发明名称 A METHOD, APPARATUS, SYSTEM FOR QUALIFYING CPU TRANSACTIONS WITH SECURITY ATTRIBUTES
摘要 Method, apparatus, and system for qualifying CPU transactions with security attributes. Immutable security attributes are generated for transactions initiator by a CPU or processor core that identifying the execution mode of the CPU/core being trusted or untrusted. The transactions may be targeted to an Input/Output (I/O) device or system memory via which a protected asset may be accessed. Policy enforcement logic blocks are implemented at various points in the apparatus or system that allow or deny transactions access to protected assets based on the immutable security attributes generated for the transactions. In one aspect, a multiple-level security scheme is implemented under which a mode register is updated via a first transaction to indicate the CPU/core is operating in a trusted execution mode, and security attributes are generated for a second transaction using execution mode indicia in the mode register to verify the transaction is from a trusted initiator.
申请公布号 EP2972785(A4) 申请公布日期 2016.11.02
申请号 EP20140774872 申请日期 2014.03.03
申请人 INTEL CORPORATION 发明人 SASTRY, MANOJ R.;SCHOINAS, IOANNIS T.;CERMAK, DANIEL M.
分类号 G06F9/06;G06F13/14;G06F21/00;G06F21/78 主分类号 G06F9/06
代理机构 代理人
主权项
地址