US 12,468,814 B2
Firmware policy enforcement via a security processor
Nazmus Sakib, Seattle, WA (US); Bryan David Kelly, Carnation, WA (US); Ling Tony Chen, Bellevue, WA (US); and Peter David Waxman, Seattle, WA (US)
Assigned to Microsoft Technology Licensing, LLC, Redmond, WA (US)
Filed by Microsoft Technology Licensing, LLC, Redmond, WA (US)
Filed on Nov. 14, 2023, as Appl. No. 18/508,959.
Application 18/508,959 is a continuation of application No. 17/337,251, filed on Jun. 2, 2021, granted, now 11,853,428.
Prior Publication US 2024/0211601 A1, Jun. 27, 2024
This patent is subject to a terminal disclaimer.
Int. Cl. G06F 21/57 (2013.01); G06F 9/54 (2006.01); G06F 21/55 (2013.01)
CPC G06F 21/572 (2013.01) [G06F 9/541 (2013.01); G06F 21/554 (2013.01); G06F 2221/033 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A system comprising:
a processor; and
memory comprising instructions that, when executed, perform operations comprising:
determining first firmware loaded during a boot session is in compliance with a policy rule specified by second firmware comprising an application programming interface configured to receive policy parameters for the policy rule, wherein the policy rule defines a policy for executing the first firmware; and
in response to determining the first firmware is in compliance with the policy rule, executing the first firmware.