TPM-based control method for safe startup of operating system

A technology for secure start-up control and operating system, applied in computer security devices, instruments, electrical digital data processing, etc., can solve problems such as inability to protect the security of the operating system, and achieve the effect of enhancing security value

Active Publication Date: 2016-06-15
LANGCHAO ELECTRONIC INFORMATION IND CO LTD
View PDF6 Cites 12 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0002] The security of personal information is getting more and more attention. However, the traditional measures to protect personal information security are still limited to the bottleneck of insta

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • TPM-based control method for safe startup of operating system
  • TPM-based control method for safe startup of operating system
  • TPM-based control method for safe startup of operating system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0019] A TPM-based operating system security boot control method, which configures the operating system security boot control policy and measurement configuration file, measures the specified measurement configuration file, and uses the obtained measurement results as a benchmark value after iteration, and compares it with the security boot control The policy and measurement configuration files are stored in the TPM chip, and the operating system kernel is encrypted with the benchmark value;

[0020] Use OSLoader to boot the operating system, read the measurement configuration file in the TPM chip, measure the specified measurement configuration file, and obtain the measurement value after iteration of the measurement result, use the measurement value to decrypt the operating system kernel, the decryption is successful, and the operating system is normal Otherwise, make corresponding security boot control actions according to the security boot control strategy information in th...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a TPM (Trusted Platform Module)-based control method for safe startup of an operating system, and belongs to the field of trusted computing. According to the invention, a safe startup control policy of the operating system is configured into a TPM chip; the designated measurement configuration file is measured to obtain a reference value for encrypting the operating system core; then when the operating system is started up, combined with guidance of OS Loader, the measurement configuration file in the TPM is read to measure the designated measurement configuration file so as to obtain the measurement value; the measurement value is used for decrypting the operating system core; if decryption fails, the corresponding safe startup control motion can be carried out as per the startup control policy information in the TPM. Therefore, safe startup of the operating system is configurable and controllable.

Description

technical field [0001] The invention discloses a TPM-based safe startup control method for an operating system, which belongs to the field of trusted computing. Background technique [0002] The security of personal information is getting more and more attention. However, the traditional measures to protect personal information security are still limited to the bottleneck of installing anti-virus software and firewalls. They can only protect the security of the operating system when it is running, but cannot protect the security of the operating system before it is running. safety. The present invention proposes a TPM-based operating system security startup control method, by configuring the security startup control strategy of the operating system into the TPM chip, measuring the specified measurement configuration file, obtaining the benchmark value and encrypting the operating system kernel, and then When the operating system is started, combined with OSLoader guidance, ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): G06F21/51G06F21/57
CPCG06F21/51G06F21/57G06F21/575
Inventor 杨博中许鑫
Owner LANGCHAO ELECTRONIC INFORMATION IND CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products