Trusted bootstrap method and system thereof

A boot system, trusted technology, applied in the direction of program loading/starting, program control devices, etc.

Inactive Publication Date: 2007-09-19
INST OF SOFTWARE - CHINESE ACAD OF SCI
View PDF0 Cites 75 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

There is currently no reliable way to perfect a bootstrap system

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Trusted bootstrap method and system thereof
  • Trusted bootstrap method and system thereof

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0060]In this embodiment, the process of modifying the design of the boot system based on the system boot manager grub is shown in FIG. 1 . One layer is extended on the basis of the original four layers, that is, the system boot manager grub is divided into two layers, stage1 and stage2. Starting from computer power-on, TPM measures BIOS, BIOS measures stage1, stage1 measures stage2, and stage2 measures the operating system kernel. At the same time, the boot chain result report, key file integrity measurement and extended commands are expanded before stage2 measures the operating system kernel. interface. In addition, the recovery of various measurement failures is also considered, including the recovery of general code files and operating system kernel verification failures, as well as the preservation of log files during the boot process, etc., thus forming a complete boot process.

[0061] After the BIOS measures the code of stage1 in grub, it transfers the operation contr...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a method and system for improving the system booting process via a trusted platform module, wherein he booting process for starting the internal kernel of the operation system are divided into a plurality of interdependent layers, the integrity of the upper layer is verified by the lower layer by using the trusted platform module as the trust root, the system operation control right is transmitted layer upon layer till to the operation system kernel to form an integral trusted chain, and if the integrity verification fails, a correspondent restore scheme will be provided, the boot log is recorded into the file system before entering the operation system. The invention takes into account of the situations such as integrity verification, verification failure restore, and the interaction of the starting log and the operation system so as to form an integral booting system, the initial circumstance is considered as safe and trusted, and the operation system can also proves the safety of its starting circumstances to other platforms by using the log file of the booting process.

Description

technical field [0001] The present invention mainly relates to system guidance in the field of trusted computing, and more precisely relates to a method for improving the system guidance process by using a security chip, that is, a trusted platform module, and a trusted guidance system. Background technique [0002] With the popularization of computer use and the frequent communication between computers, computer security has received more and more attention. To ensure the security of the computer system, it is far from enough to consider only from the perspective of the system itself. In a computer system, the startup process is the basis of all behavior of the system. The startup process not only loads the operating system, is responsible for initializing the physical equipment of the computer system and the status of the operating system itself, but also starts the trusted processes and related service programs necessary for the system to maintain normal operation. Due ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F9/445
Inventor 冯登国徐震张立武秦宇汪丹
Owner INST OF SOFTWARE - CHINESE ACAD OF SCI
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products