CA2902294A1 - Zone securisee sur machine virtuelle pour communications numeriques - Google Patents

Zone securisee sur machine virtuelle pour communications numeriques Download PDF

Info

Publication number
CA2902294A1
CA2902294A1 CA2902294A CA2902294A CA2902294A1 CA 2902294 A1 CA2902294 A1 CA 2902294A1 CA 2902294 A CA2902294 A CA 2902294A CA 2902294 A CA2902294 A CA 2902294A CA 2902294 A1 CA2902294 A1 CA 2902294A1
Authority
CA
Canada
Prior art keywords
secure zone
secure
hypervisor
screen
virtual machine
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Abandoned
Application number
CA2902294A
Other languages
English (en)
Inventor
Sergey Ignatchenko
Dmitri Ligoum
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Individual
Original Assignee
OLogN Technologies AG
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by OLogN Technologies AG filed Critical OLogN Technologies AG
Publication of CA2902294A1 publication Critical patent/CA2902294A1/fr
Abandoned legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/52Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems during program execution, e.g. stack integrity ; Preventing unwanted data erasure; Buffer overflow
    • G06F21/53Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems during program execution, e.g. stack integrity ; Preventing unwanted data erasure; Buffer overflow by executing in a restricted environment, e.g. sandbox or secure virtual machine
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/70Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer
    • G06F21/71Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure computing or processing of information
    • G06F21/74Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure computing or processing of information operating in dual or compartmented mode, i.e. at least one secure mode
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/57Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
    • G06F21/575Secure boot

Abstract

L'invention concerne un appareil mettant en oeuvre une zone sécurisée sur une machine virtuelle. Dans un aspect, l'appareil peut comprendre un écran et un processeur d'ordinateur. Le processeur d'ordinateur peut être configuré pour initialiser un hyperviseur, créer une première machine virtuelle pour exécuter un code pour une zone sécurisée, et créer une seconde machine virtuelle pour exécuter un code pour une zone non sécurisée. Le code pour la zone sécurisée peut prendre en charge ou transférer le contrôle d'un résultat présenté à l'écran selon que le dispositif fonctionne ou non dans un mode sécurisé. Dans un autre aspect, l'appareil peut également comprendre une puce de renforcement de la sécurité. Cette puce peut comprendre une mémoire permanente pour stocker une clé de chiffrement et une première synthèse de configuration, et peut être configurée pour créer une seconde synthèse de configuration en fonction des données de configuration reçues, et permettre l'accès à la clé de chiffrement en fonction de la comparaison de la première et de la seconde synthèse de configuration.
CA2902294A 2013-03-15 2014-03-14 Zone securisee sur machine virtuelle pour communications numeriques Abandoned CA2902294A1 (fr)

Applications Claiming Priority (5)

Application Number Priority Date Filing Date Title
US201361791632P 2013-03-15 2013-03-15
US61/791,632 2013-03-15
US201361808774P 2013-04-05 2013-04-05
US61/808,774 2013-04-05
PCT/IB2014/059845 WO2014141206A1 (fr) 2013-03-15 2014-03-14 Zone sécurisée sur machine virtuelle pour communications numériques

Publications (1)

Publication Number Publication Date
CA2902294A1 true CA2902294A1 (fr) 2014-09-18

Family

ID=50685975

Family Applications (1)

Application Number Title Priority Date Filing Date
CA2902294A Abandoned CA2902294A1 (fr) 2013-03-15 2014-03-14 Zone securisee sur machine virtuelle pour communications numeriques

Country Status (3)

Country Link
EP (1) EP2973201A1 (fr)
CA (1) CA2902294A1 (fr)
WO (1) WO2014141206A1 (fr)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN116578390A (zh) * 2023-07-04 2023-08-11 摩尔线程智能科技(北京)有限责任公司 驱动的通信方法、服务器、图形处理器、设备及芯片

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106211144B (zh) * 2015-04-30 2020-06-16 华为技术有限公司 一种移动终端的通信方法及移动终端
CN105825128B (zh) * 2016-03-15 2020-05-19 华为技术有限公司 一种数据输入方法、装置及用户设备
CN112005237A (zh) * 2018-04-30 2020-11-27 谷歌有限责任公司 安全区中的处理器与处理加速器之间的安全协作

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP2113855A1 (fr) * 2008-04-28 2009-11-04 Forschungszentrum Karlsruhe GmbH Procédé de gestion et de manipulation de plusieurs systèmes de fonctionnement dans un ordinateur ou réseau d'ordinateurs
EP2462507B1 (fr) * 2009-08-04 2019-07-24 Carnegie Mellon University Procédés et appareil pour chemin sécurisé vérifiable par l'utilisateur en présence d'un logiciel malveillant

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN116578390A (zh) * 2023-07-04 2023-08-11 摩尔线程智能科技(北京)有限责任公司 驱动的通信方法、服务器、图形处理器、设备及芯片
CN116578390B (zh) * 2023-07-04 2023-09-12 摩尔线程智能科技(北京)有限责任公司 驱动的通信方法、服务器、图形处理器、设备及芯片

Also Published As

Publication number Publication date
EP2973201A1 (fr) 2016-01-20
WO2014141206A1 (fr) 2014-09-18

Similar Documents

Publication Publication Date Title
US20140281560A1 (en) Secure zone on a virtual machine for digital communications
US20140282543A1 (en) Secure zone on a virutal machine for digital communications
CA2918596C (fr) Serveur securise sur un systeme avec des machines virtuelles
US9698988B2 (en) Management control method, apparatus, and system for virtual machine
CN105745661B (zh) 对权限管理的内容的基于策略的受信任的检测
JP2022505355A (ja) 周辺デバイス
US8694781B1 (en) Techniques for providing hardware security module operability
US20180183578A1 (en) Provisioning keys for virtual machine scaling
EP2672673B1 (fr) Appareil et méthode pour traitement de données sécurisé
US20190342293A1 (en) Secure Zone for Secure Purchases
EP3776315A1 (fr) Gestion de licences d'instances d'un environnement d'exécution de confiance
KR20200085724A (ko) 호스트 시스템과 데이터 처리 가속기 사이의 보안 통신을 제공하기 위한 방법 및 시스템
US11727115B2 (en) Secured computer system
CA2902294A1 (fr) Zone securisee sur machine virtuelle pour communications numeriques
US10771249B2 (en) Apparatus and method for providing secure execution environment for mobile cloud
WO2019185126A1 (fr) Gestion d'instance d'un environnement d'exécution de confiance
Brasser et al. Softer Smartcards: Usable Cryptographic Tokens with Secure Execution
Mohanty et al. Media data protection during execution on mobile platforms–A review
JP6741236B2 (ja) 情報処理装置
US20240037217A1 (en) Digital content management through on-die cryptography and remote attestation
KR20100031408A (ko) 네크워크 시스템에서 가상화 및 신뢰 플랫폼 모듈을 이용한데이터 보안 처리 방법 및 기록매체

Legal Events

Date Code Title Description
FZDE Discontinued

Effective date: 20180314

FZDE Discontinued

Effective date: 20180314