首页> 外国专利> TPM-BASED INDUSTRIAL CONTROL TRUSTED EMBEDDED PLATFORM ACTIVATION METHOD

TPM-BASED INDUSTRIAL CONTROL TRUSTED EMBEDDED PLATFORM ACTIVATION METHOD

机译:基于TPM的工业控制可信嵌入式平台激活方法

摘要

A TPM-based industrial control trusted embedded platform activation method, the method comprising: after an embedded platform is powered up, a root of trust (CRTM) acting as an anchor for, and executing, a chain of trust; performing BIOS trust measurement, and activating the BIOS after measurement is passed; the BIOS measuring a Bootloader, expanding a measurement value into a PCR corresponding to a TPM, and after measurement is passed, handing over a control execution right to the Bootloader; the Bootloader measuring an OS kernel activation process, recording a measurement value thereof in the PCR of the TPM, and after measurement is passed, executing an activation process of an OS. The present method obtains a measurement before activation at every part of an activation process, and measurement values are stored in a PCR corresponding to a TPM; when an activation process is tampered with by an attacker, a completion measurement mechanism terminates execution of the process, thereby ensuring security of an embedded platform.
机译:一种基于TPM的工业控制信任嵌入式平台激活方法,该方法包括:在嵌入式平台加电后,信任根(CRTM)充当锚链并执行信任链;执行BIOS信任度测量,并在测量通过后激活BIOS; BIOS对引导加载程序进行测量,将测量值扩展为与TPM对应的PCR,测量通过后,将控制执行权移交给引导加载程序;引导加载程序测量OS内核激活过程,并在TPM的PCR中记录其测量值,并在测量通过后执行OS的激活过程。本方法在激活过程的每个步骤中获取激活前的测量值,并将测量值存储在与TPM相对应的PCR中。当攻击者对激活过程进行篡改时,完成度量机制将终止该过程的执行,从而确保嵌入式平台的安全性。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号