A device and method for controlling UKEY login to a multi-partition operating system through UEFI
The invention discloses a device and a method for controlling UKEY login to a multi-partition operating system through a UEFI. SSD is encrypted by partition. In the normal state, only a small partition with UEFI application program is displayed. The partition owned by user is in encrypted state and...
Gespeichert in:
Hauptverfasser: | , , , , , |
---|---|
Format: | Patent |
Sprache: | chi ; eng |
Schlagworte: | |
Online-Zugang: | Volltext bestellen |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | The invention discloses a device and a method for controlling UKEY login to a multi-partition operating system through a UEFI. SSD is encrypted by partition. In the normal state, only a small partition with UEFI application program is displayed. The partition owned by user is in encrypted state and cannot be accessed and modified. Only after logging in the encrypted area of user can normal operation be performed. The UKey stores the information of the user and the same SM4 key as the user in SSD. When the USB disk is inserted into the computer and all the information is verified, the operating system can be started normally, thus realizing password-free login and avoiding password leakage in the process of password input. The data transmission between UKey and SSD is encrypted by SM4 algorithm, which ensures the security of important information in the process of data transmission. The UKey registration process should be kept confidential to avoid SM4 key disclosure.
本发明公开种通过UEFI控制UKEY登录多分区操作系统的装置和方法,SSD采用分区加 |
---|