INFORMATION PROCESSING DEVICE, VIRTUAL MACHINE CREATION METHOD, AND APPLICATION DISTRIBUTION SYSTEM
    31.
    发明申请
    INFORMATION PROCESSING DEVICE, VIRTUAL MACHINE CREATION METHOD, AND APPLICATION DISTRIBUTION SYSTEM 有权
    信息处理设备,虚拟机创建方法和应用分配系统

    公开(公告)号:US20120260250A1

    公开(公告)日:2012-10-11

    申请号:US13515384

    申请日:2011-03-08

    IPC分类号: G06F9/46 G06F9/455

    摘要: A device (110) according to an implementation of the present invention, having a plurality of virtual machines (1002, 1003, 1004, and 1005), includes a virtualization software (1001) which manages the virtual machines. The virtualization software includes an application VM creating unit (1300) which creates a virtual machine for executing a program. A first virtual machine (1002) determines whether a first program is to be executed on the first virtual machine or to be executed on a virtual machine other than the first virtual machine. When the first virtual machine determines that the first program is to be executed on the other virtual machine, the application VM creating unit creates a second virtual machine for executing the first program.

    摘要翻译: 根据本发明的实现的具有多个虚拟机(1002,1003,1004和1005)的设备(110)包括管理虚拟机的虚拟化软件(1001)。 虚拟化软件包括创建用于执行程序的虚拟机的应用程序VM创建单元(1300)。 第一虚拟机(1002)确定要在第一虚拟机上执行第一程序还是在除第一虚拟机之外的虚拟机上执行第一程序。 当第一虚拟机确定要在另一虚拟机上执行第一程序时,应用程序VM创建单元创建用于执行第一程序的第二虚拟机。

    Information processing device, information processing method, and program distribution system
    32.
    发明授权
    Information processing device, information processing method, and program distribution system 有权
    信息处理装置,信息处理方法和程序分发系统

    公开(公告)号:US08904518B2

    公开(公告)日:2014-12-02

    申请号:US13382327

    申请日:2011-04-19

    摘要: An information processing device includes an external connection unit which connects to an external device; and a communication control unit which obtains data from a first virtual machine, transmits the data to a second virtual machine, and transmits, to the external connection unit, transmission completion information indicating that the data is already transmitted to the second virtual machine. The external connection unit (i) determines, based on the transmission completion information, whether or not a virtual machine is the second virtual machine to which the data is already transmitted, when the external connection unit receives, from the virtual machine, a request for a connection to the external device, and (ii) permits a connection between the virtual machine and the external device, when the external connection unit determines that the virtual machine is not the second virtual machine to which the data is already transmitted.

    摘要翻译: 信息处理装置包括连接到外部设备的外部连接单元; 以及通信控制单元,其从第一虚拟机获取数据,将数据发送到第二虚拟机,并向外部连接单元发送指示已经向第二虚拟机发送了数据的发送完成信息。 外部连接单元(i)基于传输完成信息确定虚拟机是否是已经发送数据的第二虚拟机,当外部连接单元从虚拟机接收到请求 当外部连接单元确定虚拟机不是已经发送数据的第二虚拟机时,连接到外部设备,以及(ii)允许虚拟机与外部设备之间的连接。

    Information processing device, virtual machine creation method, and application distribution system
    33.
    发明授权
    Information processing device, virtual machine creation method, and application distribution system 有权
    信息处理设备,虚拟机创建方法和应用分发系统

    公开(公告)号:US09081596B2

    公开(公告)日:2015-07-14

    申请号:US13515384

    申请日:2011-03-08

    IPC分类号: G06F9/455 G06F9/48 G06F21/53

    摘要: A device (110) according to an implementation of the present invention, having a plurality of virtual machines (1002, 1003, 1004, and 1005), includes a virtualization software (1001) which manages the virtual machines. The virtualization software includes an application VM creating unit (1300) which creates a virtual machine for executing a program. A first virtual machine (1002) determines whether a first program is to be executed on the first virtual machine or to be executed on a virtual machine other than the first virtual machine. When the first virtual machine determines that the first program is to be executed on the other virtual machine, the application VM creating unit creates a second virtual machine for executing the first program.

