PRESERVING PROTECTED SECRETS ACROSS A SECURE BOOT UPDATE

Obtaining a sealed secret. The method includes decrypting one or more BLOBs at a computing system from among a plurality of different BLOBs. Each of the BLOBs in the plurality of BLOBs contains the secret. Each of the BLOBs in the plurality of BLOBs is sealed to a different condition from among a pl...

Full description

Saved in:
Bibliographic Details
Main Authors SAMSONOV, Yevgeniy Anatolievich, KINSHUMANN, MCCARRON, Christopher
Format Patent
LanguageEnglish
Published 28.03.2019
Subjects
Online AccessGet full text

Cover

Loading…
More Information
Summary:Obtaining a sealed secret. The method includes decrypting one or more BLOBs at a computing system from among a plurality of different BLOBs. Each of the BLOBs in the plurality of BLOBs contains the secret. Each of the BLOBs in the plurality of BLOBs is sealed to a different condition from among a plurality of conditions. A given condition is a reflection of a system state where the system state is indicative of whether or not the system can be trusted to receive the secret. The method further includes evaluating one or more of the conditions to determine if at least one of the one or more conditions is met. The method further includes, if at least one of the one or more conditions is met, then providing the secret to an external entity.
Bibliography:Application Number: SG20191101127Y