Unlock instant, AI-driven research and patent intelligence for your innovation.

Safe start method and device

A safe startup and security technology, applied in the security field, can solve the problems of complex system upgrade process and low startup efficiency, and achieve the effect of simplifying the system upgrade process

Active Publication Date: 2022-01-25
ZTE CORP
View PDF6 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] The main technical problem to be solved by the present invention is to provide a safe startup method to solve the technical problems of low startup efficiency and complicated system upgrade process caused by digital signature method in the prior art

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Safe start method and device
  • Safe start method and device
  • Safe start method and device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0039] This embodiment focuses on the secure boot method provided by the present invention, please refer to figure 1 :

[0040] S101. The upper-level startup item in the startup chain reads the startup image of its lower-level startup item.

[0041] The startup chain here is virtual, which is used to represent a trust relationship. The upper-level startup item in the startup chain can trust its lower-level startup items, and the lower-level startup items can only be started and obtained after the verification of the upper-level startup items. Operating rights, for example, in a computer system, BIOS (Basic Input Output System) and GRUB (GRand Unified Bootloader, system bootloader) belong to the upper-lower relationship, and the startup of GRUB needs to be verified by BIOS. After the verification of GRUB is passed, GRUB obtains the operation right and continues to verify its lower-level startup items, so that the upper-level starts the lower-level until all startup items in th...

Embodiment 2

[0074] This embodiment provides a safety boot device, such as Figure 5 Shown:

[0075] The secure boot device 50 includes a security chip 501, an upper-level boot item 502, and a lower-level boot item 503. The lower-level boot item 503 is located after the upper-level boot item 502 in the boot chain and needs to be verified by the upper-level boot item 502 to start.

[0076] The upper-level startup item 502 includes an image reading module 5021 , a calculation module 5022 , a standard value reading module 5023 and a control module 5024 . The image reading module 5021 is used to read the startup image of the lower-level startup item, the calculation module 5022 is used to calculate the security verification value of the startup image, and the standard value reading module 5023 is used to read the image stored in the security chip by means of unauthorized reading. To start the standard verification value corresponding to the image, the control module 5024 is used to compare th...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a method and device for safe startup, comprising: reading the startup image of the lower-level startup item in the startup chain by an upper-level startup item; calculating the security verification value of the startup mirror; The standard verification value corresponding to the boot image in the security chip; comparing the security verification value with the standard verification value, if the security verification value matches the standard verification value, start the lower-level startup item; otherwise , stop starting. This startup method avoids the technical problem of low startup efficiency in the prior art caused by the limitation of the length of the decrypted data when using the deseal mechanism. At the same time, in the secure boot method proposed by this application, when the system is updated, it is only necessary to update the standard verification value of the boot item that needs to be updated to the security chip, and it will not affect other boot items that do not need to be updated, which simplifies the system. Upgrade process.

Description

technical field [0001] The present invention relates to the field of safety technology, in particular to a method and device for safety startup. Background technique [0002] The process from power-on to full operation of the device is called booting. Generally, there are two booting methods, one is trusted booting and the other is secure booting. Trusted boot means that after measuring the boot item that needs to be run, continue to run the boot item regardless of whether it is safe or not, and then notify the verifier of the measurement result of the boot item, and the verifier evaluates the security status of the running device. Secure boot refers to evaluating the security of a boot item before running each boot item, except for the Core Root of Trusted Measurement (CRTM). Only when the boot item is safe, the Continue to run the startup item, otherwise, refuse to run and issue a warning. [0003] A Chinese patent document with the publication number 102136044A publishe...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): G06F21/57G06F9/4401
CPCG06F9/4401G06F21/572G06F21/575G06F21/57
Inventor 冉小凯盛志凡
Owner ZTE CORP
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More