CA2425478A1

Methods and systems for authentication of components in a graphics system

Abstract

Methods and-systems are provided for authenticating component(s) in connectionwith the use of a trusted graphics system. Techniques are provided for authenticating agraphics card in connection with a system that cryptographically secures content routedthrough a graphics pipeline, such that an application or device can indicate to the trustedgraphics platform that the application or device is a trusted user of the, trusted graphicsplatform, and such that the graphics platform can communicate to the trusted applicationor device that the graphics platform may be trusted by the application or device.

CA2425478A1, drawing sheet 1
Sheet 1 of 2

Term

Term ended

Projected expiry passed 15 April 2023, 3.4 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

71 claims: 8 independent, 63 dependent

  1. 1
    CA 02425478 2003-04-15 What is claimed is:1. A method for providing authentication in connection with the use of a trusted graphics platform having a graphics card, comprising: requesting by one of an application and device of a graphics card to verify that the graphics card is a secure graphics card;in response to said requesting, generating a session key by a cryptographic processor communicatively and securely coupled to the graphics card;and transmitting said session key to the one of an application and device.
  2. 12
    A method according to ciaim 11, wherein said Get function includes at least one of (1) an Index key property ID method that writes a new key and purpose tag into the key register identified by the index, (2) an Output lock property ID method that sets an output lock flag fixing the screen geometry as well as the graphics card output and (2) an 5 L2KeyMgmt property ID method that sets a key renewal frequency for a layer of video memory encryption protection provided by a trusted graphics platform that includes said secure graphics card and cryptographic processor.
  3. 20
    A computing device, comprising:one of an application and device;and a graphics card having at least one GPU and a cryptographic processor communicatively and securely coupled to said at least one GPU, wherein said one of an application and device requests that the graphics card verify that the graphics card is a secure graphics card and whereby in response to said requesting, the cryptographic processor generates a session key and transmits said session key to the one of an application and device.
  4. 37
    A method for providing authentication in connection with the use of a trusted graphics platform having a graphics card, comprising:requesting by one of an application and device of a graphics card to verify that the graphics card is a secure graphics card;and in response to said requesting, sending a session key to the one of an application and device via a secure communication mechanism built into the trusted graphics platform for key transport, CA 02425478 2003-04-15 whereby the one of an application and device knows in advance that writes to the same address space by a secure graphics card are mapped to the graphics card key store.
  5. 38
    A method according to claimJ7, wherein the secure communication mechanism is a low bandwidth connection.
  6. 39
    A method for providing authentication in connection with the use of a trusted graphics platform having a graphics card, comprising:requesting by one of an application and device of a graphics card to verify that the graphics card is a secure graphics card by sending bulk encrypted data to the trusted graphics platform via a protected path;and in response to said requesting, utilizing a cryptographic processing device to decrypt the bulk encrypted data, thereby verifying that the graphics card is a secure graphics card;and notifying said one of an application and device that the graphics card is a secure graphics card.
  7. 40
    At least one computer readable medium having stored thereon a plurality of computer-executable instructions, said plurality of computer-executable instructions including:means for requesting by one of an application and device of a graphics card to verify that the graphics card is a secure graphics card;means for generating a session key by a cryptographic processor communicatively and securely coupled to the graphics card in response to requesting by said means for requesting;and means for transmitting said session key to the one of an application and device.
  8. 56
    An operating system of a computing device, comprising:means for requesting by one of an application and device of a graphics card to verify that the graphics card is a secure graphics card;means for generating a session key by a cryptographic processor communicatively and securely coupled to the graphics card in response to requesting by said means for requesting;and means for transmitting said session key to the one of an application and device.