会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 3. 发明公开
    • A METHOD, APPARATUS, SYSTEM FOR QUALIFYING CPU TRANSACTIONS WITH SECURITY ATTRIBUTES
    • 用安全属性对CPU交易进行鉴定的方法,装置和系统
    • EP2972785A1
    • 2016-01-20
    • EP14774872.7
    • 2014-03-03
    • Intel Corporation
    • SASTRY, Manoj R.SCHOINAS, Ioannis T.CERMAK, Daniel M.
    • G06F9/06G06F13/14G06F21/00
    • Method, apparatus, and system for qualifying CPU transactions with security attributes. Immutable security attributes are generated for transactions initiator by a CPU or processor core that identifying the execution mode of the CPU/core being trusted or untrusted. The transactions may be targeted to an Input/Output (I/O) device or system memory via which a protected asset may be accessed. Policy enforcement logic blocks are implemented at various points in the apparatus or system that allow or deny transactions access to protected assets based on the immutable security attributes generated for the transactions. In one aspect, a multiple-level security scheme is implemented under which a mode register is updated via a first transaction to indicate the CPU/core is operating in a trusted execution mode, and security attributes are generated for a second transaction using execution mode indicia in the mode register to verify the transaction is from a trusted initiator.
    • 用安全属性来限定CPU事务的方法,装置和系统。 由CPU或处理器内核为事务启动器生成不可变安全属性,用于识别CPU /内核的可信或不可信的执行模式。 这些交易可以针对输入/输出(I / O)设备或系统存储器,通过它可以访问受保护的资产。 策略执行逻辑块在设备或系统中的各个点上实现,允许或拒绝交易根据为事务生成的不可变安全属性访问受保护资产。 在一个方面,实现了多级安全方案,在该多级安全方案下,经由第一事务更新模式寄存器以指示CPU /内核正在可信执行模式下操作,并且使用执行模式标记为第二事务生成安全属性 在模式寄存器中验证事务是否来自受信任的启动器。