-
公开(公告)号:US20240119138A1
公开(公告)日:2024-04-11
申请号:US17960738
申请日:2022-10-05
Applicant: VMware, Inc.
Inventor: Ye LI , Anoop JAISHANKAR , John MANFERDELLI , David OTT , Andrei WARKENTIN
CPC classification number: G06F21/53 , G06F21/121 , G06F21/54
Abstract: The disclosure herein describes deploying a Virtual Secure Enclave (VSE) using a universal enclave binary and a Trusted Runtime (TR). A universal enclave binary is generated that includes a set of binaries of Instruction Set Architectures (ISAs) associated with Trusted Execution Environment (TEE) hardware backends. A TEE hardware backend is identified in association with a VSE-compatible device. A VSE that is compatible with the identified TEE hardware backend is generated on the VSE-compatible device and an ISA binary that matches the TEE hardware backend is selected from the universal enclave binary. The selected binary is linked to a runtime library of the TR and loads the linked binary into memory of the generated VSE. The execution of a trusted application is initiated in the generated VSE using a set of interfaces of the TR. The trusted application depends on the TR interfaces rather than the selected ISA binary.