-
公开(公告)号:GB2596012B
公开(公告)日:2023-01-11
申请号:GB202113069
申请日:2020-03-06
Applicant: IBM
Inventor: JONATHAN BRADBURY , MARTIN SCHWIDEFSKY , CHRISTIAN BORNTRAEGER , LISA CRANTON HELLER , HEIKO CARSTENS , FADI BUSABA
Abstract: An example computer-implemented method includes presenting, by a hardware control of a computing system, an exception to an untrusted entity when the untrusted entity accesses a secure page stored in a memory of the computing system, the exception preventing the untrusted entity from accessing the secure page. The method further includes, in response to the exception, issuing, by the untrusted entity, an export call routine. The method further includes executing, by a secure interface control of the computing system, the export call routine.
-
公开(公告)号:GB2595191B
公开(公告)日:2022-09-21
申请号:GB202112124
申请日:2020-01-27
Applicant: IBM
Inventor: CEDRIC LICHTENAU , REID COPELAND , PETRA LEBER , JONATHAN BRADBURY , SILVIA MELITTA MUELLER , XIN GUO
Abstract: Digit validation check control for execution of an instruction. A process obtains an instruction to perform operation(s) using input value(s). The instruction includes a no validation indicator for controlling whether digit validation check control is enabled for execution of the instruction. The process executes the instruction, including determining, based on the no validation indicator, whether digit validation check control is enabled for execution of the instruction, and performing processing based on the determining. Based on the no validation indicator being set to a defined value, digit validation check control is enabled and the processing includes forcing a digit check error indicator output by the executing to indicate no digit check error with respect to the at least one input value.
-
公开(公告)号:GB2596012A
公开(公告)日:2021-12-15
申请号:GB202113069
申请日:2020-03-06
Applicant: IBM
Inventor: JONATHAN BRADBURY , MARTIN SCHWIDEFSKY , CHRISTIAN BORNTRAEGER , LISA CRANTON HELLER , HEIKO CARSTENS , FADI BUSABA
IPC: G06F21/57
Abstract: An example computer-implemented method includes presenting, by a hardware control of a computing system, an exception to an untrusted entity when the untrusted entity access a secure page stored in a memory of the computing system, the exception preventing the untrusted entity from accessing the secure page. The method further includes, in response to the exception, issuing, by the untrusted entity, an export call routine. The method further includes executing, by a secure interface control of the computing system, the export call routine.
-
公开(公告)号:BR112019006612A2
公开(公告)日:2019-07-02
申请号:BR112019006612
申请日:2017-09-26
Applicant: IBM
Inventor: JONATHAN BRADBURY , REID COPELAND , SYLVIA MELITTA MUELLER
IPC: G06F9/30
Abstract: uma instrução gera um valor para uso no processamento dentro de um ambiente computacional. a instrução obtém um controle de sinal associado à instrução e desloca um valor de entrada da instrução em uma direção especificada por uma quantidade selecionada para fornecer um resultado. o resultado é colocado em um primeiro local designado em um registrador, e o sinal, que é baseado no controle de sinal, é colocado em um segundo local designado do registrador. o resultado e o sinal fornecem um valor sinalizado para ser usado no processamento dentro do ambiente computacional.
-
公开(公告)号:MX2019003610A
公开(公告)日:2019-06-17
申请号:MX2019003610
申请日:2017-09-21
Applicant: IBM
Inventor: JONATHAN BRADBURY , REID COPELAND , SILVIA MELITTA MUELLER , STEVEN CARLOUGH
Abstract: Se ejecuta una instrucción para llevar a cabo una operación de multiplicación y desplazamiento. La ejecución incluye multiplicar un primer valor y un segundo valor obtenido por la instrucción para obtener un producto. El producto se desplaza en una dirección especificada por una cantidad seleccionada definida por el usuario para proporcionar un resultado, y el resultado se coloca en una ubicación seleccionada. El resultado será utilizado en el procesamiento dentro del entorno de computación.
