CN110998545B - 具有安全模块的计算机系统软件/固件和处理器单元 - Google Patents

具有安全模块的计算机系统软件/固件和处理器单元 Download PDF

Info

Publication number
CN110998545B
CN110998545B CN201880048728.8A CN201880048728A CN110998545B CN 110998545 B CN110998545 B CN 110998545B CN 201880048728 A CN201880048728 A CN 201880048728A CN 110998545 B CN110998545 B CN 110998545B
Authority
CN
China
Prior art keywords
security module
processor
data
computer
cache
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201880048728.8A
Other languages
English (en)
Chinese (zh)
Other versions
CN110998545A (zh
Inventor
A.努内兹门西亚斯
J.C.朗
M.雷克滕沃尔德
U.迈耶
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
International Business Machines Corp
Original Assignee
International Business Machines Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by International Business Machines Corp filed Critical International Business Machines Corp
Publication of CN110998545A publication Critical patent/CN110998545A/zh
Application granted granted Critical
Publication of CN110998545B publication Critical patent/CN110998545B/zh
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F12/00Accessing, addressing or allocating within memory systems or architectures
    • G06F12/02Addressing or allocation; Relocation
    • G06F12/08Addressing or allocation; Relocation in hierarchically structured memory systems, e.g. virtual memory systems
    • G06F12/0802Addressing of a memory level in which the access to the desired data or data block requires associative addressing means, e.g. caches
    • G06F12/0875Addressing of a memory level in which the access to the desired data or data block requires associative addressing means, e.g. caches with dedicated cache, e.g. instruction or stack
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F12/00Accessing, addressing or allocating within memory systems or architectures
    • G06F12/14Protection against unauthorised use of memory or access to memory
    • G06F12/1408Protection against unauthorised use of memory or access to memory by using cryptography
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F13/00Interconnection of, or transfer of information or other signals between, memories, input/output devices or central processing units
    • G06F13/14Handling requests for interconnection or transfer
    • G06F13/20Handling requests for interconnection or transfer for access to input/output bus
    • G06F13/24Handling requests for interconnection or transfer for access to input/output bus using interrupt
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F2212/00Indexing scheme relating to accessing, addressing or allocation within memory systems or architectures
    • G06F2212/10Providing a specific technical effect
    • G06F2212/1052Security improvement

Landscapes

  • Engineering & Computer Science (AREA)
  • Theoretical Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • General Engineering & Computer Science (AREA)
  • General Physics & Mathematics (AREA)
  • Computer Security & Cryptography (AREA)
  • Memory System Of A Hierarchy Structure (AREA)
  • Storage Device Security (AREA)
CN201880048728.8A 2017-07-25 2018-07-23 具有安全模块的计算机系统软件/固件和处理器单元 Active CN110998545B (zh)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
US15/658,441 US10534725B2 (en) 2017-07-25 2017-07-25 Computer system software/firmware and a processor unit with a security module
US15/658,441 2017-07-25
PCT/IB2018/055462 WO2019021153A1 (en) 2017-07-25 2018-07-23 COMPUTER SYSTEM SOFTWARE / COMPUTER SOFTWARE AND PROCESSOR UNIT WITH SECURITY MODULE

Publications (2)

Publication Number Publication Date
CN110998545A CN110998545A (zh) 2020-04-10
CN110998545B true CN110998545B (zh) 2023-05-26

Family

ID=65037918

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201880048728.8A Active CN110998545B (zh) 2017-07-25 2018-07-23 具有安全模块的计算机系统软件/固件和处理器单元

Country Status (6)

Country Link
US (3) US10534725B2 (https=)
JP (1) JP6955619B2 (https=)
CN (1) CN110998545B (https=)
DE (1) DE112018002947T5 (https=)
GB (1) GB2578410B (https=)
WO (1) WO2019021153A1 (https=)

Families Citing this family (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US10534725B2 (en) 2017-07-25 2020-01-14 International Business Machines Corporation Computer system software/firmware and a processor unit with a security module
EP4273704A3 (en) * 2018-06-29 2024-01-10 INTEL Corporation Techniques to support a holistic view of cache class of service for a processor cache
US11307857B2 (en) 2019-12-05 2022-04-19 Marvell Asia Pte, Ltd. Dynamic designation of instructions as sensitive for constraining multithreaded execution
US11372647B2 (en) 2019-12-05 2022-06-28 Marvell Asia Pte, Ltd. Pipelines for secure multithread execution
CN111343041B (zh) * 2020-01-19 2021-11-02 苏州浪潮智能科技有限公司 一种风扇状态监控方法和装置
CN115080158B (zh) * 2021-03-12 2024-07-09 Oppo广东移动通信有限公司 界面显示方法、装置、终端设备及计算机可读存储介质
US12314755B2 (en) 2021-12-03 2025-05-27 International Business Machines Corporation Scheduling a secure code segment on a processor core of a processing unit
US12602466B2 (en) * 2021-12-03 2026-04-14 International Business Machines Corporation Operating a secure code segment on a processor core of a processing unit
US12592818B2 (en) * 2024-09-03 2026-03-31 Thales Dis Cpl Usa, Inc. Tamper response against physical and logical attacks on an hsm

