-
公开(公告)号:US20240338282A1
公开(公告)日:2024-10-10
申请号:US18330651
申请日:2023-06-07
发明人: Binit Ranjan MISHRA , Mukhtar AHMED , Christina Marianne CURLETTE , Steven Adrian WEST , Gaurav JAGTIANI , Naga Kiran GOVINDARAJU , James George CAVALARIS , Drew Douglas CROSS , Jason Stewart WOHLGEMUTH , James Anthony SCHWARTZ, JR. , Jennifer Marie BOURLIER , Sri Harsha KANUKUNTLA , Emma Sutherland BOYD , Scott Chao-Chueh LEE , Vijaybalaji MADHANAGOPAL , Terence Kwok Tak CHAN , Yuri DOTSENKO , Peter Hanpeng JIANG , Aacer Hatem DAKEN , Emily Nicole WILSON , Emily Cara CLEMENS , Cody Dean HARTWIG , Raz Meir ALONI , Sharon Scarlet TANG , Minsang KIM , Shen WANG
CPC分类号: G06F11/1471 , G06F11/0772 , G06F11/1441
摘要: In-place recovery of fatal system errors at virtualization hosts. A device identifies an occurrence of a fatal system error in the first instance of a host operating system (OS) executing in a computer system. The device determines to perform an in-place recovery for the fatal system error. The device performs the in-place recovery, including pausing the execution of a virtual machine (VM) by the first instance of the host OS, preserving a state of the VM within system memory of the computer system, and resuming the execution of the VM by a second instance of the host OS executing in the computer system based on the state of the VM that is preserved within the system memory of the computer system.
-
公开(公告)号:US20240104193A1
公开(公告)日:2024-03-28
申请号:US17953169
申请日:2022-09-26
发明人: Jin LIN , Jason Stewart WOHLGEMUTH , Michael Bishop EBERSOL , Aditya BHANDARI , Steven Adrian WEST , Emily Cara CLEMENS , Michael Halstead KELLEY , Dexuan CUI , Attilio MAINETTI , Sarah Elizabeth STEPHENSON , Carolina Cecilia PEREZ-VARGAS , Antoine Jean Denis DELIGNAT-LAVAUD , Kapil VASWANI , Alexander Daniel GREST , Steve Michel PRONOVOST , David Alan HEPKIN
CPC分类号: G06F21/53 , G06F21/602 , G06F21/79
摘要: Methods, systems, and computer program products for direct assignment of physical devices to confidential virtual machines (VMs). At a first guest privilege context of a guest partition, a direct assignment of a physical device associated with a host computer system to the guest partition is identified. The guest partition includes the first guest privilege context and a second guest privilege context, which is restricted from accessing memory associated with the first guest privilege context. The guest partition corresponds to a confidential VM, such that a memory region associated with the guest partition is inaccessible to a host operating system. It is determined, based on a policy, that the physical device is allowed to be directly assigned to the guest partition. Communication between the physical device and the second guest privilege context is permitted, such as by exposing the physical device on a virtual bus and/or forwarding an interrupt.
-