Invention Grant
- Patent Title: System and method to deprivilege components of a virtual machine monitor
- Patent Title (中): 剥夺虚拟机监视器组件的系统和方法
-
Application No.: US11008911Application Date: 2004-12-10
-
Publication No.: US07757231B2Publication Date: 2010-07-13
- Inventor: Andrew V. Anderson , Steven M. Bennett , Erik Cota-Robles , Alain Kägi , Gilbert Neiger , Rajesh S. Madukkarumukumana , Sebastian Schoenberg , Richard Uhlig , Michael A. Rothman , Vincent J. Zimmer , Stalinselvaraj Jeyasingh
- Applicant: Andrew V. Anderson , Steven M. Bennett , Erik Cota-Robles , Alain Kägi , Gilbert Neiger , Rajesh S. Madukkarumukumana , Sebastian Schoenberg , Richard Uhlig , Michael A. Rothman , Vincent J. Zimmer , Stalinselvaraj Jeyasingh
- Applicant Address: US CA Santa Clara
- Assignee: Intel Corporation
- Current Assignee: Intel Corporation
- Current Assignee Address: US CA Santa Clara
- Agency: Hanley, Flight & Zimmerman, LLC
- Main IPC: G06F9/455
- IPC: G06F9/455 ; G06F9/46

Abstract:
In some embodiments, the invention involves a system to deprivilege components of a virtual machine monitor and enable deprivileged service virtual machines (SVMs) to handle selected trapped events. An embodiment of the invention is a hybrid VMM operating on a platform with hardware virtualization support. The hybrid VMM utilizes features from both hypervisor-based and host-based VMM architectures. In at least one embodiment, the functionality of a traditional VMM is partitioned into a small platform-dependent part called a micro-hypervisor (MH) and one or more platform-independent parts called service virtual machines (SVMs). The micro-hypervisor operates at a higher virtual machine (VM) privilege level than any SVM, while the SVM and other VMs may still have access to any instruction set architecture (ISA) privilege level. Other embodiments are described and claimed.
Public/Granted literature
- US20060130060A1 System and method to deprivilege components of a virtual machine monitor Public/Granted day:2006-06-15
Information query