发明名称 Computer architecture for an electronic device providing SLS access to MLS file system with trusted loading and protection of program execution memory
摘要 <p>System for providing a secure file service includes an MLS file service module (300) comprised of a cryptographic processor (302). The MLS file service module also includes an MLS file system (301) hosted by the cryptographic processor. A secure user processor (402) includes programming and communications hardware for requesting at least one classified file from the MLS file service module. The cryptographic processor includes cryptographic hardware and software to decrypt the classified file. The cryptographic processor is also performs an integrity check on the classified file. Once the file is decrypted and its integrity checked by the cryptographic processor, the MLS file service module serves the classified file to the secure user processor in decrypted form.. If the classified file is an executable file, the method also includes selectively enabling a write function for program memory of the secure user processor. This write function is disabled immediately after the classified executable file has been loaded into the program memory to guard against self modifying programs. </p>
申请公布号 EP1850265(A3) 申请公布日期 2008.01.16
申请号 EP20070006085 申请日期 2007.03.23
申请人 HARRIS CORPORATION 发明人 O'BRIEN, TERENCE W.;SCHMALBACH, RICHARD;BLESSING, JOHN;MURRAY, JEFFREY
分类号 G06F21/24 主分类号 G06F21/24
代理机构 代理人
主权项
地址