Invention Grant
- Patent Title: Memory encryption for virtual machines by hypervisor-controlled firmware
-
Application No.: US16943556Application Date: 2020-07-30
-
Publication No.: US11604673B2Publication Date: 2023-03-14
- Inventor: Michael Tsirkin
- Applicant: Red Hat, Inc.
- Applicant Address: US NC Raleigh
- Assignee: Red Hat, Inc.
- Current Assignee: Red Hat, Inc.
- Current Assignee Address: US NC Raleigh
- Agency: Lowenstein Sandler LLP
- Main IPC: G06F9/455
- IPC: G06F9/455 ; G06F12/1018 ; G06F12/14

Abstract:
Systems and methods for encryption support for virtual machines. An example method may comprise initializing, by a firmware module associated with a virtual machine running on a host computer system, an exclusion range register associated with the virtual machine with a value specifying a first portion of guest memory, wherein the first portion of the guest memory comprises an exclusion range marked as reserved; encrypting, by the firmware using an ephemeral encryption key, a second portion of the guest memory; booting, by a hypervisor of the host computer system, the virtual machine; and responsive to intercepting, by the hypervisor, a privileged instruction executed by the virtual machine, performing at least one of: copying data for performing the privileged instruction to the first portion of the guest memory or copying data for performing the privileged instruction from the first portion of the guest memory.
Public/Granted literature
- US20220035648A1 MEMORY ENCRYPTION FOR VIRTUAL MACHINES BY HYPERVISOR-CONTROLLED FIRMWARE Public/Granted day:2022-02-03
Information query