×

Enabling bits sealed to an enforceably-isolated environment

  • US 20060288238A1
  • Filed: 06/16/2005
  • Published: 12/21/2006
  • Est. Priority Date: 06/16/2005
  • Status: Active Grant
First Claim
Patent Images

1. A method of enforcing rules on the use of first data, the method comprising:

  • establishing a first trust in a first component that said first component will unseal data only for an entity to which the data is sealed;

    establishing a second trust in a second component that said second component will provide mutually isolated spaces within a machine, such that each of the spaces on the machine is isolated from acts arising in other spaces on the machine;

    establishing a third trust in an environment, the first data being sealed to said environment, said environment being configured to enforce a rule as to the first data, or to executes software that enforces said rule as to the use of the first data, said trust representing an expectation that said environment will not use the first data in a manner contrary to said rule;

    providing the first data in a secure form, and said rule, to said environment;

    using said first component to isolate said environment;

    using said second component to unseal the first data for said environment;

    using, by said environment, the first data only in a manner permitted by said rule.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×