Patent · US Expired

Secure software registration and integrity assessment in a computer system

US5944821A · kind A · utility

316Cited by
5References
24Claims
0Family size

Assignee

Inventor

Key dates

Filing dateJul 11, 1996
Grant dateAug 31, 1999
Priority date
Expiry dateJul 11, 2016

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F11/1004
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

A method for providing secure registration and integrity assessment of software in a computer system is disclosed. A secure hash table is created containing a list of secure programs that the user wants to validate prior to execution. The table contains a secure hash value (i.e., a value generated by modification detection code) for each of these programs as originally installed on the computer system. This hash table is stored in protected memory that can only be accessed when the computer system is in system management mode. Following an attempt to execute a secured program, a system management interrupt is generated. An SMI handler then generates a current hash value for the program to be executed. In the event that the current hash value matches the stored hash value, the integrity of the program is guaranteed and it is loaded into memory and executed. If the two values do not match, the user is alerted to the discrepancy and may be given the option to update or override the stored hash value by entering an administrative password.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.