delivering a secure and fast boot experience with uefi

28

Upload: scientia-groups

Post on 10-May-2015

1.308 views

Category:

Technology


3 download

TRANSCRIPT

Page 1: Delivering a secure and fast boot experience with uefi
Page 2: Delivering a secure and fast boot experience with uefi
Page 3: Delivering a secure and fast boot experience with uefi
Page 4: Delivering a secure and fast boot experience with uefi

Improving the boot

experience

Page 5: Delivering a secure and fast boot experience with uefi
Page 6: Delivering a secure and fast boot experience with uefi
Page 7: Delivering a secure and fast boot experience with uefi

POST

POST

OS Initialization Service & App

Initialization

Service &

App Init

Page 8: Delivering a secure and fast boot experience with uefi

POST Explorer Init. Device

Init. Hiber Resume

2s 4s 6s 7s

OEM

Logo

OEM

Logo

Clean, high-resolution branding

elements persist through OS boot

Post with highest supported

native resolution

Seamless single graphics

transition from firmware to

native OS driver

Page 9: Delivering a secure and fast boot experience with uefi
Page 10: Delivering a secure and fast boot experience with uefi

Enhancing security

Page 11: Delivering a secure and fast boot experience with uefi
Page 12: Delivering a secure and fast boot experience with uefi

POST

Firmware

OK?

BootMgr

OK?

Boot Critical

Drivers OK?NTOS Kernel

OK?

UEFI

Recovery?

Firmware Last

Resort

Secure Boot

Remediation /

Recovery

Early Launch

Anti-malware

(ELAM)

Windows

Logon

Reboot

Last Resort

Factory Reset

Enterprise PXE

External media

Contact Support

Page 13: Delivering a secure and fast boot experience with uefi
Page 14: Delivering a secure and fast boot experience with uefi

Design guidance

Page 15: Delivering a secure and fast boot experience with uefi

Firmware

Platform Specific UEFI Firmware

Windows OS

System Hardware

UEFI Runtime Services

UEFI OS Loader

ACPI BIOS ACPI

Registers

ACPI

Tables

ACPI Driver UEFI Win32/NT APIs

Compatibility Support Module (CSM)

BIOS OS Loader

Legacy BIOS

Page 16: Delivering a secure and fast boot experience with uefi

Interface Legacy BIOS UEFI

Architecture x86 / X64 only Agnostic

Mode 16 bit (real mode) 32/64 bit

Boot Partition MBR (2.2 TB limit) GPT (9.4 ZB* limit)

Runtime Services No Yes

Driver model No Yes

POST Graphics VGA Graphical Output Protocol

(GOP)

* A zettabyte is equal to 1B terabytes. The total amount of global data was expected to pass 1.2 ZB sometime during 2010.

Page 17: Delivering a secure and fast boot experience with uefi
Page 18: Delivering a secure and fast boot experience with uefi

Recap

Page 19: Delivering a secure and fast boot experience with uefi
Page 21: Delivering a secure and fast boot experience with uefi
Page 23: Delivering a secure and fast boot experience with uefi

BACKUP

Page 24: Delivering a secure and fast boot experience with uefi
Page 25: Delivering a secure and fast boot experience with uefi
Page 26: Delivering a secure and fast boot experience with uefi
Page 27: Delivering a secure and fast boot experience with uefi

38.2% from top to middle of logo

Max 40%

Max 40%

This space reserved for OS

Page 28: Delivering a secure and fast boot experience with uefi