A migration scheme for virtualized Trusted Platform Modules is presented.
The procedure is capable of securely migrating an instance of a virtual
Trusted Platform Module from one physical platform to another. A virtual
Trusted Platform Module instance's state is downloaded from a source
virtual Trusted Platform Module and all its state information is
encrypted using a hybrid of public and symmetric key cryptography. The
encrypted state is transferred to the target physical platform, decrypted
and the state of the virtual Trusted Platform Module instance is rebuilt.