×

Methods and systems to measure a hypervisor after the hypervisor has already been measured and booted

  • US 10,152,600 B2
  • Filed: 03/03/2016
  • Issued: 12/11/2018
  • Est. Priority Date: 12/29/2006
  • Status: Active Grant
First Claim
Patent Images

1. At least one non-transitory machine-readable medium having stored thereon data which, if used by at least one machine, causes the at least one machine to perform operations comprising:

  • receive a request for a measurement of a hypervisor from at least one computing node that is external to the at least one machine;

    execute a previously measured measuring agent to measure the hypervisor, after the hypervisor is measured and booted, to generate a measurement while;

    (a) the at least one machine is in virtual machine extension (VMX) root operation, and (b) the measuring agent is in a protected mode;

    attest to the measurement, based on at least one encryption credential, to generate an attested measurement output; and

    communicate the attested measurement output to the at least one computing node;

    wherein the hypervisor does not include the at least one encryption credential while the measuring agent is measuring the booted hypervisor.

View all claims
  • 0 Assignments
Timeline View
Assignment View
    ×
    ×