FIELD: information technology.
SUBSTANCE: invention relates to the field of information technology. The method for secure booting of the computer operating system includes the stages of preparing the computer, encrypting the operating system files, launching a separately hosted operating system loader, decrypting files and loading the operating system. The bootloader of the operating system is started from a network resource. Before starting the loader, the root file system of the operating system is encrypted. The encryption key is formed in accordance with the parameters of the computer hardware. The files of the operating system loader, its kernel and the image of the initial file system placed in the network resource are signed digitally. The exchange with the network resource takes place via a secure hypertext transfer protocol using symmetric encryption.
EFFECT: increase in the degree of protection against unauthorized access when loading the computer operating system and providing the possibility of parallel loading of computer operating systems to computer network workstations.
1 cl
Title | Year | Author | Number |
---|---|---|---|
MOBILE COMMUNICATION DEVICE AND METHOD FOR OPERATION THEREOF | 2014 |
|
RU2673969C2 |
SYSTEM AND METHOD FOR SECURE OPERATING SYSTEM BOOTING USING STATUS CHECKUP | 2005 |
|
RU2413295C2 |
MOBILE COMMUNICATION DEVICE AND METHOD FOR OPERATION THEREOF | 2014 |
|
RU2672712C2 |
METHOD OF AUTHORISING OPERATION TO BE PERFORMED ON TARGETED COMPUTING DEVICE | 2014 |
|
RU2675902C2 |
METHOD OF CODE LOADING OF AT LEAST ONE PROGRAMME MODULE | 2011 |
|
RU2557459C2 |
SYSTEM OF DATA PROTECTION FROM UNAUTHORIZED ACCESS TO THE DATA THAT CONSTITUTES NATIONAL SECURITY INFORMATION | 2010 |
|
RU2443017C1 |
METHOD AND SYSTEM FOR SECURE STORAGE OF INFORMATION IN FILE STORAGES OF DATA | 2018 |
|
RU2707398C1 |
METHOD OF TRUSTED DOWNLOAD IN VIRTUALISED MEDIA | 2014 |
|
RU2581552C2 |
METHOD OF TRUSTED DEVICE BOOT WITH ABILITY TO CERTIFY DIFFERENT BOOT STAGES BY SEVERAL INDEPENDENT KEY OWNERS | 2023 |
|
RU2808198C1 |
PROTECTIVE SYSTEM FOR VIRTUAL CHANNEL OF CORPORATE NETWORK USING CAPABILITY PRINCIPLE FOR CONTROLLING ACCESS TO RESOURCES AND BUILT AROUND SWITCHING FACILITIES OF SHARED COMMUNICATION NETWORK | 1998 |
|
RU2163727C2 |
Authors
Dates
2022-08-08—Published
2021-11-09—Filed