A device and method for controlling UKEY login to a multi-partition operating system through UEFI

The invention discloses a device and a method for controlling UKEY login to a multi-partition operating system through a UEFI. SSD is encrypted by partition. In the normal state, only a small partition with UEFI application program is displayed. The partition owned by user is in encrypted state and...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: SUN YUXI, QIN FALIN, ZHANG QIANKUN, JIANG XIANGYANG, YANG XINGKANG, YANG AIJUAN
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The invention discloses a device and a method for controlling UKEY login to a multi-partition operating system through a UEFI. SSD is encrypted by partition. In the normal state, only a small partition with UEFI application program is displayed. The partition owned by user is in encrypted state and cannot be accessed and modified. Only after logging in the encrypted area of user can normal operation be performed. The UKey stores the information of the user and the same SM4 key as the user in SSD. When the USB disk is inserted into the computer and all the information is verified, the operating system can be started normally, thus realizing password-free login and avoiding password leakage in the process of password input. The data transmission between UKey and SSD is encrypted by SM4 algorithm, which ensures the security of important information in the process of data transmission. The UKey registration process should be kept confidential to avoid SM4 key disclosure. 本发明公开种通过UEFI控制UKEY登录多分区操作系统的装置和方法,SSD采用分区加