首页> 外国专利> METHOD FOR STARTING TRUSTED EMBEDDED PLATFORM BASED ON TPM INDUSTRIAL CONTROL

METHOD FOR STARTING TRUSTED EMBEDDED PLATFORM BASED ON TPM INDUSTRIAL CONTROL

机译:基于TPM工业控制的可信嵌入式平台启动方法

摘要

A method for starting a trusted embedded platform based on TPM industrial control includes taking a Core Root of Trust Measurement (CRTM) as a source of a trust chain and executing CRTM after electrifying an embedded platform; conducting trust measurement of BIOS and starting BIOS after passing measurement; BIOS measuring Bootloader and extending a measured value into PCR corresponding to TPM; after passing the measurement, transferring a control execution right to Bootloader; and Bootloader measuring OS kernel start process, recording a measured value into PCR of TPM, and executing a start flow of OS after passing the measurement. The method performs measurement before start of each part of a start process, and measured values are also stored in the PCR corresponding to TPM. When the start process is tampered by an attacker, an integrity measurement mechanism terminates the execution of a program, thereby ensuring the security of the embedded platform.
机译:一种基于TPM工业控制的可信嵌入式平台的启动方法,包括:以信任根度量标准(CRTM)作为信任链的来源,对嵌入式平台通电后执行CRTM。对BIOS进行信任度测量,并在测量通过后启动BIOS; BIOS测量Bootloader并将测量值扩展到对应于TPM的PCR中;测量通过后,将控制执行权转移给Bootloader;引导加载程序测量OS内核启动过程,将测量值记录到TPM的PCR中,并在测量通过后执行OS的启动流程。该方法在开始启动过程的每个部分之前执行测量,并且测量值也存储在与TPM相对应的PCR中。当攻击者篡改启动过程时,完整性度量机制将终止程序的执行,从而确保嵌入式平台的安全性。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号