Safety virtualization method of trusted crypto module

2009 
The invention discloses a safety virtualization method of a trusted crypto module; a virtual TCM instance for supporting the usage of a guest virtual machine is realized on the virtual machine based on a VMM model, so as to built a trust chain from a physical machine to the virtual machine; a TCM manager and a virtual TCM permanent memory area are arranged in a privilege virtual domain of the virtual machine; the virtual TCM instance is built and managed by the virtual TCM manager, and the built virtual TCM instance simulates physical TCM for providing the function of the physical TCM for the guest virtual machine; and a information chancel for the communication of the guest virtual machine and the virtual TCM instance is provided by the virtual TCM manager, so as to issue certificate to the virtual TCM instance and support the virtual TCM instance to access the virtual TCM permanent memory area and the physical TCM; the virtual TCM permanent memory area is adopted to store the related information of the virtual TCM instance. The method integrates the characteristics of the virtual machine and the technical advantages of the trustworthy computing, the function of the trusted crypto module is realized by a simulating way, and the problem that specific requirements to TCM of a plurality of the virtual machines can not be met by single physical TCM is solved.
    • Correction
    • Source
    • Cite
    • Save
    • Machine Reading By IdeaReader
    0
    References
    0
    Citations
    NaN
    KQI
    []