EP1560098A2

Method and system ensuring installation or execution of a software update only on a specific device or class of devices

Abstract

Described is a system and method in which a device manufacturer or software image provider controls which devices are allowed to install or to run a software image. An image keying mechanism uses package data and UUID associated with the device or class of devices to key an image. Because the UUID is used in the key, an installer verifier and/or boot-time verifier can ensure that the device is authorized to install and/or run the image. Any package, including existing device packages or the package for which installation is requested can demand that keying be enforced. An installer mechanism checks whether the device is allowed to install the image. A boot-time enforcement mechanism prevents an improperly installed image from operating by halting the boot process if a demanded key is invalid or missing.

EP1560098A2, drawing sheet 1
Sheet 1 of 6

Term

Term ended

Projected expiry passed 10 December 2024, 1.8 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

36 claims: 2 independent, 34 dependent

  1. 1
    A method in a computing environment, comprising:identifying a device set containing a device or class of devices for which an image entity comprising an image or a subcomponent of an image is to be keyed;and securely associating an identifier corresponding to the device set with the image entity such that an enforcement mechanism associated with a device of the set can determine whether the image entity is allowed to run on that associated device.
  2. 20
    A system in a computing environment, comprising:a keying mechanism that signs a package with a key, the key based on a data corresponding to the package and data corresponding to the first device identifier;and an enforcement mechanism associated with a device that has a second device identifier which may or may not be the same as the first device identifier used by the keying mechanism, the enforcement mechanism determining based on the key and the second device identifier whether an image corresponding to contents of the package is allowed to run on the device having the second device identifier.