INPUT/OUTPUT PERMISSION BITMAPS FOR COMPARTMENTALIZED SECURITY
摘要
A method and apparatus for selectively executing an I/O instruction. The method includes creating an I/O permission bitmap (600) in a memory (206) and receiving an I/O port number and a security context identification value. The method also includes using the security context identification value and the I/O port number to access the I/O permission bitmap (600) stored to obtain a permission bit corresponding to th I/O port and executing the I/O instruction dependent upon a value of the permission bit corresponding to the I/O port. The I/O permission bitmap (600) includes a plurality of permission bits. Each of the permission bits corresponds to a different one of a plurality of I/O ports. Each of the permission bits has a value indicating whether access to the corresponding I/O port is allowed. The I/O port number indicates the I/O port referenced by the I/O instruction. The security context identification value indicates a security context level of a memory location including the I/O instruction.
申请公布号
WO03083671(A1)
申请公布日期
2003.10.09
申请号
WO2002US40396
申请日期
2002.12.17
申请人
ADVANCED MICRO DEVICES, INC.
发明人
SCHMIDT, RODNEY, W.;BARNES, BRIAN, C.;STRONGIN, GEOFFREY, S.