Invention Grant
US08181176B2 Uniform storage device access using partial virtual machine executing within a secure enclave session
有权
使用在安全飞地会话中执行的部分虚拟机的统一存储设备访问
- Patent Title: Uniform storage device access using partial virtual machine executing within a secure enclave session
- Patent Title (中): 使用在安全飞地会话中执行的部分虚拟机的统一存储设备访问
-
Application No.: US12819943Application Date: 2010-06-21
-
Publication No.: US08181176B2Publication Date: 2012-05-15
- Inventor: Hua Zhou , Vincent J. Zimmer , Michael A. Rothman , Yi Qian , Junwei Stanley Chen , Fujin Huang
- Applicant: Hua Zhou , Vincent J. Zimmer , Michael A. Rothman , Yi Qian , Junwei Stanley Chen , Fujin Huang
- Applicant Address: US CA Santa Clara
- Assignee: Intel Corporation
- Current Assignee: Intel Corporation
- Current Assignee Address: US CA Santa Clara
- Agent Steven Skabrat
- Main IPC: G06F9/455
- IPC: G06F9/455 ; G06F3/00 ; G06F13/00

Abstract:
In a computing system having a processor package, an operating system, and a physical I/O device, a partial virtual machine is provided to instantiate a virtual I/O device corresponding to the physical I/O device, the virtual I/O device having a virtual I/O controller. The partial virtual machine includes an I/O port trap to capture an I/O request to the virtual I/O device by the operating system; an I/O controller emulator coupled to the I/O port trap to handle an I/O control request to the virtual I/O controller, when the I/O request comprises an I/O control request; an I/O device emulator coupled to the I/O port trap component to handle an I/O access request to communicate with the virtual I/O device, when the I/O request comprises an I/O access request; and a device driver coupled to the I/O controller emulator and the I/O device emulator to communicate with the physical I/O device based at least in part on the I/O control request and the I/O access request. The partial virtual machine executes within a secure enclave session within the processor package, improving security of I/O transactions by preventing access to the partial virtual machine by the operating system.
Public/Granted literature
- US20110314468A1 UNIFORM STORAGE DEVICE BY PARTIAL VIRTUALIZATION MACHINE Public/Granted day:2011-12-22
Information query