Invention Grant
- Patent Title: Method and system for co-privileged security domains
-
Application No.: US15857118Application Date: 2017-12-28
-
Publication No.: US10747686B2Publication Date: 2020-08-18
- Inventor: Paul E. Makowski , Benjamin L. Schmidt , Maxwell J. Koo
- Applicant: Narf Industries, LLC
- Applicant Address: US CA San Francisco
- Assignee: NARF INDUSTRIES, LLC
- Current Assignee: NARF INDUSTRIES, LLC
- Current Assignee Address: US CA San Francisco
- Agency: Kwan & Olynick LLP
- Main IPC: G06F12/14
- IPC: G06F12/14 ; G06F21/78 ; G06F21/51 ; G06F21/74 ; G06F12/1009 ; G06F21/57

Abstract:
A system and method is provided for secure establishment of a trusted enclave among co-privileged executable code. The system comprises one or more processors; execute only memory; and one or more programs stored in the memory. The one or more programs comprise instructions to establish a trusted enclave and an untrusted enclave in kernel space code, wherein the trusted enclave and the untrusted enclave are co-privileged from the perspective of the processor. The trusted code has the ability to modify page tables and the untrusted code does not have the ability to modify page tables. Any changes to memory mappings involve the trusted code. Page tables are mapped as read-only during execution of the untrusted code and mapped as writeable only during execution of the trusted code.
Public/Granted literature
- US20180181498A1 METHOD AND SYSTEM FOR CO-PRIVILEGED SECURITY DOMAINS Public/Granted day:2018-06-28
Information query