发明名称 SECURITY FOR CODES RUNNING IN NON-TRUSTED DOMAINS IN A PROCESSOR CORE
摘要 <p>A method and apparatus configure a trusted domain and a plurality of isolated domains in a processor core. Each isolated domain is assigned a unique domain identifier. One or more resources are associated with each isolated domain. The associations are stored as permissions to access physical addresses of resources. Code to be executed by a hardware device is assigned to one of the isolated domains. The domain identifier for the assigned isolated domain is written to the hardware device. When the hardware device executes the code, each instruction is logically tagged with the domain identifier written to the hardware device. An instruction includes request to access a physical address. The hardware device compares the domain identifier of the instruction with the permissions. If the permissions allow the domain identifier to access the physical address, then access to the resource at the physical address is allowed. Access is otherwise blocked.</p>
申请公布号 WO2008100414(A1) 申请公布日期 2008.08.21
申请号 WO2008US01668 申请日期 2008.02.08
申请人 MARVELL WORLD TRADE LTD.;FULLERTON, MARK N. 发明人 FULLERTON, MARK N.
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址