Invention Grant
- Patent Title: Protection for computing systems from revoked system updates
-
Application No.: US15977197Application Date: 2018-05-11
-
Publication No.: US10205748B2Publication Date: 2019-02-12
- Inventor: Michael D. Hocker , Brandon S. Johnson
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agent Michael Purdham
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F8/65 ; H04L9/08 ; H04L9/32 ; H04L9/30 ; H04L29/08 ; G06F21/57

Abstract:
A computing system may be protected from revoked system updates. A computing system receives an object and scans it for revocation updates to a security structure of the computing system. The security structure is a monotonically nondecreasing collection of segments containing data on whether a system update is revoked, and a system update's status as revoked signifies the revoked system update can no longer be used by the computing system. Based upon scanning the object, the computing system identifies and validates a revocation update. The computing system resolves the revocation update by applying the revocation update to the security structure, by adding or changing one or more segments of the security structure identified by the revocation update, in response to determining that the revocation update is valid, or by denying application of the revocation update to the security structure in response to determining that the revocation update is invalid.
Public/Granted literature
- US20180248912A1 PROTECTION FOR COMPUTING SYSTEMS FROM REVOKED SYSTEM UPDATES Public/Granted day:2018-08-30
Information query