-
公开(公告)号:BRPI0501783A
公开(公告)日:2006-02-07
申请号:BRPI0501783
申请日:2005-05-23
Applicant: MICROSOFT CORP
Inventor: WILLMAN BRYAN MARK , ENGLAND PAUL , RAY KENNETH D , HUNTER JAMIE , MCMICHAEL LONNY DEAN , LASSALLE DEREK NORMAN , JACOMET PIERRE , PALEY MARK ELIOT , KURIEN THEKKTHALACKAL VARUGIS , CROSS DAVID B
IPC: G06F9/445 , G06F11/00 , G06F21/00 , G06N20060101 , G06F9/48
Abstract: A mechanism for protected operating system boot that prevents rogue components from being loaded with the operating system, and thus prevents divulgence of the system key under inappropriate circumstances. After a portion of the machine startup procedure has occurred, the operating system loader is run, the loader is validated, and a correct machine state is either verified to exist and/or created. Once the loader has been verified to be a legitimate loader, and the machine state under which it is running is verified to be correct, the loader's future behavior is known to protect against the loading of rogue components that could cause divulgence of the system key With the loader's behavior being known to be safe for the system key, the validator may unseal the system key and provides it to the loader.