The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jan. 07, 2014

Filed:

Mar. 09, 2010
Applicants:

Jonathan M. Mccune, Pittsburgh, PA (US);

Adrian M. Perrig, Pittsburgh, PA (US);

Anupam Datta, Pittsburgh, PA (US);

Virgil Dorin Gligor, Pittsburgh, PA (US);

Yanlin LI, Pittsburgh, PA (US);

Bryan Jeffrey Parno, Pittsburgh, PA (US);

Amit Vasudevan, Pittsburgh, PA (US);

Ning Qu, San Jose, CA (US);

Inventors:

Jonathan M. McCune, Pittsburgh, PA (US);

Adrian M. Perrig, Pittsburgh, PA (US);

Anupam Datta, Pittsburgh, PA (US);

Virgil Dorin Gligor, Pittsburgh, PA (US);

Yanlin Li, Pittsburgh, PA (US);

Bryan Jeffrey Parno, Pittsburgh, PA (US);

Amit Vasudevan, Pittsburgh, PA (US);

Ning Qu, San Jose, CA (US);

Assignee:

Carnegie Mellon University, Pittsburgh, PA (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
G06F 7/04 (2006.01); G06F 12/14 (2006.01); H04L 29/06 (2006.01); H04L 9/32 (2006.01); G06F 15/167 (2006.01); G06F 15/16 (2006.01);
U.S. Cl.
CPC ...
Abstract

A computer including a processor and a verification device. The processor in the computer performs the steps of authenticating a secure connection between a hypervisor and the verification device, measuring the identity of at least a portion of a select guest before the select guest executes any instruction, and sending a measurement of the identity of the select guest to the verification device. The verification device compares the policy stored in the verification device with the measurement of the select guest received by the verification device. The steps of authenticating, measuring, sending, and comparing are performed after receiving a signal indicative of a request to execute the select guest and without rebooting the computer.


Find Patent Forward Citations

Loading…