会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 6. 发明申请
    • INFORMATION PROCESSING DEVICE, INFORMATION PROCESSING METHOD, AND COMPUTER PROGRAM AND INTEGRATED CIRCUIT FOR THE REALIZATION THEREOF
    • 信息处理设备,信息处理方法,计算机程序和集成电路实现
    • US20110066838A1
    • 2011-03-17
    • US12991516
    • 2009-05-25
    • Hisashi TakayamaHideki MatsushimaTakayuki ItoTomoyuki HagaKenneth Alexander NicolsonManabu Maeda
    • Hisashi TakayamaHideki MatsushimaTakayuki ItoTomoyuki HagaKenneth Alexander NicolsonManabu Maeda
    • G06F9/24
    • H04L9/3263G06F21/575H04L9/3236H04L2209/80
    • The present invention provides an information processing apparatus that is capable of continuously performing secure boot between module groups in the case where software of a terminal device consists of module groups provided by a plurality of providers, while keeping independence between the providers. The information processing apparatus is provided with a linkage certificate that contains a first configuration comparison value 503, which indicates a cumulative hash value of the first module group to be started up by secure boot, and a module measurement value 505, which indicates a hash value of the first module of the second module group to be started up by secure boot. After the secure boot of the first module group, it is verified that the first module group has been started up by comparison with the first configuration comparison value 503. Then, the second module group is started up by secure boot by starting up the first module of the second module group whose completeness has been verified by comparison with the module measurement value 505. When a module of the first module group is updated, the linkage certificate update unit 135 updates the linkage certificate.
    • 本发明提供一种信息处理装置,其能够在终端装置的软件由多个提供者提供的模块组成的情况下连续地执行模块组之间的安全引导,同时保持提供者之间的独立性。 该信息处理装置设置有连接证书,该连接证书包含表示通过安全引导启动的第一模块组的累积哈希值的第一配置比较值503以及指示散列值的模块测量值505 通过安全启动来启动第二个模块组的第一个模块。 在第一模块组的安全引导之后,通过与第一配置比较值503进行比较来验证第一模块组已经被启动。然后,通过启动第一模块来启动第二模块组, 通过与模块测量值505进行比较来验证其完整性的第二模块组。当第一模块组的模块被更新时,连接证书更新单元135更新连接证书。
    • 9. 发明授权
    • Secure boot terminal, secure boot method, secure boot program, recording medium, and integrated circuit
    • 安全引导终端,安全引导方法,安全引导程序,记录介质和集成电路
    • US08555049B2
    • 2013-10-08
    • US12676960
    • 2008-09-30
    • Hisashi TakayamaHideki MatsushimaTakayuki ItoTomoyuki HagaKenneth Alexander Nicolson
    • Hisashi TakayamaHideki MatsushimaTakayuki ItoTomoyuki HagaKenneth Alexander Nicolson
    • G06F15/177
    • G06F21/575
    • A terminal that performs secure boot processing when booting, thereby booting reliably even if, during updating of a software module, the power is cut off or the update is otherwise interrupted. The terminal comprises a CPU, a software module storage unit, a certificate storage unit, an updating unit for updating the software module and certificate, a security device provided with a configuration information storage unit for storing the configuration information of the software module, an alternate configuration information storage unit for storing the configuration information of a software module in the configuration before the update, and a boot control unit for verifying and executing the software module by using the certificate. The terminal verifies the certificate of the software module by comparing the configuration information stored by the configuration information storage unit with the configuration information stored by the alternate configuration information storage unit.
    • 在启动时执行安全引导处理的终端,即使在更新软件模块期间断电或更新被中断的情况下也可以可靠地引导。 终端包括CPU,软件模块存储单元,证书存储单元,用于更新软件模块和证书的更新单元,设置有用于存储软件模块的配置信息的配置信息存储单元的安全设备, 配置信息存储单元,用于存储在更新之前的配置中的软件模块的配置信息;以及引导控制单元,用于通过使用证书来验证和执行软件模块。 终端通过将由配置信息存储单元存储的配置信息与备用配置信息存储单元存储的配置信息进行比较来验证软件模块的证书。