Secure peripheral communication via bridging devices in virtualized computer systems

Systems and methods for secure peripheral communication via a bridging device in a virtualized computer system. An example method may include receiving, by a virtualized execution environment running on a computing system, a state measurement associated with a bridging device of the computing system...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: ZILKIN MAXIM, ILAN AMIR
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:Systems and methods for secure peripheral communication via a bridging device in a virtualized computer system. An example method may include receiving, by a virtualized execution environment running on a computing system, a state measurement associated with a bridging device of the computing system; generating a temporary key; sending a temporary key to the bridging device in response to the verification status measurement, encrypting the temporary key using a device key associated with the bridging device; and transmitting an access request to the bridging device for a peripheral device accessible via the bridging device, wherein the access request is encrypted using a value derived from the temporary key. 用于在虚拟化计算机系统中经由桥接设备的安全外围设备通信的系统和方法。一种示例方法可以包括:由运行在计算系统上的虚拟化的执行环境接收与计算系统的桥接设备相关联的状态测量;生成临时密钥;响应于验证状态测量向桥接设备发送临时密钥,使用与桥接设备相关联的设备密钥对临时密钥进行加密;以及向桥接设备发送针对经由桥接设备可访问的外围设备的访问请求,其中使用从临时密钥导出的值对访问请求进行加密。