-
公开(公告)号:US20210373925A1
公开(公告)日:2021-12-02
申请号:US16885609
申请日:2020-05-28
发明人: QING FENG HAO , Biao Cao , Li Ping Hao , Xiao Feng Ren , Dong Yan Yang , YaLian Pan , XUE YONG ZHANG , Xi Qian
摘要: Techniques for virtual machines include receiving virtual machine (VM) requests, and finding one or more VM requests of the VM requests that optimize available resources of a candidate host machine while seeking to minimize differences between the one or more VM requests and the candidate host machine. The one or more VM requests are allocated to the candidate host machine.
-
公开(公告)号:US20230214480A1
公开(公告)日:2023-07-06
申请号:US17646688
申请日:2021-12-31
发明人: Dong Yan Yang , QING FENG HAO , Biao Cao , Xi Qian , Li Ping Hao , Xiao Feng Ren , YaLian Pan
IPC分类号: G06F21/52
CPC分类号: G06F21/52 , G06F2221/033
摘要: Protection of a kernel from a sniff and code reuse attack. A kernel mode page table in initialized in a kernel. The kernel page entries in the kernel mode page table are set from s-pages to u-pages. Supervisor mode access prevention is enabled in the u-pages. Code contained in the kernel page entries in the u-pages is executed, the kernel page entries in the u-pages are capable of execution but are not capable of being accessed and read directly.
-
公开(公告)号:US20240311169A1
公开(公告)日:2024-09-19
申请号:US18183214
申请日:2023-03-14
发明人: QI LIANG , Li Ping Hao , Cheng Cheng Dong , Yi Xuan Zhang , Xiao Feng Ren , Gui Yu Jiang , Dong Ma , Hao Jue Wang
IPC分类号: G06F9/455
CPC分类号: G06F9/45558 , G06F2009/4557 , G06F2009/45591
摘要: Embodiments of the invention provide a computer system that includes a central processing unit (CPU) associated with a host computer. The CPU includes CPU functionality and on-board enhanced CPU functionality. The CPU further includes a virtualized first instance of the CPU comprising an enabled virtualized first instance of the CPU functionality; and a non-enabled virtualized first instance of the on-chip enhanced CPU functionality. The CPU further includes a virtualized second instance of the CPU comprising an enabled virtualized second instance of the CPU functionality; and an enabled virtualized second instance of the on-chip enhanced CPU functionality.
-
公开(公告)号:US11995178B2
公开(公告)日:2024-05-28
申请号:US17646688
申请日:2021-12-31
发明人: Dong Yan Yang , Qing Feng Hao , Biao Cao , Xi Qian , Li Ping Hao , Xiao Feng Ren , YaLian Pan
IPC分类号: G06F21/52
CPC分类号: G06F21/52 , G06F2221/033
摘要: Protection of a kernel from a sniff and code reuse attack. A kernel mode page table in initialized in a kernel. The kernel page entries in the kernel mode page table are set from s-pages to u-pages. Supervisor mode access prevention is enabled in the u-pages. Code contained in the kernel page entries in the u-pages is executed, the kernel page entries in the u-pages are capable of execution but are not capable of being accessed and read directly.
-
公开(公告)号:US11307889B2
公开(公告)日:2022-04-19
申请号:US16885609
申请日:2020-05-28
发明人: Qing Feng Hao , Biao Cao , Li Ping Hao , Xiao Feng Ren , Dong Yan Yang , YaLian Pan , Xue Yong Zhang , Xi Qian
摘要: Techniques for virtual machines include receiving virtual machine (VM) requests, and finding one or more VM requests of the VM requests that optimize available resources of a candidate host machine while seeking to minimize differences between the one or more VM requests and the candidate host machine. The one or more VM requests are allocated to the candidate host machine.
-
-
-
-