| CPC H04L 9/3242 (2013.01) [G06F 21/57 (2013.01); H04L 9/0825 (2013.01); H04L 9/0877 (2013.01)] | 18 Claims |

|
1. A computer system with improved security, the computer system comprising:
an attester device configured to communicate with one or more platform components and a verifier to perform attestation operations on behalf of the one or more platform components, the attestation operations comprising:
receiving, from a first component of the one or more platform components, a measurement collected by the first component;
generating a hash value based at least in part on the measurement collected by the first component;
receiving a challenge from the verifier;
generating a hash key based at least in part on the hash value;
signing the challenge using the hash key to generate a signed challenge;
transmitting the signed challenge to the verifier;
generating a certificate over a public portion of the hash key and signing the certificate with an attester device key; and
presenting a certificate chain ending with the certificate over the public portion of the hash key as a leaf certificate to the verifier.
|