Pairing Computing Devices According To A Multi-Level Security Protocol
US-2016066184-A1 · Mar 3, 2016 · US
US9619242B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-9619242-B2 |
| Application number | US-201414581309-A |
| Country | US |
| Kind code | B2 |
| Filing date | Dec 23, 2014 |
| Priority date | Dec 23, 2014 |
| Publication date | Apr 11, 2017 |
| Grant date | Apr 11, 2017 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Methods, apparatus, systems and articles of manufacture are disclosed to initialize a platform. An example disclosed apparatus includes a boot loader manager to prevent operating system loading in response to detecting a power-on condition, a context manager to retrieve first context information associated with the platform, and a policy manager to identify a first operating system based on the first context information, the policy manager to authorize the boot loader manager to load the first operating system.
Opening claim text (preview).
What is claimed is: 1. An apparatus to initialize a platform, comprising: a boot loader manager to prevent loading of a default operating system in response to detecting a power-on condition, the default operating system including a default password policy security level, and the platform in a prior power state before the power-on condition; a platform power change monitor to: identify a type of the power-on condition; and identify a type of the prior power state of the platform; a context manager to retrieve first context information associated with the platform; and a policy manager to: reduce a security risk associated with the default operating system by identifying a first operating system based on a profile match of (a) the first context information, (b) the type of the power-on condition, and (c) the type of the prior power state, the first operating system including a first password policy security level greater than that of the default operating system, the policy manager to authorize the boot loader manager to load the first operating system instead of the default operating system. 2. An apparatus as defined in claim 1 , wherein the type of the power-on condition includes at least one of a cold boot power-on condition, a power-on after a sleep state, or a power-on after a hibernate state. 3. An apparatus as defined in claim 1 , wherein the policy manager is to identify the profile match by comparing the first context information to a platform profile table to identify the first operating system when a first service set identifier (SSID) is detected. 4. An apparatus as defined in claim 3 , further including a disk privilege manager to authorize a portion of platform storage based on the SSID. 5. An apparatus as defined in claim 1 , wherein the platform power change monitor is to determine the type of the prior power state of the platform as at least one of a sleep state or a hibernate state. 6. An apparatus as defined in claim 5 , wherein the context manager is to retrieve second context information associated with the platform when the type of the prior power state of the platform includes at least one of the sleep state or the hibernate state. 7. An apparatus as defined in claim 6 , wherein the policy manager is to determine if the first context information is different than the second context information. 8. An apparatus as defined in claim 7 , wherein the policy manager is to permit the first operating system to be loaded on the platform when the first context information is not different than the second context information. 9. An apparatus as defined in claim 7 , wherein the policy manager is to prohibit the first operating system from being loaded on the platform when the first context information is different than the second context information. 10. An apparatus as defined in claim 9 , wherein the boot loader manager is to load a second operating system having a relatively lower privilege status than the first operating system when the first context information is different than the second context information. 11. An apparatus as defined in claim 7 , further including a disk privilege manager to maintain a previously established disk access privilege when the first context information is not different than the second context information. 12. An apparatus as defined in claim 1 , wherein the policy manager is to detect a request to elevate a privilege status of the platform. 13. A method to initialize a platform, comprising: preventing, by executing an instruction with a processor, loading of a default operating system in response to detecting a power-on condition, the default operating system including a default password policy security level, and the platform in a prior power state before the power-on condition; identifying, by executing an instruction with the processor, a type of the power-on condition and a type of the prior power state of the platform; retrieving, by executing an instruction with the processor, first context information associated with the platform; reducing, by executing an instruction with the processor, a security risk associated with the default operating system by identifying a first operating system based on a profile match of (a) the first context information, (b) the type of the power-on condition, and (c) the type of the prior power state, the first operating system including a first password policy security level greater than that of the default operating system; and authorizing, by executing an instruction with the processor, loading of the first operating system instead of the default operating system. 14. A method as defined in claim 13 , further including identifying at least one of a cold boot power-on condition, a power-on after a sleep state, or a power-on after a hibernate state. 15. A method as defined in claim 13 , further including identifying the profile match by comparing the first context information to a platform profile table to identify the first operating system when a first service set identifier (SSID) is detected. 16. A method as defined in claim 15 , further including authorizing a portion of platform storage based on the SSID. 17. A method as defined in claim 13 , further including determining the type of the prior power state of the platform as at least one of a sleep state or a hibernate state. 18. A method as defined in claim 17 , further including retrieving second context information associated with the platform when the type of the prior power state of the platform includes at least one of the sleep state or the hibernate state. 19. A tangible machine readable storage medium comprising machine readable instructions which, when executed, cause a machine to at least: prevent loading of a default operating system in response to detecting a power-on condition, the default operating system including a default password policy security level, and the platform in a prior power state before the power-on condition; determine a type of the power-on condition and a type of the prior power state of the platform; retrieve first context information associated with the platform; reduce a security risk associated with the default operating system by identifying a first operating system based on a profile match of (a) the first context information, (b) the type of the power-on condition, and (c) the type of the prior power state, the first operating system including a first password policy security level greater than that of the default operating system; and authorize loading of the first operating system instead of the default operating system. 20. A storage medium as defined in claim 19 , wherein the machine readable instructions, when executed, further cause the machine to identify at least one of a cold boot power-on condition, a power-on after a sleep state, or a power-on after a hibernate state. 21. A storage medium as defined in claim 19 , wherein the machine readable instructions, when executed, further cause the machine to identify the profile match by comparing the first context information to a platform profile table to identify the first operating system when a first service set identifier (SSID) is detected. 22. A storage medium as defined in claim 21 , wherein the machine readable instructions, when executed, further cause the machine to authorize a portion of platform storage based on the SSID.
Secure boot · CPC title
Suspend and resume; Hibernate and awake · CPC title
Multiboot arrangements, i.e. selecting an operating system to be loaded · CPC title
when the policy decisions are valid for a limited amount of time · CPC title
Entity profiles · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.