VIRTUALIZATION BASED INTRA-BLOCK WORKLOAD ISOLATION
    15.
    发明公开
    VIRTUALIZATION BASED INTRA-BLOCK WORKLOAD ISOLATION 审中-公开
    VIRTUALISIERUNG AUF BASIS VON嵌段-BelstungSISOLIERUNG

    公开(公告)号:EP3123388A4

    公开(公告)日:2017-08-23

    申请号:EP15768805

    申请日:2015-03-26

    Applicant: INTEL CORP

    Abstract: Generally, this disclosure provides systems, devices, methods and computer readable media for virtualization-based intra-block workload isolation. The system may include a virtual machine manager (VMM) module to create a secure virtualization environment or sandbox. The system may also include a processor block to load data into a first region of the sandbox and to generate a workload package based on the data. The workload package is stored in a second region of the sandbox. The system may further include an operational block to fetch and execute instructions from the workload package.

    Abstract translation: 通常,本公开提供了用于基于虚拟化的块内工作负载隔离的系统,设备,方法和计算机可读介质。 该系统可以包括虚拟机管理器(VMM)模块以创建安全虚拟化环境或沙箱。 该系统还可以包括处理器块以将数据加载到沙箱的第一区域并基于该数据生成工作负载包。 工作负载包存储在沙箱的第二个区域中。 该系统可以进一步包括操作块以从工作负载包取出并执行指令。

    METHOD AND APPARATUS FOR MEMORY ENCRYPTION WITH INTEGRITY CHECK AND PROTECTION AGAINST REPLAY ATTACKS
    16.
    发明公开
    METHOD AND APPARATUS FOR MEMORY ENCRYPTION WITH INTEGRITY CHECK AND PROTECTION AGAINST REPLAY ATTACKS 有权
    方法和设备用于加密一个程序完整性测试和保护免受攻击PLAY

    公开(公告)号:EP2726991A4

    公开(公告)日:2015-04-08

    申请号:EP11868426

    申请日:2011-06-29

    Applicant: INTEL CORP

    Abstract: A method and apparatus to provide cryptographic integrity checks and replay protection to protect against hardware attacks on system memory is provided. A mode of operation for block ciphers enhances the standard XTS-AES mode of operation to perform memory encryption by extending a tweak to include a “time stamp” indicator. A tree-based replay protection scheme uses standard XTS-AES to encrypt contents of a cache line in the system memory. A Message-Authentication Code (MAC) for the cache line is encrypted using enhanced XTS-AES and a “time stamp” indicator associated with the cache line. The “time stamp indicator” is stored in a processor.

    Abstract translation: 一种方法和装置,以提供加密的完整性检查和重放保护,以防止硬件攻击上提供系统内存。 操作的块密码A模式增强操作的标准XTS-AES模式通过扩展一个调整为包括“时间戳”指示器来执行存储器加密。 基于树的重放保护方案采用标准的XTS-AES加密系统内存的缓存行的内容。 用于高速缓存线A的消息认证码(MAC)是使用增强XTS-AES和与高速缓存行关联的“时间戳”指示器加密。 的“时间戳指示符”被存储在处理器中。

Patent Agency Ranking