Server safety starting method and device based on BMC

A server security, server technology, applied in the field of BMC-based server security boot, can solve the problems of incomplete trust measurement, increase of extra load and transformation cost, etc.
CN111158767APending Publication Date: 2020-05-15BEIJING UNIV OF TECH

Patent Information

Authority / Receiving Office
CN · China
Current Assignee / Owner
BEIJING UNIV OF TECH
Publication Date
2020-05-15

Smart Images

  • Figure 1
    Figure 1
  • Figure 2
    Figure 2
  • Figure 3
    Figure 3
Patent Text Reader

Abstract

The embodiment of the invention provides a server safety starting method and device based on a BMC, and the method comprises the steps: starting a BMC management system and a trusted cryptography module, calling the trusted cryptography module to measure a CPLD and a BIOS module based on the BMC management system, and obtaining the measurement results of the CPLD and the BIOS module; if it is known that the CPLD and the BIOS module are not maliciously damaged according to the measurement results of the CPLD and the BIOS module, controlling the CPLD to power on the BIOS module; carrying out state detection on host hardware of the server based on the BIOS module; and if the state detection is passed, calling a trusted cryptography module to measure the startup code of the host operating system of the server to obtain a measurement result of the startup code, and if the startup code is known not to be modified according to the measurement result of the startup code, starting the host operating system. According to the embodiment of the invention, no extra load needs to be added, and safe starting of the server is realized.
Need to check novelty before this filing date? Find Prior Art

Description

technical field

[0001] The invention belongs to the technical field of computer security, and in particular relates to a BMC-based server security startup method and device. Background technique

[0002] The Baseboard Management Controller (BMC) management system is an embedded management system on the server motherboard that is independent of the host operating system. It supports the industry-standard IPMI (Intelligent Platform Management Interface, Intelligent Platform Management Interface) protocol. Keyboard, mouse, etc. provide remote management functions for the server. Users use the BMC to monitor the physical characteristics of the server, such as the temperature, voltage, and fan working status of each component.

[0003] The Basic Input Output System (BIOS) is the core software system directly solidified on the motherboard, which stores the most important basic input and output programs of the server, the self-test program after power-on and the system self-starti...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More