-
公开(公告)号:GB2607793A
公开(公告)日:2022-12-14
申请号:GB202212343
申请日:2020-12-10
Applicant: IBM
Inventor: REINHARD BUENDGEN , VOLKER URBAN , RICHARD KISLEY , JONATHAN BRADBURY , TORSTEN HENDEL , HARALD FREUDENBERGER , BENEDIKT KLOTZ , KLAUS WERNER , MARKUS SELVE
IPC: G06F21/60
Abstract: A security module, such as a cryptographic adapter, is reserved for a secure guest of a computing environment. The reserving includes binding one or more queues of the security module to the secure guest. The one or more queues are then managed based on one or more actions relating to the reservation.
-
公开(公告)号:GB2596024B
公开(公告)日:2022-04-27
申请号:GB202113906
申请日:2020-03-06
Applicant: IBM
Inventor: UTZ BACHER , REINHARD BUENDGEN , JONATHAN BRADBURY , LISA HELLER , FADI BUSABA
IPC: G06F9/455
Abstract: According to one or more embodiments of the present invention, a computer implemented method includes receiving a query for an amount of storage in memory of a computer system to be donated to a secure interface control of the computer system. The secure interface control can determine the amount of storage to be donated based on a plurality of secure entities supported by the secure interface control as a plurality of predetermined values. The secure interface control can return a response to the query indicative of the amount of storage as a response to the query. A donation of storage to secure for use by the secure interface control can be received based on the response to the query.
-
公开(公告)号:GB2595428B
公开(公告)日:2022-04-13
申请号:GB202113915
申请日:2020-02-27
Applicant: IBM
Inventor: FADI BUSABA , LISA HELLER , JONATHAN BRADBURY , CHRISTIAN BORNTRAEGER , CLAUDIO IMBRENDA
Abstract: According to one or more embodiments of the present invention, a computer implemented method includes executing, by a virtual machine that is executing on a host server, a stream of instructions, wherein an instruction from the stream of instructions is to be intercepted to a hypervisor. The method further includes, based on a determination that the virtual machine is a secure virtual machine, preventing the hypervisor from directly accessing any data of the secure virtual machine. The method further includes performing by a secure interface control of the host server, based on a determination that the instruction is not interpretable by the secure interface control itself, extracting one or more parameter data associated with the instruction from the secure virtual machine, and storing the parameter data into a buffer that is accessible by the hypervisor. The instruction is subsequently intercepted into the hypervisor.
-
公开(公告)号:GB2595428A
公开(公告)日:2021-11-24
申请号:GB202113915
申请日:2020-02-27
Applicant: IBM
Inventor: FADI BUSABA , LISA HELLER , JONATHAN BRADBURY , CHRISTIAN BORNTRAEGER , CLAUDIO IMBRENDA
Abstract: A computer implemented method is disclosed. The method includes executing, by a virtual machine that is executing on a host server, a stream of instructions, wherein an instruction from the stream of instructions is to be intercepted to a hypervisor. The method further includes, based on a determination that the virtual machine is a secure virtual machine, preventing the hypervisor from directly accessing any data of the secure virtual machine. The method further includes performing by a secure interface control of the host server, based on a determination that the instruction is not interpretable by the secure interface control itself, extracting one or more parameter data associated with the instruction from the secure virtual machine, and storing the parameter data into a buffer that is accessible by the hypervisor. The instruction is subsequently intercepted into the hypervisor.
-
公开(公告)号:GB2595191A
公开(公告)日:2021-11-17
申请号:GB202112124
申请日:2020-01-27
Applicant: IBM
Inventor: CEDRIC LICHTENAU , REID COPELAND , PETRA LEBER , JONATHAN BRADBURY , SILVIA MELITTA MUELLER , XIN GUO
IPC: G06F9/455
Abstract: Digit validation check control for execution of an instruction. A process obtains an instruction to perform operation(s) using input value(s). The instruction includes a no validation indicator for controlling whether digit validation check control is enabled for execution of the instruction. The process executes the instruction, including determining, based on the no validation indicator, whether digit validation check control is enabled for execution of the instruction, and performing processing based on the determining. Based on the no validation indicator being set to a defined value, digit validation check control is enabled and the processing includes forcing a digit check error indicator output by the executing to indicate no digit check error with respect to the at least one input value.
-
-
-
-
-
-
-
-
-