Entity authentication for pre-authenticated links
US-2024396898-A1 · Nov 28, 2024 · US
US8972746B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-8972746-B2 |
| Application number | US-97240610-A |
| Country | US |
| Kind code | B2 |
| Filing date | Dec 17, 2010 |
| Priority date | Dec 17, 2010 |
| Publication date | Mar 3, 2015 |
| Grant date | Mar 3, 2015 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A technique to enable secure application and data integrity within a computer system. In one embodiment, one or more secure enclaves are established in which an application and data may be stored and executed.
Opening claim text (preview).
The invention claimed is: 1. A system comprising: hardware logic to generate a platform-level key to provide for a secure enclave corresponding to a plurality of processors, wherein the platform-level key is to be derived from a plurality of processor-level keys corresponding to the plurality of processors, wherein each of the plurality of processors is to store a plurality of package-unique symmetric keys (PUSKs) and a plurality of package-specific asymmetric keys (PASKs), and wherein the secure enclave is to be executed from an enclave page cache in which data is to be protected using access control mechanisms to be provided by at least one processor of the plurality of processors having an instruction set architecture including a plurality of secure enclave instructions. 2. The system of claim 1 , Wherein the plurality of processors is contained within a plurality of processor packages. 3. The system of claim 1 , wherein the plurality of processors is contained within a single processor package. 4. A method comprising: generating, by hardware logic, a multi-package secure enclave key, common to a plurality of processors; storing the multi-package secure enclave key; storing a package-unique symmetric key (PUSK) into the plurality of processors to be used in a multi-package secure enclave, and creating a plurality of package-specific asymmetric keys (PASKs) for each of the plurality of processors, wherein a secure enclave is to be executed from an enclave page cache in which data is to be protected using access control mechanisms to be provided by at least one processor of the plurality of processors having an instruction set architecture including a plurality of secure enclave instructions.
to a system of files or objects, e.g. local or distributed file system or database · CPC title
Key-lock mechanism · CPC title
using a third party · CPC title
by executing in a restricted environment, e.g. sandbox or secure virtual machine · CPC title
Protecting data integrity, e.g. using checksums, certificates or signatures · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.