Method and Apparatus for Protected Code Execution on Clients
    21.
    发明申请
    Method and Apparatus for Protected Code Execution on Clients 有权
    客户端保护代码执行的方法和设备

    公开(公告)号:US20100161956A1

    公开(公告)日:2010-06-24

    申请号:US12343148

    申请日:2008-12-23

    IPC分类号: H04L9/00

    摘要: In one embodiment of the invention, a server may send encrypted material to a client. The client processor may decrypt and process the material, encrypt the results, and send the results back to the server. This sequence of events may occur while the execution or processing of the material is restricted to the client processor. Any material outside the client processor, such as material located in system memory, will be encrypted.

    摘要翻译: 在本发明的一个实施例中,服务器可以向客户端发送加密的资料。 客户端处理器可以解密和处理资料,加密结果,并将结果发送回服务器。 当材料的执行或处理被限制到客户机处理器时,可能发生这种事件序列。 客户端处理器外的任何材料(如位于系统存储器中的材料)将被加密。

    SYSTEM PARTITIONING TO PRESENT SOFTWARE AS PLATFORM LEVEL FUNCTIONALITY
    22.
    发明申请
    SYSTEM PARTITIONING TO PRESENT SOFTWARE AS PLATFORM LEVEL FUNCTIONALITY 有权
    系统将本软件作为平台级功能区分

    公开(公告)号:US20080244598A1

    公开(公告)日:2008-10-02

    申请号:US11694276

    申请日:2007-03-30

    IPC分类号: G06F9/50

    摘要: Embodiments of apparatuses, methods for partitioning systems, and partitionable and partitioned systems are disclosed. In one embodiment, a system includes processors and a partition manager. The partition manager is to allocate a subset of the processors to a first partition and another subset of the processors to a second partition. The first partition is to execute first operating system level software and the second partition is to execute second operating system level software. The first operating system level software is to manage the processors in the first partition as resources individually accessible to the first operating system level software, and the second operating system level software is to manage the processors in the second partition as resources individually accessible to the second operating system level software. The partition manager is also to present the second partition, including the second operating system level software, to the first operating system level software as platform level functionality embedded in the system.

    摘要翻译: 公开了装置的实施例,分区系统的方法以及可分割和分区的系统。 在一个实施例中,系统包括处理器和分区管理器。 分区管理器将处理器的子集分配给第一分区,另一个处理器子集分配给第二分区。 第一个分区是执行第一个操作系统级软件,第二个分区是执行第二个操作系统级软件。 第一操作系统级软件是将第一分区中的处理器作为第一操作系统级软件单独访问的资源进行管理,而第二操作系统级软件则将第二分区中的处理器作为第二分区可访问的资源进行管理 操作系统级软件。 分区管理器还将第二分区(包括第二操作系统级软件)呈现给第一操作系统级软件,作为嵌入系统中的平台级功能。

    Virtual and hidden service partition and dynamic enhanced third party data store
    23.
    发明授权
    Virtual and hidden service partition and dynamic enhanced third party data store 有权
    虚拟和隐藏服务分区和动态增强的第三方数据存储

    公开(公告)号:US08949565B2

    公开(公告)日:2015-02-03

    申请号:US12647538

    申请日:2009-12-27

    IPC分类号: G06F12/00 G06F21/80 G06F9/50

    CPC分类号: G06F21/80 G06F9/5077

    摘要: A system reserves and manages a hidden service partition through components of the hardware platform of a computing device. The hidden partition is not accessible by way of a host operating system on the computing device. A hardware platform controller provisions a portion of nonvolatile storage through configuration settings of the hardware platform controller. When the host system requests settings related to storage in the system, the request is routed through the interfaces of the hardware platform, and the hardware platform controller reports in accordance with the configuration settings, hiding the service partition. The hidden partition is dynamically modifiable through secure remote access to the hardware platform controller, not through the host system such as operating system or BIOS.

    摘要翻译: 系统通过计算设备的硬件平台的组件来保留和管理隐藏的服务分区。 隐藏的分区不能通过计算设备上的主机操作系统访问。 硬件平台控制器通过硬件平台控制器的配置设置来提供非易失性存储器的一部分。 当主机系统请求与系统存储相关的设置时,请求通过硬件平台的接口进行路由,硬件平台控制器根据配置设置进行报告,隐藏服务分区。 隐藏的分区可以通过安全远程访问硬件平台控制器而不是通过主机系统(如操作系统或BIOS)来动态修改。

    System partitioning to present software as platform level functionality including mode logic to maintain and enforce partitioning in first and configure partitioning in second mode
    25.
    发明授权
    System partitioning to present software as platform level functionality including mode logic to maintain and enforce partitioning in first and configure partitioning in second mode 有权
    系统分区将软件呈现为平台级功能,包括在第一种模式下首先维护和强制划分并配置分区的模式逻辑

    公开(公告)号:US08479208B2

    公开(公告)日:2013-07-02

    申请号:US11694276

    申请日:2007-03-30

    IPC分类号: G06F9/50

    摘要: Embodiments of apparatuses, methods for partitioning systems, and partitionable and partitioned systems are disclosed. In one embodiment, a system includes processors and a partition manager. The partition manager is to allocate a subset of the processors to a first partition and another subset of the processors to a second partition. The first partition is to execute first operating system level software and the second partition is to execute second operating system level software. The first operating system level software is to manage the processors in the first partition as resources individually accessible to the first operating system level software, and the second operating system level software is to manage the processors in the second partition as resources individually accessible to the second operating system level software. The partition manager is also to present the second partition, including the second operating system level software, to the first operating system level software as platform level functionality embedded in the system.

