- 专利标题: Technologies for fast launch of trusted containers
-
申请号: US17321764申请日: 2021-05-17
-
公开(公告)号: US11741234B2公开(公告)日: 2023-08-29
- 发明人: Ned Smith , Samuel Ortiz , Manohar Castelino , Mikko Ylinen
- 申请人: Intel Corporation
- 申请人地址: US CA Santa Clara
- 专利权人: Intel Corporation
- 当前专利权人: Intel Corporation
- 当前专利权人地址: US CA Santa Clara
- 代理机构: Hanley, Flight and Zimmerman, LLC
- 主分类号: G06F21/57
- IPC分类号: G06F21/57 ; H04L29/06 ; G06F21/60 ; G06F9/455 ; G06F21/74
摘要:
Technologies for fast launch of trusted containers include a computing device having a trusted platform module (TPM). The computing device measures a container runtime with the TPM and executes the container runtime in response to the measurement. The computing device establishes a trust relationship between the TPM and a virtual platform credential, provisions the virtual platform credential to a virtual TPM, and executes a guest environment in response to provisioning the virtual platform credential. The computing device measures a containerized application with the virtual TPM and executes the containerized application in response to the measurement. The computing device may perform a trusted computing operation in the guest environment with the virtual TPM. The virtual TPM and the containerized application may be protected with multi-key total memory encryption (MKTME) support of the computing device. State of the virtual TPM may be encrypted and persisted. Other embodiments are described and claimed.
公开/授权文献
- US20210390186A1 TECHNOLOGIES FOR FAST LAUNCH OF TRUSTED CONTAINERS 公开/授权日:2021-12-16
信息查询