Platform attestation and registration for servers

Embodiments include systems, methods, computer readable media, and devices configured to, for a first processor of a platform, generate a platform root key; create a data structure to encapsulate theplatform root key, the data structure comprising a platform provisioning key and an identification of...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: MCKEEN FRANCIS X, BEANEY JAMES D, CABRE EDUARDO, ROZAS CARLOS V, ZHANG BO, SMITH WESLEY HAMILTON, SCARLATA VINCENT R, JOHNSON SIMON P, ZMIJEWSKI PIOTR, SAVAGAONKAR UDAY R
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:Embodiments include systems, methods, computer readable media, and devices configured to, for a first processor of a platform, generate a platform root key; create a data structure to encapsulate theplatform root key, the data structure comprising a platform provisioning key and an identification of a registration service; and transmit, on a secure connection, the data structure to the registration service to register the platform root key for the first processor of the platform. Embodiments include systems, methods, computer readable media, and devices configured to store a device certificate received from a key generation facility; receive a manifest from a platform, the manifest comprising an identification of a processor associated with the platform; and validate the processor using astored device certificate. 实施例包括系统、方法、计算机可读介质和设备,其被配置为:针对平台的第处理器生成平台根密钥;创建数据结构以封装平台根密钥,数据结构包括平台供应密钥和注册服务的标识;以及在安全连接上将数据结构发送到注册服务,以为平台的第处理器注册平台根密钥。实施例包括系统、方法、计算机可读介质和设备,其被配置为:存储从密钥生成设施接收的设备证书;从平台接收清单,清单包括与平台相关联的处理器的标识;以及使用存储的设