SECURELY SIGNING CONFIGURATION SETTINGS

Techniques are disclosed relating to securing computing devices during boot. In various embodiments, a secure circuit of a computing device generates for a public key pair and signs, using a private key of the public key pair, configuration settings for an operating system of the computing device. A...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: BENSON, Wade, DONG, John J, JENNINGS, Austin G, SCHLEJ, Nikolaj, HAUCK, Jerrold V, FORTIER, Jacques, MENSCH, Thomas P, DE CESARE, Josh P, GRAHAM, Robert C, KOVAH, Xeno S
Format: Patent
Sprache:eng ; fre ; ger
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
container_end_page
container_issue
container_start_page
container_title
container_volume
creator BENSON, Wade
DONG, John J
JENNINGS, Austin G
SCHLEJ, Nikolaj
HAUCK, Jerrold V
FORTIER, Jacques
MENSCH, Thomas P
DE CESARE, Josh P
GRAHAM, Robert C
KOVAH, Xeno S
description Techniques are disclosed relating to securing computing devices during boot. In various embodiments, a secure circuit of a computing device generates for a public key pair and signs, using a private key of the public key pair, configuration settings for an operating system of the computing device. A bootloader of the computing device receives a certificate for the public key pair from a certificate authority and initiates a boot sequence to load the operating system. The boot sequence includes the bootloader verifying the signed configuration settings using a public key included in the certificate and the public key pair. In some embodiments, the secure circuit cryptographically protects the private key based on a passcode of a user, the passcode being usable by the user to authenticate to the computing device.
format Patent
fullrecord <record><control><sourceid>epo_EVB</sourceid><recordid>TN_cdi_epo_espacenet_EP4168913A1</recordid><sourceformat>XML</sourceformat><sourcesystem>PC</sourcesystem><sourcerecordid>EP4168913A1</sourcerecordid><originalsourceid>FETCH-epo_espacenet_EP4168913A13</originalsourceid><addsrcrecordid>eNrjZFAPdnUODXL1iVQI9nT38_RzV3D293PzdA8Ncgzx9PdTCHYNCQGKBvMwsKYl5hSn8kJpbgYFN9cQZw_d1IL8-NTigsTk1LzUknjXABNDMwtLQ2NHQ2MilAAAyoYj2g</addsrcrecordid><sourcetype>Open Access Repository</sourcetype><iscdi>true</iscdi><recordtype>patent</recordtype></control><display><type>patent</type><title>SECURELY SIGNING CONFIGURATION SETTINGS</title><source>esp@cenet</source><creator>BENSON, Wade ; DONG, John J ; JENNINGS, Austin G ; SCHLEJ, Nikolaj ; HAUCK, Jerrold V ; FORTIER, Jacques ; MENSCH, Thomas P ; DE CESARE, Josh P ; GRAHAM, Robert C ; KOVAH, Xeno S</creator><creatorcontrib>BENSON, Wade ; DONG, John J ; JENNINGS, Austin G ; SCHLEJ, Nikolaj ; HAUCK, Jerrold V ; FORTIER, Jacques ; MENSCH, Thomas P ; DE CESARE, Josh P ; GRAHAM, Robert C ; KOVAH, Xeno S</creatorcontrib><description>Techniques are disclosed relating to securing computing devices during boot. In various embodiments, a secure circuit of a computing device generates for a public key pair and signs, using a private key of the public key pair, configuration settings for an operating system of the computing device. A bootloader of the computing device receives a certificate for the public key pair from a certificate authority and initiates a boot sequence to load the operating system. The boot sequence includes the bootloader verifying the signed configuration settings using a public key included in the certificate and the public key pair. In some embodiments, the secure circuit cryptographically protects the private key based on a passcode of a user, the passcode being usable by the user to authenticate to the computing device.