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104484284A (zh) * 2013-03-31 2015-04-01 英特尔公司 用于为安全飞地页面高速缓存提供高级分页能力的指令和逻辑
WO2015157690A1 (en) * 2014-04-11 2015-10-15 Rubicon Labs, Inc. System and method for sharing data securely

Family Cites Families (17)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6789197B1 (en) * 1994-10-27 2004-09-07 Mitsubishi Corporation Apparatus for data copyright management system
JPH08305558A (ja) * 1995-04-27 1996-11-22 Casio Comput Co Ltd 暗号化プログラム演算装置
US6615349B1 (en) * 1999-02-23 2003-09-02 Parsec Sight/Sound, Inc. System and method for manipulating a computer file and/or program
JP2005227995A (ja) * 2004-02-12 2005-08-25 Sony Corp 情報処理装置、および情報処理方法、並びにコンピュータ・プログラム
US20070014403A1 (en) * 2005-07-18 2007-01-18 Creative Technology Ltd. Controlling distribution of protected content
KR20090082349A (ko) 2006-08-24 2009-07-30 첨비 인더스트리즈, 인코포레이티드 네트워크화된 어플리케이션 공유 시스템에서 사용하기 위한설정가능한 개인용 시청각 장치
US8671285B2 (en) 2010-05-25 2014-03-11 Via Technologies, Inc. Microprocessor that fetches and decrypts encrypted instructions in same time as plain text instructions
US20140281587A1 (en) * 2013-03-14 2014-09-18 Ologn Technologies Ag Systems, methods and apparatuses for using a secure non-volatile storage with a computer processor
US9231923B1 (en) 2013-11-12 2016-01-05 Amazon Technologies, Inc. Secure data destruction in a distributed environment using key protection mechanisms
US10169618B2 (en) * 2014-06-20 2019-01-01 Cypress Semiconductor Corporation Encryption method for execute-in-place memories
US9928080B2 (en) 2014-09-30 2018-03-27 International Business Machines Corporation Hardware security module access management in a cloud computing environment
US9715462B2 (en) 2015-04-02 2017-07-25 International Business Machines Corporation Protecting contents of storage
US9798678B2 (en) 2015-04-02 2017-10-24 International Business Machines Corporation Protecting storage from unauthorized access
US10089245B2 (en) * 2015-05-18 2018-10-02 Hewlett Packard Enterprise Development Lp Management of encryption keys for multi-mode network storage device
US9767320B2 (en) * 2015-08-07 2017-09-19 Qualcomm Incorporated Hardware enforced content protection for graphics processing units
US9432183B1 (en) 2015-12-08 2016-08-30 International Business Machines Corporation Encrypted data exchange between computer systems
US10534725B2 (en) 2017-07-25 2020-01-14 International Business Machines Corporation Computer system software/firmware and a processor unit with a security module

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104484284A (zh) * 2013-03-31 2015-04-01 英特尔公司 用于为安全飞地页面高速缓存提供高级分页能力的指令和逻辑
WO2015157690A1 (en) * 2014-04-11 2015-10-15 Rubicon Labs, Inc. System and method for sharing data securely

Also Published As

Publication number Publication date
US20190034357A1 (en) 2019-01-31
US20200110712A1 (en) 2020-04-09
JP2020528608A (ja) 2020-09-24
DE112018002947T5 (de) 2020-04-02
GB202002174D0 (en) 2020-04-01
CN110998545A (zh) 2020-04-10
US20190034356A1 (en) 2019-01-31
JP6955619B2 (ja) 2021-10-27
GB2578410A (en) 2020-05-06
GB2578410B (en) 2020-10-28
WO2019021153A1 (en) 2019-01-31
US10534725B2 (en) 2020-01-14
US11204881B2 (en) 2021-12-21
US10528487B2 (en) 2020-01-07

Similar Documents

Publication Publication Date Title
CN110998545B (zh) 具有安全模块的计算机系统软件/固件和处理器单元
JP6347831B2 (ja) ハイパーバイザに制御されるシステムにおいてゲスト・イベントを処理するための方法、データ処理プログラム、コンピュータ・プログラム製品、およびデータ処理システム
US9519498B2 (en) Virtual machine assurances
US10235304B2 (en) Multi-crypto-color-group VM/enclave memory integrity method and apparatus
US8812871B2 (en) Method and apparatus for trusted execution in infrastructure as a service cloud environments
CN107454958B (zh) 使用多个嵌套页表隔离客户机代码和数据
US10372628B2 (en) Cross-domain security in cryptographically partitioned cloud
EP2577474B1 (en) Virtual machine memory compartmentalization in multi-core architectures
US11755753B2 (en) Mechanism to enable secure memory sharing between enclaves and I/O adapters
US9798678B2 (en) Protecting storage from unauthorized access
KR20210021285A (ko) 안전한 컴퓨터 시스템
US12393440B2 (en) Safe entropy source for encrypted virtual machines
US9772954B2 (en) Protecting contents of storage
WO2023092297A1 (en) Customers key protection for cloud native deployments

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant