会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 2. 发明申请
    • SECURITY FOR CODES RUNNING IN NON-TRUSTED DOMAINS IN A PROCESSOR CORE
    • 在处理器核心中的非信任域中运行代码的安全性
    • WO2008100414B1
    • 2008-11-13
    • PCT/US2008001668
    • 2008-02-08
    • MARVELL WORLD TRADE LTDFULLERTON MARK N
    • FULLERTON MARK N
    • G06F21/00
    • H04L63/10G06F21/53G06F21/54G06F21/74
    • A method and apparatus configure a trusted domain and a plurality of isolated domains in a processor core. Each isolated domain is assigned a unique domain identifier. One or more resources are associated with each isolated domain. The associations are stored as permissions to access physical addresses of resources. Code to be executed by a hardware device is assigned to one of the isolated domains. The domain identifier for the assigned isolated domain is written to the hardware device. When the hardware device executes the code, each instruction is logically tagged with the domain identifier written to the hardware device. An instruction includes request to access a physical address. The hardware device compares the domain identifier of the instruction with the permissions. If the permissions allow the domain identifier to access the physical address, then access to the resource at the physical address is allowed. Access is otherwise blocked.
    • 方法和装置在处理器核心中配置可信域和多个隔离域。 每个隔离域都被分配一个唯一的域标识符。 一个或多个资源与每个孤立的域相关联。 这些关联被存储为访问资源的物理地址的权限。 要由硬件设备执行的代码被分配给一个隔离的域。 分配的隔离域的域标识符写入硬件设备。 当硬件设备执行代码时,每个指令都用写入硬件设备的域标识符进行逻辑标记。 指令包括访问物理地址的请求。 硬件设备将指令的域标识与权限进行比较。 如果权限允许域标识符访问物理地址,则允许访问物理地址上的资源。 访问被阻止。