发明名称 INPUT/OUTPUT PERMISSION BITMAPS FOR COMPARTMENTALIZED SECURITY
摘要 A method and apparatus for selectively executing an I/O instruction. The method includes creating an I/O permission bitmap (600) in a memory (206) and receiving an I/O port number and a security context identification value. The method also includes using the security context identification value and the I/O port number to access the I/O permission bitmap (600) stored to obtain a permission bit corresponding to th I/O port and executing the I/O instruction dependent upon a value of the permission bit corresponding to the I/O port. The I/O permission bitmap (600) includes a plurality of permission bits. Each of the permission bits corresponds to a different one of a plurality of I/O ports. Each of the permission bits has a value indicating whether access to the corresponding I/O port is allowed. The I/O port number indicates the I/O port referenced by the I/O instruction. The security context identification value indicates a security context level of a memory location including the I/O instruction.
申请公布号 WO03083671(A1) 申请公布日期 2003.10.09
申请号 WO2002US40396 申请日期 2002.12.17
申请人 ADVANCED MICRO DEVICES, INC. 发明人 SCHMIDT, RODNEY, W.;BARNES, BRIAN, C.;STRONGIN, GEOFFREY, S.
分类号 G06F21/02;G06F12/14;G06F21/00;(IPC1-7):G06F12/14;G06F1/00 主分类号 G06F21/02
代理机构 代理人
主权项
地址