InvestorsHub Logo
icon url

RootOfTrust

10/06/05 10:12 PM

#96912 RE: SheldonLevine #96896

SL, interesting Vista update adressing hardware requirement for second partition for utilities:

More specific details on implementing the requirement will be provided by the 0.7 release of the requirements document.
This utility partition is not for the exclusive use of the Secure Startup/Full-Volume Encryption utilities;
it may also contain platform manufacturer utilities.

One almost has to wonder if Wave is designing/has designed bundled utilities for certain PC OEMs.

Nice find!

Thanks.


icon url

Pickle Power

10/06/05 10:16 PM

#96913 RE: SheldonLevine #96896

SL, good stuff. Interesting to watch Vista unfold.
icon url

theguvna88

10/07/05 12:58 AM

#96923 RE: SheldonLevine #96896

"it may also contain platform manufacturer utilities."

Now THAT I find very interesting. Very nicely done SL. Hoping this "holds" something in store for us.....

icon url

SheldonLevine

12/01/05 5:54 PM

#103036 RE: SheldonLevine #96896

Longhorn Server Secure Startup Partition

Windows Server code named “Longhorn” Logo Program for Systems, Version 3.0
Version 3.0 Revision Draft 0.51 – 30th September, 2005

>>>
SYS-SEC-3 Systems implementing TPM support secure startup and full-volume encryption by reserving 350 MB for related utilities, outside the main OS partition

A system that implements a Trusted Platform Module (TPM), version 1.2 (or later), must provide a specific hard drive partition. To enable secure startup functionality, the hard disk layout must include at least 350 MB of reserved space inside a “utility partition,” outside the operating system partition, in an unencrypted and active Windows system partition, in which unencrypted boot utilities for full-volume encryption can exist.

This utility partition must be the active partition and must contain the boot manager and boot manager configuration (boot.ini or equivalent).

Design and Implementation Note
This utility partition is not for the exclusive use of the secure startup, full-volume encryption utilities; it may also contain platform manufacturer utilities.

If these utilities do not exist on the “utility partition,” then secure startup and full-volume encryption will not function. Additionally, these utilities enable data recovery if cryptographic keys are lost or disk or encryption corruption occurs.
<<<

Interesting.

Regards

SL