TRUSTED COMPUTING BASE EVIDENCE BINDING FOR A MIGRATABLE VIRTUAL MACHINE

    公开(公告)号:EP3235165A4

    公开(公告)日:2018-05-23

    申请号:EP15863005

    申请日:2015-10-22

    Applicant: INTEL CORP

    CPC classification number: H04L63/0876 G06F21/57 H04L63/0457 H04L63/0853

    Abstract: In an embodiment, at least one computer readable medium has instructions stored thereon for causing a system to cryptographically sign, at a secure platform services enclave (PSE) of a computing system and using a secure attestation key (SGX AK), a public portion of a trusted platform module attestation key (TPM AK) associated with a trusted computing base of a physical platform, to form a certified TPM AK public portion. Also included are instructions to store the certified TPM AK public portion in the PSE, and instructions to, responsive to an attestation request received from a requester at a virtual trusted platform module (vTPM) associated with a virtual machine (VM) that has migrated onto the physical platform, provide to the requester the certified TPM AK public portion stored in the PSE. Other embodiments are described and claimed.

Patent Agency Ranking