Invention Grant
- Patent Title: Systems, methods, and apparatus for securing virtual machine control structures
-
Application No.: US16108395Application Date: 2018-08-22
-
Publication No.: US10691482B2Publication Date: 2020-06-23
- Inventor: Kai Cong , Karanvir Grewal , David M. Durham
- Applicant: Intel Corporation
- Applicant Address: US CA Santa Clara
- Assignee: Intel Corporation
- Current Assignee: Intel Corporation
- Current Assignee Address: US CA Santa Clara
- Agency: Trop, Pruner & Hu, P.C.
- Main IPC: G06F9/00
- IPC: G06F9/00 ; G06F9/455 ; G06F21/60 ; G06F12/109 ; G06F12/14 ; G06F21/62 ; G06F21/53

Abstract:
A data processing system with technology to secure a VMCS comprises random access memory (RAM) and a processor in communication with the RAM. The processor comprises virtualization technology that enables the processor to (a) execute host software in root mode and (b) execute guest software from the RAM in non-root mode in a virtual machine (VM) that is based at least in part on a virtual machine control data structure (VMCDS) for the VM. The processor also comprises a root security profile to specify access restrictions to be imposed when the host software attempts to read the VMCDS in root mode. Other embodiments are described and claimed.
Public/Granted literature
- US20180357093A1 Systems, Methods, And Apparatus For Securing Virtual Machine Control Structures Public/Granted day:2018-12-13
Information query