发明授权
- 专利标题: Method for enforcing resource access control in computer systems
- 专利标题(中): 在计算机系统中执行资源访问控制的方法
-
申请号: US12890040申请日: 2010-09-24
-
公开(公告)号: US08789170B2公开(公告)日: 2014-07-22
- 发明人: Manoj R. Sastry , Ioannis T. Schoinas , Daniel M. Cermak
- 申请人: Manoj R. Sastry , Ioannis T. Schoinas , Daniel M. Cermak
- 申请人地址: US CA Santa Clara
- 专利权人: Intel Corporation
- 当前专利权人: Intel Corporation
- 当前专利权人地址: US CA Santa Clara
- 主分类号: G06F12/14
- IPC分类号: G06F12/14
摘要:
A method and system for enforcing access control to system resources and assets. Security attributes associated with devices that initiate transactions in the system are automatically generated and forwarded with transaction messages. The security attributes convey access privileges assigned to each initiator. One or more security enforcement mechanisms are implemented in the system to evaluate the security attributes against access policy requirements to access various system assets and resources, such as memory, registers, address ranges, etc. If the privileges identified by the security attributes indicate the access request is permitted, the transaction is allowed to proceed. The security attributes of the initiator scheme provides a modular, consistent secure access enforcement scheme across system designs.
公开/授权文献
信息查询