</description><language>eng ; fre ; ger</language><subject>CALCULATING ; COMPUTING ; COUNTING ; ELECTRIC COMMUNICATION TECHNIQUE ; ELECTRIC DIGITAL DATA PROCESSING ; ELECTRICITY ; PHYSICS ; TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</subject><creationdate>2023</creationdate><oa>free_for_read</oa><woscitedreferencessubscribed>false</woscitedreferencessubscribed></display><links><openurl>$$Topenurl_article</openurl><openurlfulltext>$$Topenurlfull_article</openurlfulltext><thumbnail>$$Tsyndetics_thumb_exl</thumbnail><linktohtml>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&amp;date=20230426&amp;DB=EPODOC&amp;CC=EP&amp;NR=4168913A1$$EHTML$$P50$$Gepo$$Hfree_for_read</linktohtml><link.rule.ids>230,308,780,885,25562,76317</link.rule.ids><linktorsrc>$$Uhttps://worldwide.espacenet.com/publicationDetails/biblio?FT=D&amp;date=20230426&amp;DB=EPODOC&amp;CC=EP&amp;NR=4168913A1$$EView_record_in_European_Patent_Office$$FView_record_in_$$GEuropean_Patent_Office$$Hfree_for_read</linktorsrc></links><search><creatorcontrib>BENSON, Wade</creatorcontrib><creatorcontrib>DONG, John J</creatorcontrib><creatorcontrib>JENNINGS, Austin G</creatorcontrib><creatorcontrib>SCHLEJ, Nikolaj</creatorcontrib><creatorcontrib>HAUCK, Jerrold V</creatorcontrib><creatorcontrib>FORTIER, Jacques</creatorcontrib><creatorcontrib>MENSCH, Thomas P</creatorcontrib><creatorcontrib>DE CESARE, Josh P</creatorcontrib><creatorcontrib>GRAHAM, Robert C</creatorcontrib><creatorcontrib>KOVAH, Xeno S</creatorcontrib><title>SECURELY SIGNING CONFIGURATION SETTINGS</title><description>Techniques are disclosed relating to securing computing devices during boot. In various embodiments, a secure circuit of a computing device generates for a public key pair and signs, using a private key of the public key pair, configuration settings for an operating system of the computing device. A bootloader of the computing device receives a certificate for the public key pair from a certificate authority and initiates a boot sequence to load the operating system. The boot sequence includes the bootloader verifying the signed configuration settings using a public key included in the certificate and the public key pair. In some embodiments, the secure circuit cryptographically protects the private key based on a passcode of a user, the passcode being usable by the user to authenticate to the computing device.</description><subject>CALCULATING</subject><subject>COMPUTING</subject><subject>COUNTING</subject><subject>ELECTRIC COMMUNICATION TECHNIQUE</subject><subject>ELECTRIC DIGITAL DATA PROCESSING</subject><subject>ELECTRICITY</subject><subject>PHYSICS</subject><subject>TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</subject><fulltext>true</fulltext><rsrctype>patent</rsrctype><creationdate>2023</creationdate><recordtype>patent</recordtype><sourceid>EVB</sourceid><recordid>eNrjZFAPdnUODXL1iVQI9nT38_RzV3D293PzdA8Ncgzx9PdTCHYNCQGKBvMwsKYl5hSn8kJpbgYFN9cQZw_d1IL8-NTigsTk1LzUknjXABNDMwtLQ2NHQ2MilAAAyoYj2g</recordid><startdate>20230426</startdate><enddate>20230426</enddate><creator>BENSON, Wade</creator><creator>DONG, John J</creator><creator>JENNINGS, Austin G</creator><creator>SCHLEJ, Nikolaj</creator><creator>HAUCK, Jerrold V</creator><creator>FORTIER, Jacques</creator><creator>MENSCH, Thomas P</creator><creator>DE CESARE, Josh P</creator><creator>GRAHAM, Robert C</creator><creator>KOVAH, Xeno S</creator><scope>EVB</scope></search><sort><creationdate>20230426</creationdate><title>SECURELY SIGNING CONFIGURATION