    摘要翻译: 根据本发明的实现的具有多个虚拟机(1002,1003,1004和1005)的设备(110)包括管理虚拟机的虚拟化软件(1001)。 虚拟化软件包括创建用于执行程序的虚拟机的应用程序VM创建单元(1300)。 第一虚拟机(1002)确定要在第一虚拟机上执行第一程序还是在除第一虚拟机之外的虚拟机上执行第一程序。 当第一虚拟机确定要在另一虚拟机上执行第一程序时,应用程序VM创建单元创建用于执行第一程序的第二虚拟机。

    INFORMATION PROCESSING APPARATUS, METHOD, PROGRAM, AND INTEGRATED CIRCUIT
    34.
    发明申请
    INFORMATION PROCESSING APPARATUS, METHOD, PROGRAM, AND INTEGRATED CIRCUIT 有权
    信息处理设备,方法,程序和集成电路

    公开(公告)号:US20130185816A1

    公开(公告)日:2013-07-18

    申请号:US13816501

    申请日:2012-05-31

    IPC分类号: G06F21/60

    CPC分类号: G06F21/604

    摘要: A content display apparatus which processes protected information configured, with an aim to prevent access from any unauthorized program, to include: a process managing unit which manages a plurality of processes operable in the content display apparatus; and an access detecting unit configured to detect access to the protected-information access detecting unit which detects access to the protected information. The process managing unit includes an application execution control unit which temporarily stops the operation of each of at least one process other than a process which accesses the protected information among the plurality of processes when the access to the protected information is detected by the protected-information access detecting unit.

    摘要翻译: 一种内容显示装置,其处理被配置为防止从任何未经授权的程序访问的受保护信息,包括:管理在内容显示装置中可操作的多个处理的处理管理单元; 以及访问检测单元,被配置为检测对被保护信息访问检测单元的访问,其检测对所述受保护信息的访问。 处理管理单元包括应用程序执行控制单元,当对受保护信息的访问被保护信息检测到时,临时停止在多个处理中访问受保护信息的处理之外的至少一个处理中的每一个的操作 访问检测单元。

    INFORMATION PROCESSING DEVICE, INFORMATION PROCESSING METHOD, AND PROGRAM DISTRIBUTION SYSTEM
    35.
    发明申请
    INFORMATION PROCESSING DEVICE, INFORMATION PROCESSING METHOD, AND PROGRAM DISTRIBUTION SYSTEM 有权
    信息处理设备,信息处理方法和程序分配系统

    公开(公告)号:US20120117566A1

    公开(公告)日:2012-05-10

    申请号:US13382327

    申请日:2011-04-19

    IPC分类号: G06F9/455

    摘要: Provided is an information processing device which is capable of preventing data leakage caused by a malicious application or malicious device driver and of allowing cooperation among virtual machines. The information processing device (110) includes: an external connection unit (1309) which connects to an external device; and a communication control unit which obtains data from a first virtual machine (1002), transmits the data to a second virtual machine (1003), and transmits, to the external connection unit, transmission completion information indicating that the data is already transmitted to the second virtual machine, wherein the external connection unit (i) determines, based on the transmission completion information, whether or not a virtual machine is the second virtual machine to which the data is already transmitted, when the external connection unit receives, from the virtual machine, a request for a connection to the external device, and (ii) permit a connection between the virtual machine and the external device, when the external connection unit determines that the virtual machine is not the second virtual machine to which the data is already transmitted.

