Invention Grant
- Patent Title: Hypervisor secure event handling at a processor
-
Application No.: US16712190Application Date: 2019-12-12
-
Publication No.: US11842227B2Publication Date: 2023-12-12
- Inventor: David Kaplan , Jelena Ilic
- Applicant: ADVANCED MICRO DEVICES, INC.
- Applicant Address: US CA Santa Clara
- Assignee: Advanced Micro Devices, Inc.
- Current Assignee: Advanced Micro Devices, Inc.
- Current Assignee Address: US CA Santa Clara
- Main IPC: G06F9/54
- IPC: G06F9/54 ; G06F9/455 ; G06F21/55 ; G06F21/53

Abstract:
A virtualized computing environment is protected from a malicious hypervisor by restricting the hypervisor's access to one or more portions of an event (interrupt or exception) handling pathway of a guest virtual machine, wherein the guest virtual machine includes both a secure layer to manage security for the guest and one or more non-secure layers to handle event processing. The hypervisor is restricted from providing normal exception information to the guest virtual machine (referred to simply as a “guest” herein), and instead is only permitted to provide an event signal to the secure layer of the guest. In response to the event signal, the secure layer of the guest accesses a specified region of memory for the event information, reviews the information, and provides the information to another, non-secure, layer of the guest for processing only if the event information complies with specified security protocols.
Public/Granted literature
- US20210109798A1 HYPERVISOR SECURE EVENT HANDLING AT A PROCESSOR Public/Granted day:2021-04-15
Information query