SETTINGS</title><author>BENSON, Wade ; DONG, John J ; JENNINGS, Austin G ; SCHLEJ, Nikolaj ; HAUCK, Jerrold V ; FORTIER, Jacques ; MENSCH, Thomas P ; DE CESARE, Josh P ; GRAHAM, Robert C ; KOVAH, Xeno S</author></sort><facets><frbrtype>5</frbrtype><frbrgroupid>cdi_FETCH-epo_espacenet_EP4168913A13</frbrgroupid><rsrctype>patents</rsrctype><prefilter>patents</prefilter><language>eng ; fre ; ger</language><creationdate>2023</creationdate><topic>CALCULATING</topic><topic>COMPUTING</topic><topic>COUNTING</topic><topic>ELECTRIC COMMUNICATION TECHNIQUE</topic><topic>ELECTRIC DIGITAL DATA PROCESSING</topic><topic>ELECTRICITY</topic><topic>PHYSICS</topic><topic>TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION</topic><toplevel>online_resources</toplevel><creatorcontrib>BENSON, Wade</creatorcontrib><creatorcontrib>DONG, John J</creatorcontrib><creatorcontrib>JENNINGS, Austin G</creatorcontrib><creatorcontrib>SCHLEJ, Nikolaj</creatorcontrib><creatorcontrib>HAUCK, Jerrold V</creatorcontrib><creatorcontrib>FORTIER, Jacques</creatorcontrib><creatorcontrib>MENSCH, Thomas P</creatorcontrib><creatorcontrib>DE CESARE, Josh P</creatorcontrib><creatorcontrib>GRAHAM, Robert C</creatorcontrib><creatorcontrib>KOVAH, Xeno S</creatorcontrib><collection>esp@cenet</collection></facets><delivery><delcategory>Remote Search Resource</delcategory><fulltext>fulltext_linktorsrc</fulltext></delivery><addata><au>BENSON, Wade</au><au>DONG, John J</au><au>JENNINGS, Austin G</au><au>SCHLEJ, Nikolaj</au><au>HAUCK, Jerrold V</au><au>FORTIER, Jacques</au><au>MENSCH, Thomas P</au><au>DE CESARE, Josh P</au><au>GRAHAM, Robert C</au><au>KOVAH, Xeno S</au><format>patent</format><genre>patent</genre><ristype>GEN</ristype><title>SECURELY SIGNING CONFIGURATION SETTINGS</title><date>2023-04-26</date><risdate>2023</risdate><abstract>Techniques are disclosed relating to securing computing devices during boot. In various embodiments, a secure circuit of a computing device generates for a public key pair and signs, using a private key of the public key pair, configuration settings for an operating system of the computing device. A bootloader of the computing device receives a certificate for the public key pair from a certificate authority and initiates a boot sequence to load the operating system. The boot sequence includes the bootloader verifying the signed configuration settings using a public key included in the certificate and the public key pair. In some embodiments, the secure circuit cryptographically protects the private key based on a passcode of a user, the passcode being usable by the user to authenticate to the computing device.</abstract><oa>free_for_read</oa></addata></record>
fulltext fulltext_linktorsrc
identifier
ispartof
issn
language eng ; fre ; ger
recordid cdi_epo_espacenet_EP4168913A1
source esp@cenet
subjects CALCULATING
COMPUTING
COUNTING
ELECTRIC COMMUNICATION TECHNIQUE
ELECTRIC DIGITAL DATA PROCESSING
ELECTRICITY
PHYSICS
TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHICCOMMUNICATION
title SECURELY SIGNING CONFIGURATION SETTINGS
url https://sfx.bib-bvb.de/sfx_tum?ctx_ver=Z39.88-2004&ctx_enc=info:ofi/enc:UTF-8&ctx_tim=2025-01-09T13%3A47%3A02IST&url_ver=Z39.88-2004&url_ctx_fmt=infofi/fmt:kev:mtx:ctx&rfr_id=info:sid/primo.exlibrisgroup.com:primo3-Article-epo_EVB&rft_val_fmt=info:ofi/fmt:kev:mtx:patent&rft.genre=patent&rft.au=BENSON,%20Wade&rft.date=2023-04-26&rft_id=info:doi/&rft_dat=%3Cepo_EVB%3EEP4168913A1%3C/epo_EVB%3E%3Curl%3E%3C/url%3E&disable_directlink=true&sfx.directlink=off&sfx.report_link=0&rft_id=info:oai/&rft_id=info:pmid/&rfr_iscdi=true