Recovery after input/ouput error-containment events
    62.
    发明授权
    Recovery after input/ouput error-containment events 有权
    输入/输出错误控制事件后恢复

    公开(公告)号:US09411667B2

    公开(公告)日:2016-08-09

    申请号:US13997870

    申请日:2012-06-06

    IPC分类号: G06F11/00 G06F11/07

    摘要: Embodiments of apparatus, computer-implemented methods, systems, devices, and computer-readable media are described herein for a computing device with a platform entity such as an interrupt handier configured to notify an operating system or virtual machine monitor executing on the computing device of an input/output error-containment event. In various embodiments, the interrupt handler may be configured to facilitate recovery of a link to an input/output device that caused the input/output error-containment event, responsive to a directive from the operating system or virtual machine monitor.

    摘要翻译: 本文描述了具有平台实体的计算设备,例如中断处理器的设备,计算机实现的方法,系统,设备和计算机可读介质的实施例,其被配置为通知在计算设备上执行的操作系统或虚拟机监视器 输入/输出错误容纳事件。 在各种实施例中,响应于来自操作系统或虚拟机监视器的指示,中断处理程序可以被配置为便于恢复导致输入/输出错误容纳事件的输入/输出设备的链接。

    Machine check summary register
    63.
    发明授权
    Machine check summary register 有权
    机器检查摘要寄存器

    公开(公告)号:US09317360B2

    公开(公告)日:2016-04-19

    申请号:US13995458

    申请日:2011-12-29

    摘要: In some implementations, a processor may include a machine check architecture having a plurality of error reporting registers able to receive data for machine check errors. A summary register may include a plurality of settable locations that each represents at least one of the error reporting registers. One or more of the settable locations in the summary register may be set to indicate whether one or more of the error reporting registers maintain data for a machine check error. Accordingly, when a machine check error occurs, the summary register may be accessed to identify if any error reporting registers in a processor's view contain valid error data, rather than having to read each of the error reporting registers in the processor's view.

    摘要翻译: 在一些实现中,处理器可以包括具有多个错误报告寄存器的机器检查架构,其能够接收用于机器检查错误的数据。 总结寄存器可以包括多个可设置位置,每个位置可以代表错误报告寄存器中的至少一个。 可以将汇总寄存器中的一个或多个可设置位置设置为指示一个或多个错误报告寄存器是否保持机器检查错误的数据。 因此,当发生机器检查错误时,可以访问总结寄存器以识别处理器视图中的任何错误报告寄存器是否包含有效的错误数据,而不是在处理器视图中读取每个错误报告寄存器。

    System management interrupt handling for multi-core processors
    64.
    发明授权
    System management interrupt handling for multi-core processors 有权
    多核处理器的系统管理中断处理

    公开(公告)号:US09311138B2

    公开(公告)日:2016-04-12

    申请号:US13799327

    申请日:2013-03-13

    IPC分类号: G06F9/48 G06F11/07

    CPC分类号: G06F9/4812 G06F11/0772

    摘要: Technologies for system management interrupt (“SMI”) handling include a number of processor cores configured to enter a system management mode (“SMM”) in response to detecting an SMI. The first processor core to enter SMM and acquire a master thread lock sets an in-progress flag and executes a master SMI handler without waiting for other processor cores to enter SMM. Other processor cores execute a subordinate SMI handler. The master SMI handler may direct the subordinate SMI handlers to handle core-specific SMIs. The multi-core processor may set an SMI service pending flag in response to detecting the SMI, which is cleared by the processor core that acquires the master thread lock. A processor core entering SMM may immediately resume normal execution upon determining the in-progress flag is not set and the service pending flag is not set, to detect and mitigate spurious SMIs. Other embodiments are described and claimed.

    摘要翻译: 用于系统管理中断(“SMI”)处理的技术包括配置为响应于检测到SMI而进入系统管理模式(“SMM”)的多个处理器核心。 进入SMM并获取主线程锁的第一个处理器核心设置正在进行的标志,并执行主SMI处理程序,而不必等待其他处理器内核进入SMM。 其他处理器核心执行从属SMI处理程序。 主SMI处理程序可以指示下级SMI处理程序来处理核心特定的SMI。 响应于检测到由获取主线程锁的处理器核心清除的SMI,多核处理器可以设置SMI服务挂起标志。 进入SMM的处理器核心在确定进行中标志未被设置并且未设置服务暂挂标志时,可以立即恢复正常执行,以检测和减轻假SMI。 描述和要求保护其他实施例。

    Entering a secured computing environment using multiple authenticated code modules
    65.
    发明授权
    Entering a secured computing environment using multiple authenticated code modules 有权
    使用多个经过身份验证的代码模块进入安全的计算环境

    公开(公告)号:US09202015B2

    公开(公告)日:2015-12-01

    申请号:US12650579

    申请日:2009-12-31

    IPC分类号: G06F21/00 G06F21/57 G06F21/71

    摘要: Systems, apparatuses, and methods, and for entering a secured system environment using multiple authenticated code modules are disclosed. In one embodiment, a processor includes a decoder and control logic. The decoder is to decode a secured enter instruction. The control logic is to find an entry corresponding to the processor in a match table in a master authenticated code module and to read a master header and an individual authenticated code module from the master authenticated code module in response to decoding the secured enter instruction.

