Systems and methods to provide security to one time program data
US-10318726-B2 · Jun 11, 2019 · US
US11061803B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-11061803-B2 |
| Application number | US-201716309943-A |
| Country | US |
| Kind code | B2 |
| Filing date | Oct 10, 2017 |
| Priority date | Nov 15, 2016 |
| Publication date | Jul 13, 2021 |
| Grant date | Jul 13, 2021 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
The present disclosure provides a checking method of a system start-up file. The method includes: acquiring the system start-up file and a mapping table from a system firmware partition; reading first check data and addressing data associated therewith from the mapping table; reading segmentation data corresponding to the first check data from the system start-up file according to the addressing data; determining whether the first check data is a first type or a second type; if it is the first type, determining whether the segmentation data is a repeated permutation of the first check data, and if not, a security error exists in the system start-up file; and if it is the second type, determining whether second check data, obtained by calculating the segmentation data according to a check algorithm, is consistent with the first check data, and if inconsistent, a security error exists in the system start-up file.
Opening claim text (preview).
The invention claimed is: 1. A checking system of a system start-up file, comprising a processor, and a memory coupled to the processor; wherein: the memory is configured to store a system start-up file, a mapping table, and an instruction executed by the processor; the processor is configured to: acquire the system start-up file and the mapping table from a system firmware partition; read first check data and addressing data associated with the first check data from the mapping table; read segmentation data corresponding to the first check data from the system start-up file according to the addressing data; determine whether the first check data is a first type or a second type; determine whether the segmentation data is a repeated permutation of the first check data when the first check data is the first type, and when the segmentation data is not the repeated permutation of the first check data a security error exists in the system start-up file; and determine whether second check data, acquired through calculating the segmentation data according to a check algorithm, is consistent with the first check data when the first check data is the second type, and when the second check data is inconsistent with the first check data a security error exists in the system start-up file. 2. The system according to claim 1 , wherein the mapping table is provided with a data type identifier associated with the first check data, or the first check data of the first type and the first check data of the second type are separately stored in different mapping tables; and the processor is further configured to determine whether the first check data is the first type or the second type, according to the data type identifier or the mapping table from which the first check data is derived. 3. The system according to claim 1 , wherein the memory is further configured to continuously store the first check data of the first type and the first check data of the second type, and to set the first check data of the first type to get read prior to the first check data of the second type. 4. The system according to claim 1 , wherein the addressing data comprises a starting address and a data length corresponding to the segmentation data. 5. The system according to claim 1 , wherein the check algorithm is a HASH algorithm.
Protecting data integrity, e.g. using checksums, certificates or signatures · CPC title
to protect a block of data words, e.g. CRC or checksum (G06F11/1076 takes precedence; security arrangements for protecting computers or computer systems against unauthorized activity G06F21/00) · CPC title
Boot up procedures · CPC title
Error detection or correction by redundancy in data representation, e.g. by using checking codes · CPC title
Secure boot · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.