The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Oct. 25, 2016

Filed:

Aug. 18, 2014
Applicant:

Microsoft Technology Licensing, Llc, Redmond, WA (US);

Inventors:

Himanshu Raj, Issaquah, WA (US);

Stefan Saroiu, Redmond, WA (US);

Alastair Wolman, Seattle, WA (US);

Paul England, Bellevue, WA (US);

Anh M. Nguyen, Urbana, IL (US);

Shravan Rayanchu, Madison, WI (US);

Assignee:
Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
G06F 9/44 (2006.01); G06F 9/45 (2006.01); G06F 21/57 (2013.01); G06F 21/50 (2013.01); G06F 21/53 (2013.01); G06F 9/455 (2006.01);
U.S. Cl.
CPC ...
G06F 9/4406 (2013.01); G06F 9/4416 (2013.01); G06F 9/45533 (2013.01); G06F 9/45558 (2013.01); G06F 21/50 (2013.01); G06F 21/53 (2013.01); G06F 21/57 (2013.01); G06F 21/575 (2013.01); G06F 2009/45587 (2013.01); G06F 2221/034 (2013.01); G06F 2221/2105 (2013.01); G06F 2221/2149 (2013.01);
Abstract

In a cloud computing environment, a production server virtualization stack is minimized to present fewer security vulnerabilities to malicious software running within a guest virtual machine. The minimal virtualization stack includes support for those virtual devices necessary for the operation of a guest operating system, with the code base of those virtual devices further reduced. Further, a dedicated, isolated boot server provides functionality to securely boot a guest operating system. The boot server is isolated through use of an attestation protocol, by which the boot server presents a secret to a network switch to attest that the boot server is operating in a clean mode. The attestation protocol may further employ a secure co-processor to seal the secret, so that it is only accessible when the boot server is operating in the clean mode.


Find Patent Forward Citations

Loading…