证

    公开(公告)号:JP2011065665A

    公开(公告)日:2011-03-31

    申请号:JP2010243228

    申请日:2010-10-29

    Abstract: PROBLEM TO BE SOLVED: To provide a method and a device effective for verifying inclusion of a platform in a data center. SOLUTION: The present invention relates to a server comprising a secret key used for verifying whether the server is included in a data center computer system or not, and comprising at least one token for sealing processing the secret key in the server. COPYRIGHT: (C)2011,JPO&INPIT

    Abstract translation: 要解决的问题:提供一种有效地验证在数据中心中包含平台的方法和设备。 解决方案:本发明涉及包括用于验证服务器是否包括在数据中心计算机系统中的秘密密钥的服务器,并且包括用于密码处理服务器中的秘密密钥的至少一个令牌。 版权所有(C)2011,JPO&INPIT

    Validation of inclusion of platform within data center
    2.
    发明专利
    Validation of inclusion of platform within data center 有权
    验证数据中心内平台的包含

    公开(公告)号:JP2011060311A

    公开(公告)日:2011-03-24

    申请号:JP2010243222

    申请日:2010-10-29

    Abstract: PROBLEM TO BE SOLVED: To provide an effective method and a device for validating whether a platform is included in a data center. SOLUTION: A machine-readable storage medium providing instructions to make a machine perform processing when executed by the machine carries out steps of: revoking a current cryptographic key pair held in the optional number of servers in a data center computer system when it is determined that one of the optional number of servers in the data center computer system is damaged; generating a new cryptographic key pair associated with the data center computer system; and storing a new private key of the new cryptographic key pair in the optional number of damaged servers. COPYRIGHT: (C)2011,JPO&INPIT

    Abstract translation: 要解决的问题:提供用于验证数据中心中是否包括平台的有效方法和装置。 解决方案:提供用于使机器在由机器执行时执行处理的指令的机器可读存储介质执行以下步骤:当数据中心计算机系统中的可选数量的服务器中保存的当前加密密钥对时, 确定数据中心计算机系统中可选数量的服务器之一被损坏; 生成与数据中心计算机系统相关联的新的加密密钥对; 以及将新的加密密钥对的新私钥存储在可选数量的损坏的服务器中。 版权所有(C)2011,JPO&INPIT

    Processor
    4.
    发明专利
    Processor 有权
    处理器

    公开(公告)号:JP2007265434A

    公开(公告)日:2007-10-11

    申请号:JP2007150997

    申请日:2007-06-06

    CPC classification number: G06F21/53 G06F12/1491 G06F21/57 G06F2221/2105

    Abstract: PROBLEM TO BE SOLVED: To provide a system and a method for allowing execution of a system management mode (SMM) code during secure operations in a microprocessor system. SOLUTION: In one embodiment, a system management interruption (SMI) may be first directed to a handler in a secured virtual machine monitor (SVMM). The SMI may then be re-directed to an SMM code located in a virtual machine (VM) that is under the security control of the SVMM. This redirection can be accomplished by allowing reading from and writing to the system management (SM) base register in the processor. COPYRIGHT: (C)2008,JPO&INPIT

    Abstract translation: 要解决的问题:提供一种用于在微处理器系统中的安全操作期间允许执行系统管理模式(SMM)代码的系统和方法。 解决方案:在一个实施例中,可以将系统管理中断(SMI)首先定向到安全虚拟机监视器(SVMM)中的处理程序。 然后,SMI可以被重定向到位于SVMM的安全控制下的虚拟机(VM)中的SMM代码。 这种重定向可以通过读取和写入处理器中的系统管理(SM)基址寄存器来实现。 版权所有(C)2008,JPO&INPIT

    Validation of inclusion of platform within data center
    6.
    发明专利
    Validation of inclusion of platform within data center 审中-公开
    验证数据中心内平台的包含

    公开(公告)号:JP2010044791A

    公开(公告)日:2010-02-25

    申请号:JP2009262787

    申请日:2009-11-18

    Abstract: PROBLEM TO BE SOLVED: To provide an effective method and device for validation of inclusion of platforms within a data center. SOLUTION: A machine-readable storage medium providing instructions to cause a machine to perform processing when executed by the machine carries out steps of revoking a current cryptographic key pair held in the optional number of servers in a data center computer system when determining that one of the optional number of servers in the data center computer system is damaged; generating a new cryptographic key pair associated with the data center computer system; and storing a new private key of the new cryptographic key pair in the optional number of damaged servers. COPYRIGHT: (C)2010,JPO&INPIT

