A Note On High Integrity PC Bootstrapping

Fred Cohen
This research was funded by ASP, PO Box 81270, Pittsburgh, PA 15217, USA

In this paper, we describe two techniques for assuring a high integrity startup in a PC based computing environment. We begin with background information on PC startup procedures and current integrity threats against normal PC startup. We then describe a sound technique for assuring a high integrity startup and the basis for its soundness. Next we show a second method which is not sound, but which works well against attacks not specifically directed against this defense.

