- 专利标题: SCALABLE VIRTUAL MACHINE OPERATION INSIDE TRUST DOMAINS WITHIN THE TRUST DOMAIN ARCHITECTURE
-
申请号: EP22203986.9申请日: 2020-03-21
-
公开(公告)号: EP4152194A1公开(公告)日: 2023-03-22
- 发明人: Sahita, Ravi , Kung, Tin-Cheung , Shanbhogue, Vedvyas , Huntley, Barry E. , Aharon, Arie
- 申请人: Intel Corporation
- 申请人地址: US Santa Clara, CA 95054 2200 Mission College Boulevard
- 代理机构: Goddar, Heinz J.
- 优先权: US201916456628 20190628
- 主分类号: G06F21/57
- IPC分类号: G06F21/57 ; G06F9/455
摘要:
Implementations describe a computing system that implements a plurality of virtual machines inside a trust domain (TD), enabled via a secure arbitration mode (SEAM) of the processor. A processor includes one or more registers to store a SEAM range of memory, a TD key identifier of a TD private encryption key. The processor is capable of initializing a trust domain resource manager (TDRM) to manage the TD, and a virtual machine monitor within the TD to manage the plurality of virtual machines therein. The processor is further capable of exclusively associating a plurality of memory pages with the TD, wherein the plurality of memory pages associated with the TD is encrypted with a TD private encryption key inaccessible to the TDRM. The processor is further capable of using the SEAM range of memory, inaccessible to the TDRM, to provide isolation between the TDRM and the plurality of virtual machines.
公开/授权文献
信息查询