    摘要翻译: 提供一种信息处理装置,其能够防止恶意应用或恶意设备驱动器引起的数据泄漏并允许虚拟机之间的协作。 信息处理设备(110)包括:外部连接单元(1309),其连接到外部设备; 以及通信控制单元,其从第一虚拟机(1002)获取数据,将数据发送到第二虚拟机(1003),并向外部连接单元发送指示已经发送了数据的传输完成信息 第二虚拟机,其中,所述外部连接单元(i)基于所述传输完成信息确定所述虚拟机是否是已经发送了所述数据的所述第二虚拟机,所述外部连接单元从所述虚拟机 机器,连接到外部设备的请求,以及(ii)当所述外部连接单元确定所述虚拟机不是所述数据已经到达的所述第二虚拟机时,允许所述虚拟机与所述外部设备之间的连接 传输。

    Content reproduction device, content reproduction device control method, content reproduction program, recording medium, and integrated circuit
    36.
    发明授权
    Content reproduction device, content reproduction device control method, content reproduction program, recording medium, and integrated circuit 有权
    内容再现装置,内容再现装置控制方法,内容再现程序,记录介质和集成电路

    公开(公告)号:US08448259B2

    公开(公告)日:2013-05-21

    申请号:US12919967

    申请日:2009-03-12

    IPC分类号: G06F21/00

    CPC分类号: G06F21/10

    摘要: A content playback device of the present invention includes a playback unit 200 operable to play back a content; a normal storage unit 250 that is not tamper-resistant; a secure storage unit 350 that is tamper-resistant; a first control sub-unit 230 that writes playback records indicating elapsed playback time of the content into the normal storage unit one by one at regular time intervals; and a second control sub-unit 330 that (i) writes monitoring records with respect to the playback records into the secure storage unit 350 one by one at irregular time intervals and (ii) determines that the playback records stored in the normal storage unit 250 have not been tampered with if a prescribed relation is satisfied between a specific time point obtained according to a latest one of the monitoring records and one of the playback records corresponding to the specific time point.

    摘要翻译: 本发明的内容回放装置包括可再现内容的重放单元200; 不防篡改的普通存储单元250; 防篡改的安全存储单元350; 第一控制子单元230,其以规则的时间间隔逐个地将指示所述内容的经过的播放时间的播放记录逐个写入正常存储单元; 以及第二控制子单元330,其(i)以不规则的时间间隔逐个地将关于重放记录的监视记录写入安全存储单元350,以及(ii)确定存储在正常存储单元250中的重放记录 如果在根据最新的一个监视记录获得的特定时间点与对应于特定时间点的播放记录之一满足规定的关系,则没有被篡改。

    Memory control apparatus, content playback apparatus, control method and recording medium
    37.
    发明授权
    Memory control apparatus, content playback apparatus, control method and recording medium 有权
    存储器控制装置,内容重放装置,控制方法和记录介质

    公开(公告)号:US08418256B2

    公开(公告)日:2013-04-09

    申请号:US12484627

    申请日:2009-06-15

    摘要: A data storage apparatus is provided that realizes a measure against deterioration of a flash memory in which integrity check data is stored. A content playback apparatus (1000) uses a hash value of playback history information as integrity check data (confirmation data) for confirming whether the playback history information has been falsified. A first address calculation unit (1004) and a second address calculation unit (1006) determine a read-in address and a storage destination address for the integrity check data, with use of the hash value. Accordingly, the storage destination addresses can be diffused, thus enabling preventing deterioration of the flash memory.

    摘要翻译: 提供了一种实现针对存储完整性检查数据的闪存的劣化的措施的数据存储装置。 内容再现装置(1000)使用回放历史信息的哈希值作为确认回放历史信息是否被伪造的完整性检查数据(确认数据)。 第一地址计算单元(1004)和第二地址计算单元(1006)利用散列值确定完整性检查数据的读入地址和存储目的地地址。 因此,存储目的地地址可以被扩散,从而能够防止闪存的劣化。

    PROGRAM EXECUTION APPARATUS, CONTROL METHOD, CONTROL PROGRAM, AND INTEGRATED CIRCUIT
    38.
    发明申请
    PROGRAM EXECUTION APPARATUS, CONTROL METHOD, CONTROL PROGRAM, AND INTEGRATED CIRCUIT 有权
    程序执行装置,控制方法,控制程序和集成电路

    公开(公告)号:US20100174919A1

    公开(公告)日:2010-07-08

    申请号:US12652256

    申请日:2010-01-05

    IPC分类号: G06F21/00

    摘要: Information processing apparatus 100 ensures confidentiality of encryption and reduces overhead associated with processing not directly related to the encryption. The information processing apparatus 100 includes: application program A158 that includes an instruction for encryption which uses a key; tampering detection unit 135x that detects tampering of the program; CPU 141 that operates according to instructions and outputs a direction for encryption upon detecting the instruction for encryption; data encryption/decryption function unit 160 that controls switching to the protective mode according to the direction; and protected data operation unit 155 that stores a key in correspondence with the program, outputs the key in the protective mode, and controls switching to the normal mode, and the data encryption/decryption function unit 160 executes the encryption in the normal mode using the received key.

