- 专利标题: SOFTWARE ISOLATION USING EVENT DRIVEN MULTI-THREADING
-
申请号: US17456738申请日: 2021-11-29
-
公开(公告)号: US20230169163A1公开(公告)日: 2023-06-01
- 发明人: Michael Andrew Fischer , Roderick Lee Dorris
- 申请人: NXP B.V.
- 申请人地址: NL Eindhoven
- 专利权人: NXP B.V.
- 当前专利权人: NXP B.V.
- 当前专利权人地址: NL Eindhoven
- 主分类号: G06F21/54
- IPC分类号: G06F21/54 ; G06F21/55 ; G06F9/48 ; G06F9/30
摘要:
An enhanced security of multiple software processes executing on a computer system is provided by isolating those processes from each other and from access to system hardware resources. Embodiments provide such isolation by executing kernel software that manages hardware and controls physical address space on a separate hardware thread (e.g., in an isolation domain) from the process threads executing application programs (e.g., in execution domains). This renders the software executing in the isolation domain safe from privilege escalation attacks and permits implementation of enforceable isolation between execution systems. A multithreaded processor having switch-on-event multithreading is used to provide software isolation and hardware-controlled handling of a subset of system services by a different hardware thread than the one requesting the service.
信息查询