×

Attestation using a combined measurement and its constituent measurements

  • US 9,747,450 B2
  • Filed: 02/10/2015
  • Issued: 08/29/2017
  • Est. Priority Date: 02/10/2014
  • Status: Active Grant
First Claim
Patent Images

1. A method performed by a challenger computer system (“

  • challenger”

    ) to verify an assertion of a prover computer system (“

    prover”

    ), the method comprising;

    receiving from the prover an assertion asserting a combined measurement of constituent measurements of resources and a constituent measurement for each of the resources;

    checking whether a list of known-good combined measurements includes the asserted combined measurement;

    in response to the list including the asserted combined measurement, indicating that the assertion is verified; and

    in response to the list not including the asserted combined measurement,for each of the asserted constituent measurements of resources, determining whether that constituent measurement matches a known-good constituent measurement for the corresponding resource;

    generating a combined measurement from the asserted constituent measurements;

    determining whether the asserted combined measurement matches the generated combined measurement; and

    in response to each constituent measurement matching a known-good measurement and the asserted combined measurement matches the generated combined measurement, indicating that the assertion is verified; and

    adding the asserted combined measurement to the list to avoid the overhead of verifying the asserted constituent measurements and generating a combined measurement when the same asserted combined measurement is subsequently received.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×