APPARATUS FOR HARDWARE ACCELERATED RUNTIME INTEGRITY MEASUREMENT
    1.
    发明申请
    APPARATUS FOR HARDWARE ACCELERATED RUNTIME INTEGRITY MEASUREMENT 有权
    硬件加速运行完整度测量装置

    公开(公告)号:US20140359239A1

    公开(公告)日:2014-12-04

    申请号:US13993037

    申请日:2011-12-29

    CPC classification number: G06F12/1416 G06F21/575 G06F21/577 G06F2212/1052

    Abstract: Techniques are described for providing processor-based dedicated fixed function hardware to perform runtime integrity measurements for detecting attacks on system supervisory software, such as a hypervisor or native Operating System (OS). The dedicated fixed function hardware is provided with memory addresses of the system supervisory software for monitoring. After obtaining the memory addresses and other information required to facilitate integrity monitoring, the dedicated fixed function hardware activates a lock-out to prevent reception of any additional information, such as information from a corrupted version of the system supervisory software. The dedicated fixed function hardware then automatically performs periodic integrity measurements of the system supervisory software. Upon detection of an integrity failure, the dedicated fixed function hardware uses out-of-band signaling to report that an integrity failure has occurred.The dedicated fixed function hardware provides for runtime integrity verification of a platform in a secure manner without impacting the performance of the platform.

    Abstract translation: 描述了用于提供基于处理器的专用固定功能硬件以执行运行时完整性测量以检测诸如管理程序或本机操作系统(OS)的系统监控软件的攻击的技术。 专用固定功能硬件提供有用于监控的系统监控软件的存储器地址。 在获得便于完整性监控所需的存储器地址和其他信息之后,专用固定功能硬件激活锁定,以防止接收任何附加信息,例如来自系统监控软件的损坏版本的信息。 专用固定功能硬件自动执行系统监控软件的周期性完整性测量。 在检测到完整性故障时,专用固定功能硬件使用带外信令来报告已经发生完整性故障。 专用固定功能硬件以安全的方式提供平台的运行时完整性验证,而不会影响平台的性能。

    Method, system, and program for interfacing with a network adaptor supporting a plurality of devices
    2.
    发明申请
    Method, system, and program for interfacing with a network adaptor supporting a plurality of devices 有权
    用于与支持多个设备的网络适配器接口的方法,系统和程序

    公开(公告)号:US20050102682A1

    公开(公告)日:2005-05-12

    申请号:US10712207

    申请日:2003-11-12

    CPC classification number: G06F13/387

    Abstract: Provided are a method, system, and program for interfacing with device hardware supporting a plurality of devices. A device interface driver is initialized to represent the device hardware as a virtual bus to an operating system and to represent to the operating system each device supported in the device hardware as a device attached to the virtual bus. The device hardware is initialized and accessed to determine devices supported by the device hardware. One device object is generated for each determined device supported by the device hardware, wherein each generated device object represents the determined device to the operating system. The determined devices are reported to the operating system, wherein the operating system loads a device driver for each of the reported devices supported by the device hardware.

    Abstract translation: 提供了一种用于与支持多个设备的设备硬件进行接口的方法,系统和程序。 将设备接口驱动程序初始化为将设备硬件表示为操作系统的虚拟总线,并将设备硬件中支持的每个设备表示为连接到虚拟总线的设备。 初始化和访问设备硬件以确定设备硬件支持的设备。 为由设备硬件支持的每个确定的设备生成一个设备对象,其中每个生成的设备对象表示所确定的设备到操作系统。 确定的设备被报告给操作系统,其中操作系统为由设备硬件支持的每个报告的设备加载设备驱动程序。

Patent Agency Ranking