Check patentability & draft patents in minutes with Patsnap Eureka AI!

Secure starting method and device

A safe startup and security technology, applied in the security field, can solve problems such as low startup efficiency and complex system upgrade process, and achieve the effect of simplifying the upgrade process and avoiding low startup efficiency.

Active Publication Date: 2017-08-15
ZTE CORP
View PDF6 Cites 2 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] The main technical problem to be solved by the present invention is to provide a safe startup method to solve the technical problems of low startup efficiency and complicated system upgrade process caused by digital signature method in the prior art

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Secure starting method and device
  • Secure starting method and device
  • Secure starting method and device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0039] This embodiment focuses on the secure boot method provided by the present invention, please refer to figure 1 :

[0040] S101. The upper-level startup item in the startup chain reads the startup image of its lower-level startup item.

[0041] The startup chain here is virtual, which is used to represent a trust relationship. The upper-level startup item in the startup chain can trust its lower-level startup items, and the lower-level startup items can only be started and obtained after the verification of the upper-level startup items. Operating rights, for example, in computer systems, BIOS (Basic Input Output System) and GRUB (GRand Unified Bootloader, system bootloader) belong to the upper-lower relationship, and the startup of GRUB needs to be verified by BIOS. After the verification of GRUB is passed, GRUB obtains the right to operate, and continues to verify its lower-level startup items, so that the upper-level starts the lower-level until all startup items in t...

Embodiment 2

[0074] This embodiment provides a safety boot device, such as Figure 5 Shown:

[0075] The secure boot device 50 includes a security chip 501, an upper-level boot item 502, and a lower-level boot item 503. The lower-level boot item 503 is located after the upper-level boot item 502 in the boot chain and needs to be verified by the upper-level boot item 502 to start.

[0076] The upper-level startup item 502 includes an image reading module 5021 , a calculation module 5022 , a standard value reading module 5023 and a control module 5024 . The image reading module 5021 is used to read the startup image of the lower-level startup item, the calculation module 5022 is used to calculate the security verification value of the startup image, and the standard value reading module 5023 is used to read the image stored in the security chip by means of unauthorized reading. To start the standard verification value corresponding to the image, the control module 5024 is used to compare th...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a secure starting method and device. The method comprises the steps that an upper-level starting item in a starting chain reads a starting mirror image of a lower-level starting item; a secure efficacy value of the starting mirror image is calculated; a standard efficacy value, corresponding to the starting mirror image, stored in a secure chip is read in an unauthorized reading mode; the secure efficacy value and the standard efficacy value are compared; if the secure efficacy value is matched with the standard efficacy value, the lower-level starting item is started; or otherwise starting is stopped. Through the starting mode, the technical problem that in the prior art, starting efficiency is low due to limitation of decrypted data length by use of a decryption mechanism is avoided. Meanwhile, according to the secure starting method, it is only needed to update the standard efficacy value of the starting item needing to be updated into the secure chip during system updating, other starting items which do not need updating cannot be influenced, and therefore the system upgrading process is simplified.

Description

technical field [0001] The present invention relates to the field of safety technology, in particular to a method and device for safety startup. Background technique [0002] The process from power-on to full operation of the device is called booting. Generally, there are two booting methods, one is trusted booting and the other is secure booting. Trusted boot means that after measuring the boot item that needs to be run, continue to run the boot item regardless of whether it is safe or not, and then notify the verifier of the measurement result of the boot item, and the verifier evaluates the security status of the running device. Secure boot refers to evaluating the security of a boot item before running each boot item, except for the Core Root of Trusted Measurement (CRTM). Only when the boot item is safe, the Continue to run the startup item, otherwise, refuse to run and issue a warning. [0003] A Chinese patent document with the publication number 102136044A publishe...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Applications(China)
IPC IPC(8): G06F21/57G06F9/44
CPCG06F9/4401G06F21/572G06F21/575G06F21/57
Inventor 冉小凯盛志凡
Owner ZTE CORP
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More