发明名称 Hardware-facilitated secure software execution environment
摘要 A hardware-facilitated secure software execution environment provides protection of both program instructions and data against unauthorized access and/or execution to maintain confidentiality and integrity of the software or the data during distribution, in external memories, and during execution. The secure computing environment is achieved by using a hardware-based security method and apparatus to provide protection against software privacy and tampering. A Harvard architecture CPU core is instantiated on the same silicon chip along with encryption management unit (EMU) circuitry and secure key management unit (SKU) circuitry. Credential information acquired from one or more sources is combined by the SKU circuitry to generate one or more security keys provided to the EMU for use in decrypting encrypted program instructions and/or data that is obtained from a non-secure, off-chip source such as an external RAM, an information storage device or other network source. In a non-limiting illustrative example implementation, the EMU decrypts a single memory page of encrypted instructions or data per a corresponding encryption key provided by the SKU. Although instantiated on the same chip, the CPU core does not have direct access to the SKU circuitry or to encryption key information generated by the SKU.
申请公布号 US8473754(B2) 申请公布日期 2013.06.25
申请号 US20070707951 申请日期 2007.02.20
申请人 JONES MARK T.;ATHANAS PETER M.;PATTERSON CAMERON D.;EDMISON JOSHUA N.;MAHAR ANTHONY;MUZAL BENJAMIN J.;POLAKOWSKI BARRY L.;GRAF JONATHAN P.;VIRGINIA TECH INTELLECTUAL PROPERTIES, INC.;MACAULAY-BROWN, INC. 发明人 JONES MARK T.;ATHANAS PETER M.;PATTERSON CAMERON D.;EDMISON JOSHUA N.;MAHAR ANTHONY;MUZAL BENJAMIN J.;POLAKOWSKI BARRY L.;GRAF JONATHAN P.
分类号 G06F11/30;H04K1/00;H04L9/00;H04L9/32 主分类号 G06F11/30
代理机构 代理人
主权项
地址