    摘要翻译: 公开了系统,装置和方法以及使用多个认证代码模块输入安全系统环境。 在一个实施例中,处理器包括解码器和控制逻辑。 解码器是对安全的输入指令进行解码。 控制逻辑是在主认证代码模块的匹配表中找到与处理器相对应的条目,并且响应于对安全的进入指令进行解码,从主认证代码模块读取主标题和单独的认证代码模块。

    TECHNOLOGIES FOR PROVIDING DEFERRED ERROR RECORDS TO AN ERROR HANDLER
    66.
    发明申请
    TECHNOLOGIES FOR PROVIDING DEFERRED ERROR RECORDS TO AN ERROR HANDLER 审中-公开
    将提示错误记录提供给错误处理的技术

    公开(公告)号:US20140188829A1

    公开(公告)日:2014-07-03

    申请号:US13728451

    申请日:2012-12-27

    IPC分类号: G06F17/30

    CPC分类号: G06F16/21

    摘要: Technologies to generate an error record are described herein. A method includes performing a scan of one or more error logs to identify a source of data in response to an attempt to access the data, determining whether an amount of time to complete the scan will exceed a threshold value, and generating a notice that the error record will be deferred based on the determination. A system includes a data collector to scan one or more error logs to identify a source of data in response to an attempt to access the data, a controller to determine whether an amount of time to scan the error logs to identify the source of data will exceed a threshold value, and a signal generator to generate a signal indicating that the error record is to be deferred based on the determination.

    摘要翻译: 本文描述了生成错误记录的技术。 一种方法包括:响应于访问数据的尝试,执行一个或多个错误日志的扫描以识别数据源,确定完成扫描的时间量是否将超过阈值,以及生成通知 错误记录将根据确定推迟。 系统包括数据收集器,用于扫描一个或多个错误日志以响应于访问数据的尝试来识别数据源;控制器,用于确定扫描错误日志以识别数据源的时间量是否将 超过阈值,以及信号发生器,用于基于该确定产生指示错误记录被延迟的信号。

    TECHNIQUE FOR PROVIDING SECURE FIRMWARE
    67.
    发明申请
    TECHNIQUE FOR PROVIDING SECURE FIRMWARE 审中-公开
    提供安全固件的技术

    公开(公告)号:US20130212406A1

    公开(公告)日:2013-08-15

    申请号:US13837640

    申请日:2013-03-15

    IPC分类号: G06F21/60

    CPC分类号: G06F21/60 G06F21/57

    摘要: A technique to verify firmware. One embodiment of the invention uses a processor's micro-code to verify a system's firmware, such that the firmware can be included in a trusted chain of code along with the operating system.

    摘要翻译: 验证固件的技术。 本发明的一个实施例使用处理器的微代码来验证系统的固件,使得固件可以与操作系统一起被包括在可信赖的代码链中。

    Enabling system management mode in a secure system
    68.
    发明授权
    Enabling system management mode in a secure system 有权
    在安全系统中启用系统管理模式

    公开(公告)号:US08473945B2

    公开(公告)日:2013-06-25

    申请号:US11967779

    申请日:2007-12-31

    IPC分类号: G06F9/455

    CPC分类号: G06F9/30087 G06F9/45533

    摘要: Apparatuses, methods, and systems for enabling system management mode in a secure system are disclosed. In one embodiment, a processor includes sub-operating-system mode logic, virtual machine logic, and control logic. The sub-operating-system mode logic is to support a sub-operating-system mode. The virtual machine logic is to support virtualization. The control logic is to prevent virtualization from being enabled when the sub-operating-system mode is disabled.

    摘要翻译: 公开了一种用于在安全系统中启用系统管理模式的装置,方法和系统。 在一个实施例中,处理器包括子操作系统模式逻辑,虚拟机逻辑和控制逻辑。 子操作系统模式逻辑是支持子操作系统模式。 虚拟机逻辑是支持虚拟化。 控制逻辑是防止在禁用子操作系统模式时启用虚拟化。

    Technique for providing secure firmware
    69.
    发明授权
    Technique for providing secure firmware 有权
    提供安全固件的技术

    公开(公告)号:US08429418B2

    公开(公告)日:2013-04-23

    申请号:US11355697

    申请日:2006-02-15

    IPC分类号: G06F21/00

    CPC分类号: G06F21/60 G06F21/57

    摘要: A technique to verify firmware. One embodiment of the invention uses a processor's micro-code to verify a system's firmware, such that the firmware can be included in a trusted chain of code along with the operating system.

    摘要翻译: 验证固件的技术。 本发明的一个实施例使用处理器的微代码来验证系统的固件,使得固件可以与操作系统一起被包括在可信赖的代码链中。

    INJECTING ERROR AND/OR MIGRATING MEMORY IN A COMPUTING SYSTEM
    70.
    发明申请
    INJECTING ERROR AND/OR MIGRATING MEMORY IN A COMPUTING SYSTEM 审中-公开
    在计算机系统中注入错误和/或移植存储器

    公开(公告)号:US20110179311A1

    公开(公告)日:2011-07-21

    申请号:US12971868

    申请日:2010-12-17

    IPC分类号: G06F11/00

    CPC分类号: G06F11/3676

    摘要: In some embodiments a request is received to perform an error injection or a memory migration, a mode is entered that blocks requests from agents other than a current processor core or thread, the error is injected or the memory is migrated, and the mode that blocks requests from the agents other than the current processor core or thread is exited. Other embodiments are described and claimed.

    摘要翻译: 在一些实施例中,接收到执行错误注入或存储器迁移的请求,输入阻止来自除当前处理器核心或线程以外的代理的请求的模式,注入错误或存储器迁移的模式以及阻止 来自除当前处理器核心或线程之外的代理的请求退出。 描述和要求保护其他实施例。