IP Library Granted Patent US 10,193,693
Granted Patent B2
US 10,193,693 · App. 15/363,814 · Granted Jan 29, 2019

Information processing device and version switching method of trusted platform module

Inventors: Tadashi Tsuji (Tokyo, JP); Toshimitsu Saito (Tokyo, JP)
Assignee: Kabushiki Kaisha Toshiba
H04L9/3234G06F9/441G06F12/0246
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,193,693
App. No.
15/363,814
Granted
Jan 29, 2019
Kind
B2
Abstract

According to one embodiment, a system program determines whether a boot mode of an information processing device is set to a first mode for booting an operating system from a storage device initialized by a master boot record (MBR) or a second mode for booting an operating system from a storage device initialized by a GUID partition table (GPT). The system program enables a first or second trusted platform module based on a result of determination of the boot mode.

Claims (33)

1. An information processing device comprising:

a hardware processor;

a nonvolatile memory configured to store a system program;

a first trusted platform module; and

a second trusted platform module which is a version newer than the first trusted platform module,

wherein the system program causes the hardware processor to perform functions of:

determining whether a boot mode of the information processing device is set to a first mode or a second mode based on a setting value indicative of the boot mode, wherein the first mode is a mode for booting an operating system from a storage device initialized by a master boot record (MBR) and the second mode is a mode for booting an operating system from a storage device initialized by a GUID partition table (GPT); and

enabling the first or second trusted platform module based on a result of determination of the boot mode such that the first trusted platform module is enabled when the boot mode is the first mode, and the second trusted platform module is enabled when the boot mode is the second mode,

wherein the system program causes the hardware processor to further perform functions of:

determining whether an operating system which is previously booted is a first type operating system supporting the second trusted platform module based on information related to the operating system which is previously booted; and

enabling the first or second trusted platform module based on a result of determination of the type of the operating system which is previously booted such that the second trusted platform module is enabled when the operating system which is previously booted is the first type operating system, and the first trusted platform module is enabled when the operating system which is previously booted is not the first type operating system.

2. The information processing device of claim 1 , wherein the system program causes the hardware processor to further perform a function of determining whether the first or second trusted platform module should be enabled by giving the result of determination of the type of the operating system which is previously booted priority over the result of determination of the boot mode when the information related to the operating system which is previously booted is present.

3. The information processing device of claim 1 , wherein

the first trusted platform module is implemented by a first hardware device,

the second trusted platform module is implemented by software, and

the system program causes the hardware processor to further perform functions of:

determining whether the first hardware device is present in the information processing device; and

enabling the first or second trusted platform module based on a result of determination of presence or absence of the first hardware device such that the first trusted platform module is enabled when the first hardware device is present, and the second trusted platform module is enabled when the first hardware device is not present.

4. The information processing device of claim 3 , wherein the system program causes the hardware processor to further perform a function of determining whether the first or second trusted platform module should be enabled by giving the result of determination of the boot mode priority over the result of determination of the presence or absence of the first hardware device when a setting value indicating the boot mode is available.

5. The information processing device of claim 1 , wherein the system program causes the hardware processor to further perform functions of:

displaying a setup screen comprising a first setting item for setting a function of automatically switching a trusted platform module version so as to be enabled or disabled and a second setting item for manually setting the trusted platform module version to be used;

enabling, when a setting value of the first setting item indicates that the function for automatic switching is enabled, the first or second trusted platform module based on the result of determination of the boot mode; and

enabling, when the setting value of the first setting item indicates that the function for automatic switching is disabled, the first or second trusted platform module in accordance with a setting value of the second setting item.

6. A version switching method of a trusted platform module comprising:

determining whether a boot mode of an information processing device is set to a first mode or a second mode based on a setting value indicative of the boot mode, wherein the first mode is a mode for booting an operating system from a storage device initialized by a master boot record (MBR) and the second mode is a mode for booting an operating system from a storage device initialized by a GUID partition table (GPT);

enabling a first trusted platform module or a second trusted platform module which is a version newer than the first trusted platform module based on a result of determination of the boot mode such that the first trusted platform module is enabled when the boot mode is the first mode, and the second trusted platform module is enabled when the boot mode is the second mode;

determining whether an operating system which is previously booted is a first type operating system supporting the second trusted platform module based on information related to the operating system which is previously booted; and

enabling the first or second trusted platform module based on a result of determination of the type of the operating system which is previously booted such that the second trusted platform module is enabled when the operating system which is previously booted is the first type operating system, and the first trusted platform module is enabled when the operating system which is previously booted is not the first type operating system.

7. A computer-readable, non-transitory storage medium having stored thereon a computer program which is executable by a computer, the computer program controlling the computer to execute functions of:

determining whether a boot mode of the computer is set to a first mode or a second mode based on a setting value indicative of the boot mode, wherein the first mode is a mode for booting an operating system from a storage device initialized by a master boot record (MBR) and the second mode is a mode for booting an operating system from a storage device initialized by a GUID partition table (GPT);

enabling a first trusted platform module or a second trusted platform module which is a version newer than the first trusted platform module based on a result of determination of the boot mode such that the first trusted platform is enabled when the boot mode is the first mode, and the second trusted platform module is enabled when the boot mode is the second mode;

determining whether an operating system which is previously booted is a first type operating system supporting the second trusted platform module based on information related to the operating system which is previously booted; and

enabling the first or second trusted platform module based on a result of determination of the type of the operating system which is previously booted such that the second trusted platform module is enabled when the operating system which is previously booted is the first type operating system, and the first trusted platform module is enabled when the operating system which is previously booted is not the first type operating system.

Assignments (4)
CORRECTIVE ASSIGNMENT TO CORRECT THE ENGLISH TRANSLATION PREVIOUSLY RECORDED ON REEL 047772 FRAME 0350. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT OF ASSIGNORS INTEREST. Recorded May 7, 2019
From: SAITO, TOSHIMITSU
To: KABUSHIKI KAISHA TOSHIBA
Reel/Frame 049109/0525 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 15, 2019
From: KABUSHIKI KAISHA TOSHIBA
To: TOSHIBA CLIENT SOLUTIONS CO., LTD.
Reel/Frame 048720/0635 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 13, 2018
From: TSUJI, TADASHI
To: KABUSHIKI KAISHA TOSHIBA
Reel/Frame 047772/0339 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 13, 2018
From: SAITO, TOSHIMITSU
To: KABUSHIKI KAISHA TOSHIBA
Reel/Frame 047772/0350 →
Continuity (2)
Continuation PCTJP2014064458 · May 30, 2014
Related Publication 20170085384A1 · Mar 23, 2017