    摘要翻译: 公开了装置的实施例,分区系统的方法以及可分割和分区的系统。 在一个实施例中,系统包括处理器和分区管理器。 分区管理器将处理器的子集分配给第一分区,另一个处理器子集分配给第二分区。 第一个分区是执行第一个操作系统级软件,第二个分区是执行第二个操作系统级软件。 第一操作系统级软件是将第一分区中的处理器作为第一操作系统级软件单独访问的资源进行管理,而第二操作系统级软件则将第二分区中的处理器作为第二分区可访问的资源进行管理 操作系统级软件。 分区管理器还将第二分区(包括第二操作系统级软件)呈现给第一操作系统级软件,作为嵌入系统中的平台级功能。

    HOST OPERATING SYSTEM INDEPENDENT STORAGE-RELATED REMOTE ACCESS AND OPERATIONS
    27.
    发明申请
    HOST OPERATING SYSTEM INDEPENDENT STORAGE-RELATED REMOTE ACCESS AND OPERATIONS 审中-公开
    主机操作系统独立存储相关远程访问和操作

    公开(公告)号:US20100306177A1

    公开(公告)日:2010-12-02

    申请号:US12475216

    申请日:2009-05-29

    摘要: An embodiment may include circuitry that may be comprised in a host that may execute an operating system and/or in a server. The circuitry may generate, at least in part, and/or receive, at least in part, at least one request to initiate, at least in part, at least one operation at the host. The least one operation may facilitate, at least in part, examination remotely from the host of information stored at the host. The at least one operation may be performed independently from the operating system and also may be performed at least in part by the circuitry. The examination may facilitate, at least in part, remotely from the host, backup, recovery, and/or determination of corruption of mass storage data stored at the host. Of course, many variations, modifications, and alternatives are possible without departing from this embodiment.

    摘要翻译: 实施例可以包括可以包括在可以执行操作系统和/或服务器的主机中的电路。 该电路可至少部分地和/或接收至少部分地至少部分地在主机上启动至少一个操作的至少一个请求。 至少一个操作可以有助于至少部分地从存储在主机的主机的主机进行远程检查。 所述至少一个操作可以独立于操作系统执行,并且还可以至少部分地由电路执行。 该检查可以至少部分地促进远程主机的存储的大容量存储数据的主机,备份,恢复和/或确定的腐败。 当然,在不偏离本实施例的情况下,可以进行许多变化,修改和替换。

    PLATFORM BASED VERIFICATION OF CONTENTS OF INPUT-OUTPUT DEVICES
    28.
    发明申请
    PLATFORM BASED VERIFICATION OF CONTENTS OF INPUT-OUTPUT DEVICES 有权
    输入输出设备内容的基于平台的验证

    公开(公告)号:US20100250797A1

    公开(公告)日:2010-09-30

    申请号:US12415612

    申请日:2009-03-31

    IPC分类号: G06F3/00

    摘要: A platform to support verification of the contents of an input-output device. The platform includes a platform hardware, which may verify the contents of the I/O device. The platform hardware may comprise components such as manageability engine and verification engine that are used to verify the contents of the I/O device even before the contents of the I/O device are exposed to an operating system supported by a host. The platform components may delete the infected portions of the contents of I/O device if the verification process indicates that the contents of the I/O device include the infected portions.

    摘要翻译: 支持验证输入输出设备内容的平台。 该平台包括可以验证I / O设备内容的平台硬件。 即使在I / O设备的内容暴露于由主机支持的操作系统之前,平台硬件也可以包括用于验证I / O设备的内容的诸如可管理性引擎和验证引擎的组件。 如果验证过程指示I / O设备的内容包括感染部分,则平台组件可以删除I / O设备的内容的感染部分。

    Graphics processing on a processor core
    29.
    发明授权
    Graphics processing on a processor core 有权
    处理器核心上的图形处理

    公开(公告)号:US07656409B2

    公开(公告)日:2010-02-02

    申请号:US11317829

    申请日:2005-12-23

    IPC分类号: G06F15/00 G06T1/00

    CPC分类号: G06F9/5044

    摘要: In a many core system, receiving a call to a graphics driver; translating the call into a command executable on a core of the many core system; and executing the translated call on the core.

    摘要翻译: 在许多核心系统中,接收对图形驱动程序的调用; 将呼叫转换成许多核心系统的核心上的命令可执行文件; 并在核心上执行转换的呼叫。

    Apparatus and method for data transfer
    30.
    发明授权
    Apparatus and method for data transfer 有权
    数据传输的装置和方法

    公开(公告)号:US07340531B2

    公开(公告)日:2008-03-04

    申请号:US10260230

    申请日:2002-09-27

    IPC分类号: G06F17/30

    摘要: A method including matching a data transmission characteristic of a first application on a first network device and of a second application on a second network device, requesting a prioritized data transfer between the first and second applications from a policy manager application, determining whether to approve the requested prioritized data transfer based upon a set of policy rules, and transferring data between the first and second application with preferential treatment.

    摘要翻译: 一种方法,包括将第一网络设备上的第一应用的数据传输特性和第二网络设备上的第二应用的数据传输特性进行匹配,从策略管理器应用请求在第一和第二应用之间进行优先级数据传输,确定是否批准 基于一组策略规则请求优先级数据传输,并且在第一和第二应用之间通过优惠处理传送数据。