    Abstract translation: 要解决的问题:提供一种用于验证在数据中心内包含平台的有效方法和设备。 解决方案:当机器执行时提供使机器执行处理的机器可读存储介质执行在确定数据中心计算机系统中时保留在数据中心计算机系统中的可选数量的服务器中的当前加密密钥对的步骤 数据中心计算机系统中可选数量的服务器之一被损坏; 生成与数据中心计算机系统相关联的新的加密密钥对; 以及将新的加密密钥对的新私钥存储在可选数量的损坏的服务器中。 版权所有(C)2010,JPO&INPIT

    METHOD OF DELIVERING DIRECT PROOF PRIVATE KEYS TO DEVICES USING AN ON-LINE SERVICE
    9.
    发明申请
    METHOD OF DELIVERING DIRECT PROOF PRIVATE KEYS TO DEVICES USING AN ON-LINE SERVICE 审中-公开
    使用在线服务向设备传送直接证明私人密钥的方法

    公开(公告)号:WO2006023151A2

    公开(公告)日:2006-03-02

    申请号:PCT/US2005024374

    申请日:2005-07-08

    CPC classification number: H04L9/0844 H04L2209/127

    Abstract: Delivering a Direct Proof private key to a device installed in a client computer system in the field may be accomplished in a secure manner without requiring significant non-volatile storage in the device. A unique pseudo-random value is generated and stored in the device at manufacturing time. The pseudo­random value is used to generate a symmetric key for encrypting a data structure holding a Direct Proof private key and a private key digest associated with the device. The resulting encrypted data structure is stored on a protected on-liner server accessible by the client computer system. When the device is initialized on the client computer system, the system checks if a localized encrypted data structure is present in the system. If not, the system obtains the associated encrypted data structure from the protected on-line server using a secure protocol. The device decrypts the encrypted data structure using a symmetric key regenerated from its stored pseudo-random value to obtain the Direct Proof private key. If the private key is valid, it may be used for subsequent authentication processing by the device in the client computer system.

    Abstract translation: 将直接证明私钥提供给安装在该领域中的客户端计算机系统中的设备可以以安全的方式来实现,而不需要设备中的显着的非易失性存储。 在制造时产生并存储在设备中的唯一伪随机值。 伪随机值用于生成用于加密持有直接证明私钥和与该设备相关联的私钥摘要的数据结构的对称密钥。 所得到的加密数据结构存储在由客户端计算机系统可访问的受保护的在线服务器上。 当在客户端计算机系统上初始化设备时,系统会检查系统中是否存在本地化的加密数据结构。 如果没有,系统将使用安全协议从受保护的在线服务器获取相关联的加密数据结构。 设备使用从其存储的伪随机值重新生成的对称密钥来解密加密数据结构,以获得直接证明私钥。 如果私钥有效,则可以用于客户端计算机系统中的设备的后续认证处理。

    PROTECTION OF BOOT BLOCK DATA AND ACCURATE REPORTING OF BOOT BLOCK CONTENTS
    10.
    发明申请
    PROTECTION OF BOOT BLOCK DATA AND ACCURATE REPORTING OF BOOT BLOCK CONTENTS 审中-公开
    保护启动块数据并精确报告引导块内容

    公开(公告)号:WO0203196A3

    公开(公告)日:2003-03-20

    申请号:PCT/US0119325

    申请日:2001-06-14

    Inventor: GRAWROCK DAVID

    CPC classification number: G06F21/575 G06F9/4401

    Abstract: In one embodiment, an integrated circuit device comprises a trusted platform module and a boot block memory unit covered by a common package. The boot block memory unit is in communication with the trusted platform module and provides boot information to the trusted platform module. An example of the boot information includes a boot block code.

    Abstract translation: 在一个实施例中,集成电路设备包括可信平台模块和由公共封装覆盖的引导块存储器单元。 引导块存储器单元与可信平台模块进行通信,并向可信平台模块提供引导信息。 引导信息的示例包括引导块代码。

Patent Agency Ranking