摘要:
A video decoder system, such as for use with MPEG video compression, uses a previous B-frame as an additional prediction source for the current B-frame, along with the past and future reference frames as defined by the MPEG specification. In one embodiment, a given macroblock within a current B-frame 'N' reuses pixel values from the previous B-frame 'N-1' if they are 'similar enough' to the anticipated pixels which would otherwise need to be computed. For a given macroblock, motion vectors for both B-frames are compared: if they differ by less than a similarity threshold value, then the pixel values from the previous B-frame are reused without further computation. The similarity threshold may be adaptively adjusted to reduce the computational burden of video decompression, while affording a gradual degradation of picture quality, rather than wholesale skipping of entire frames.
摘要:
A computer system (10, 20) includes a processor which may initialize a secure execution mode by executing a security initialization instruction. Further, the processor may operate in the secure execution mode by executing a secure operating system code segment. The computer system also includes an input/output (I/O) interface (120, 220) coupled to the processor via an I/O link (225). The I/O interface may receive transactions performed as a result of the execution of the security initialization instruction. The transactions include at least a portion of the secure operating system code segment. The I/O interface may also determine whether the processor is a source of the transactions. The computer system further includes a security services processor (130) coupled to the I/O interface via a peripheral bus (135). The I/O interface may convey the transactions to the security services processor dependent upon determining that the processor is the source of the transactions.
摘要:
A communications system (10) includes a physical layer hardware unit (220) and a processing unit (110). The physical layer hardware unit (220) is adapted to communicate data over a communications channel (40) in accordance with assigned transmission parameters. The physical layer hardware unit (220) is adapted to receive an incoming signal over the communications channel (40) and sample the incoming signal to generate a digital received signal. The processing unit (110) is adapted to execute a standard mode driver (240) in a standard mode of operation and a privileged mode driver (250) in a privileged mode of operation. The standard mode driver (240) includes program instructions adapted to extract control codes (280) from the digital received signal and configure the physical layer hardware unit (220) assigned transmission parameters based on the control codes (280). The privileged mode driver (250) includes prograni instructions adapted to independently extract secure control codes (310) from the digital received signal, determine an operational characteristic of the physical layer hardware unit (220), and signal a security violation in response to the operational characteristic being inconsistent with the secure control codes (310).
摘要:
A communications system (10) includes a physical layer hardware unit (220) and a processing unit (110). The physical layer hardware unit (220) is adapted to communicate data over a communications channel (40) in accordance with assigned transmission parameters. The physical layer hardware unit (220) is adapted to receive an incoming signal over the communications channel (40) and sample the incoming signal to generate a digital received signal. The processing unit (110) is adapted to execute a standard mode driver (240) in a standard mode of operation and a privileged mode driver (250) in a privileged mode of operation. The standard mode driver (240) includes program instructions adapted to extract encrypted data (260) from the digital received signal and pass the encrypted data (260) to the privileged mode driver (250). The privileged mode driver (250) includes program instructions adapted to decrypt the encrypted data (260) to generate decrypted data (270) including control codes (280) and transfer the control codes (280) to the physical layer hardware unit (220). The physical layer hardware unit (220) is adapted to configure its assigned transmission parameters based on the control codes (280). A method for configuring a transceiver (50) includes receiving encrypted data (260) over a communications channel in a standard processing mode of a processing unit (110); transitioning the processing unit (110) into a privileged processing mode; decrypting the encrypted data (260) in the privileged processing mode; extracting control codes (280) from the decrypted data (270) in the privileged processing mode; and transmitting an upstream signal over the communications channel (40) based on transmission assignments defined by the control codes (280).
摘要:
The initialization of a computer system (10) including a secure execution mode-capable processor (100) includes storing a secure operating system code segment loader to a plurality of locations corresponding to a particular range of addresses within a system memory (110). The method also includes executing a security initialization instruction. Executing the security initialization instruction may cause several operations to be performed including transmitting a start transaction including a base address of the particular range of addresses. In addition, executing the security instruction may also cause another operation to be performed including retrieving the secure operating system code segment loader from the system memory and transmitting the secure operating system code segment loader for validation as a plurality of data transactions.
摘要:
A method and an apparatus for performing an I/O device access using targeted security. A software object (350) is executed. A security level for the software object (350) is established. A multi-table input/output (I/O) space access is performed using at least one of the security levels. The function of the software object (350) is executed.
摘要:
Methods, devices, and systems for closing back door access mechanisms. A processor includes a first register configured to store one or more hardware-debug-test (HDT) enable bits, a first control logic coupled to receive a plurality of HDT input signals, and a second control logic coupled to the first register. The first control logic is coupled to access the first register. The second control logic is configured to store one or more default values in the first register in response to a reset of the processor. Another processor includes a first control logic coupled to receive a plurality of microcode inputs, a first register coupled to the first control logic, and a second control logic coupled to the first register. The first register is configured to store one or more microcode loader enable bits. The second control logic is configured to store one or more default values in the first register in response to a reset of the processor.
摘要:
A communication system (10) includes a physical layer hardware unit (220) and a processing unit (100). The physical layer hardware unit (220) is adapted to communicate data over a communications channel (40) in accordance with assigned transmission parameters. The physical layer hardware unit (220) is adapted to receive an incoming signal over the communications channel (40) and sample the incoming signal to generate a digital received signal. The processing unit (100) is adapted to execute a software driver (240) including program instructions adapted to extract control codes from the digital received signal, generate an authentication code, and transfer the control codes and the authentication code to the physical layer hardware unit (220). The physical layer hardware unit (220) is adapted to signal a security violation in response to the control codes being inconsistent with the authentication code.
摘要:
The present invention provides a method and apparatus for securing portions of a memory. The method includes identifying information for protection and indicating at least one physical address of a memory that houses the information as at least one of read and write disabled. The method includes receiving a request from a program to access the information. The method further includes accessing the information in response to determining that the program has the authority to access the information.
摘要:
A video decoder system, such as for use with MPEG video compression, uses a previous B-frame as an additional prediction source for the current B-frame, along with the past and future reference frames as defined by the MPEG specification. In one embodiment, a given macroblock within a current B-frame "N" reuses pixel values from the previous B-frame "N-1" if they are "similar enough" to the anticipated pixels which would otherwise need to be computed. For a given macroblock, motion vectors for both B-frames are compared: if they differ by less than a similarity threshold value, then the pixel values from the previous B-frame are reused without further computation. The similarity threshold may be adaptively adjusted to reduce the computational burden of video decompression, while affording a gradual degradation of picture quality, rather than wholesale skipping of entire frames.