Electrical computers and digital processing systems: support – Data processing protection using cryptography – By stored data protection
Reexamination Certificate
2004-04-29
2010-02-16
Moise, Emmanuel L (Department: 2137)
Electrical computers and digital processing systems: support
Data processing protection using cryptography
By stored data protection
Reexamination Certificate
active
07664965
ABSTRACT:
Multiple trusted platform modules within a data processing system are used in a redundant manner that provides a reliable mechanism for securely storing secret data at rest that is used to bootstrap a system trusted platform module. A hypervisor requests each trusted platform module to encrypt a copy of the secret data, thereby generating multiple versions of encrypted secret data values, which are then stored within a non-volatile memory within the trusted platform. At some later point in time, the encrypted secret data values are retrieved, decrypted by the trusted platform module that performed the previous encryption, and then compared to each other. If any of the decrypted values do not match a quorum of values from the comparison operation, then a corresponding trusted platform module for a non-matching decrypted value is designated as defective because it has not been able to correctly decrypt a value that it previously encrypted.
REFERENCES:
patent: 5404563 (1995-04-01), Green et al.
patent: 5421006 (1995-05-01), Jablon et al.
patent: 6185678 (2001-02-01), Arbaugh et al.
patent: 6629192 (2003-09-01), Schaefer et al.
patent: 6948065 (2005-09-01), Grawrock
patent: 7117376 (2006-10-01), Grawrock
patent: 7137004 (2006-11-01), England et al.
patent: 7179170 (2007-02-01), Martinek et al.
patent: 7200758 (2007-04-01), Zimmer
patent: 7216369 (2007-05-01), Wiseman et al.
patent: 2002/0087877 (2002-07-01), Grawrock
patent: 2003/0033495 (2003-02-01), Lawman et al.
patent: 2003/0056109 (2003-03-01), Elliott et al.
patent: 2003/0110372 (2003-06-01), Proudler
patent: 2003/0115453 (2003-06-01), Grawrock
patent: 2003/0188162 (2003-10-01), Candelore et al.
patent: 2003/0226040 (2003-12-01), Challener et al.
patent: 2005/0044408 (2005-02-01), Bajikar et al.
patent: 2005/0138370 (2005-06-01), Goud et al.
Bade Steven A.
Betz Linda Nancy
Kegel Andrew Gregory
Safford David R.
Van Doorn Leendert Peter
Abyaneh Ali S
International Business Machines - Corporation
Moise Emmanuel L
Musgrove Jack V.
Salys Casimer K.
LandOfFree
Method and system for bootstrapping a trusted server having... does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Method and system for bootstrapping a trusted server having..., we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Method and system for bootstrapping a trusted server having... will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-4211352