Supercharge Your Innovation With Domain-Expert AI Agents!

Trust chain construction method of trusted cloud server of hybrid architecture and server

A hybrid architecture and construction method technology, applied in the field of cloud security, can solve the problems of high cost of transformation and upgrading, affecting the application and promotion of Trusted Computing 3.0, and achieve the effect of saving costs

Pending Publication Date: 2022-07-15
中电云数智科技有限公司
View PDF3 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] Since Trusted Computing 3.0 relies on the TPCM hardware chip of the physical server, and the server is mainly based on ARM, most cloud vendors need to replace the underlying physical machine when iterating the trusted computing technology, and the cost of transformation and upgrading is too high, which affects The application and promotion of Trusted Computing 3.0 technology

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Trust chain construction method of trusted cloud server of hybrid architecture and server
  • Trust chain construction method of trusted cloud server of hybrid architecture and server
  • Trust chain construction method of trusted cloud server of hybrid architecture and server

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0049] Exemplary embodiments of the present disclosure will be described in more detail below with reference to the accompanying drawings. While exemplary embodiments of the present disclosure are shown in the drawings, it should be understood that the present disclosure may be embodied in various forms and should not be limited by the embodiments set forth herein. Rather, these embodiments are provided so that the present disclosure will be more thoroughly understood, and will fully convey the scope of the present disclosure to those skilled in the art.

[0050] Embodiments of the present invention provide a method for constructing a trust chain of a trusted cloud server with a hybrid architecture. The trusted cloud server with a hybrid architecture has a host machine and a virtual machine, wherein the trust chain of the host machine passes through a trusted platform module (TPM). / Trusted Cryptographic Module (TCM) or Trusted Platform Control Module (TPCM), the trust chain ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a trust chain construction method for a trusted cloud server of a hybrid architecture and a server, and the method comprises the steps: sequentially measuring a BIOS, an OSLoader code, an operating system kernel and a TSB of a host machine, and transferring control rights step by step to complete the construction of a trust chain of the host machine; after the construction of the host machine trust chain is completed, the control right is transferred to the virtual machine step by step; after the virtual machine is started, a BIOS, an OSLoader code, an operating system kernel and a TSB of the virtual machine are measured in sequence, and the control right is transferred step by step; and after the measurement of the TSB of the virtual machine is passed and the control right is obtained, measuring the executable file by using the TSB of the virtual machine so as to complete the construction of a complete trust chain from the host machine to the virtual machine. According to the method, under the condition that a hardware physical machine with a built-in TPM / TCM chip is not upgraded, VTPCM-based starting trust chain construction of the virtual machine is achieved, the active immunity is enhanced, and the technology upgrading cost is saved for cloud manufacturers.

Description

technical field [0001] The invention relates to the technical field of cloud security, in particular to a method and server for constructing a trust chain of a trusted cloud server with a hybrid architecture. Background technique [0002] At present, in view of a series of security problems existing in the existing cloud security solutions, using trusted computing technology to strengthen the credibility of the cloud environment security mechanism and ensure the reliable operation of the cloud security mechanism has become a domestic and foreign cloud product developer, cloud A consensus among security developers and cloud architecture specifiers. [0003] At present, international and domestic trusted computing systems are mainly built on the basis of physical security chips. International TPM and domestic TCM are relatively mature and widely used as trusted computing 2.0 technologies. The domestically led trusted computing 3.0 technology, TPCM, has active Immunity is more...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): G06F9/455G06F9/445G06F9/4401
CPCG06F9/45558G06F9/44505G06F9/4411G06F2009/45562
Inventor 王占群
Owner 中电云数智科技有限公司
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More