    摘要翻译: 信息处理装置100确保加密的机密性,并减少与加密无直接关系的处理相关的开销。 信息处理装置100包括:应用程序A158,其包括使用密钥的用于加密的指令; 检测程序的篡改的篡改检测单元135x; CPU141,根据指令进行操作,并在检测到加密指令时输出加密方向; 数据加密/解密功能单元160,其根据方向控制切换到保护模式; 和保存数据操作单元155,其存储与节目对应的密钥,将密钥输出为保护模式,并控制切换到正常模式,数据加密/解密功能单元160使用 收到钥匙

    Certifying device, verifying device, verifying system, computer program and integrated circuit
    39.
    发明授权
    Certifying device, verifying device, verifying system, computer program and integrated circuit 有权
    认证设备,验证设备,验证系统,计算机程序和集成电路

    公开(公告)号:US08296561B2

    公开(公告)日:2012-10-23

    申请号:US12306816

    申请日:2007-07-02

    IPC分类号: H04L29/06

    摘要: An authentication system verifies an authentic computer program, certifies the authenticity itself, and verifies a certification. The authentication system includes a terminal (e.g., requesting device) and a card (e.g., verifying device). The card stores secret information to be used by the terminal, and an update program for the terminal. The card verifies authenticity of the terminal using information obtained from the terminal. When it judges that the terminal is authentic, the card outputs the secret information to the terminal. When it judges that the terminal is not authentic, the card outputs the update program. The terminal is forced to update the program when it attempts to use the secret information.

    摘要翻译: 认证系统验证真实的计算机程序,证明其真实性本身,并验证认证。 认证系统包括终端(例如,请求设备)和卡(例如,验证设备)。 该卡存储终端使用的秘密信息和终端的更新程序。 该卡使用从终端获得的信息来验证终端的真实性。 当该终端判断该终端是可信的时,该卡将该秘密信息输出到该终端。 当判断终端不可信时,卡会输出更新程序。 终端在尝试使用秘密信息时被强制更新程序。

    INFORMATION PROCESSING APPARATUS
    40.
    发明申请
    INFORMATION PROCESSING APPARATUS 审中-公开
    信息处理装置

    公开(公告)号:US20110289294A1

    公开(公告)日:2011-11-24

    申请号:US13147208

    申请日:2010-10-29

    IPC分类号: G06F12/14

    摘要: An information processing apparatus includes: a CPU (1201) that has, as an operating mode, a privileged mode and an unprivileged mode; a trusted memory (1270) that stores protected data, the protected data being accessed when the CPU (1201) is in the unprivileged mode; and a trusted memory control unit (1203) that controls access to the trusted memory (1270). When the CPU (1201) accesses the trusted memory (1270), the trusted memory control unit (1203) determines the operating mode of the CPU (1201) and, in the case where the operating mode of the CPU (1201) is the unprivileged mode, denies the access to the trusted memory (1270) by the CPU (1201).

    摘要翻译: 信息处理设备包括:具有作为操作模式的特权模式和非特权模式的CPU(1201); 存储受保护数据的可信存储器(1270),当所述CPU(1201)处于非特权模式时被保护的数据被访问; 以及控制对可信存储器(1270)的访问的可信存储器控制单元(1203)。 当CPU(1201)访问可信存储器(1270)时,可信存储器控制单元(1203)确定CPU(1201)的操作模式,并且在CPU(1201)的操作模式是无特权的情况下 模式,拒绝CPU(1201)对可信存储器(1270)的访问。