会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 4. 发明申请
    • METHOD AND HOST SYSTEM FOR SECURE ENCLAVE MIGRATION
    • WO2023072390A1
    • 2023-05-04
    • PCT/EP2021/079884
    • 2021-10-27
    • NEC LABORATORIES EUROPE GMBH
    • BRIONGOS, SamiraSORIENTE, ClaudioKARAME, Ghassan
    • G06F21/53G06F9/455
    • The present invention provides a method for enabling enclave migration, wherein the contents of the enclave and its sealed data are transferred from a first machine – sending host (200S) – to a second machine – receiving host (200R). The method comprises performing attestation between a security monitor (130S) of the sending host (200S) and a security monitor (130R) of the receiving host (200R) including an exchange of a shared cryptographic key K between the two security monitors (130S, 130R); using the shared cryptographic key K to implement a secure communication channel between the two security monitors (130S, 130R); executing, by the two security monitors (130S, 130R) via the secure communication channel, a predetermined transfer protocol, the transfer protocol including an initial exchange of verification messages between the security monitors (130S, 130R) to verify that both security monitors (130S, 130R) are ready and can execute the transfer, and a subsequent transfer of the enclave data between the security monitors (130S, 130R). Timeouts defining a maximum admissible time duration for particular steps of the transfer protocol may be implemented both for the initial exchange of the verification messages and for the subsequent transfer of the enclave data.