Method and apparatus for providing software-based security coprocessors
    1.
    发明授权
    Method and apparatus for providing software-based security coprocessors 有权
    用于提供基于软件的安全协处理器的方法和装置

    公开(公告)号:US07587595B2

    公开(公告)日:2009-09-08

    申请号:US11171133

    申请日:2005-06-29

    IPC分类号: H04L9/00

    摘要: A virtual security coprocessor framework supports creation of at least one device model to emulate a predetermined cryptographic coprocessor. In one embodiment, the virtual security coprocessor framework uses a cryptographic coprocessor in a processing system to create an instance of the device model (DM) in the processing system. The DM may be based at least in part on a predetermined device model design. The DM may emulate the predetermined cryptographic coprocessor in accordance with the control logic of the device model design. In one embodiment, the virtual security coprocessor framework uses a physical trusted platform module (TPM) in a processing system to support one or more virtual TPMs (vTPMs) for one or more virtual machines (VMs) in the processing system. Other embodiments are described and claimed.

    摘要翻译: 虚拟安全协处理器框架支持创建至少一个设备模型以模拟预定的密码协处理器。 在一个实施例中,虚拟安全协处理器框架在处理系统中使用密码协处理器来在处理系统中创建设备模型(DM)的实例。 DM可以至少部分地基于预定的设备模型设计。 DM可以根据设备模型设计的控制逻辑来模拟预定的密码协处理器。 在一个实施例中,虚拟安全协处理器框架使用处理系统中的物理信任平台模块(TPM)来支持处理系统中的一个或多个虚拟机(VM)的一个或多个虚拟TPM(vTPM)。 描述和要求保护其他实施例。

    USING AUTHENTICATED MANIFESTS TO ENABLE EXTERNAL CERTIFICATION OF MULTI-PROCESSOR PLATFORMS
    3.
    发明申请
    USING AUTHENTICATED MANIFESTS TO ENABLE EXTERNAL CERTIFICATION OF MULTI-PROCESSOR PLATFORMS 有权
    使用认证机构启用多处理器平台的外部认证

    公开(公告)号:US20150178226A1

    公开(公告)日:2015-06-25

    申请号:US14140254

    申请日:2013-12-24

    IPC分类号: G06F12/14

    摘要: Systems and methods for secure delivery of output surface bitmaps to a display engine. An example processing system comprises: an architecturally protected memory; and a plurality of processing devices communicatively coupled to the architecturally protected memory, each processing device comprising a first processing logic to implement an architecturally-protected execution environment by performing at least one of: executing instructions residing in the architecturally protected memory, or preventing an unauthorized access to the architecturally protected memory; wherein each processing device further comprises a second processing logic to establish a secure communication channel with a second processing device of the processing system, employ the secure communication channel to synchronize a platform identity key representing the processing system, and transmit a platform manifest comprising the platform identity key to a certification system.

    摘要翻译: 用于将输出表面位图安全传递到显示引擎的系统和方法。 一个示例处理系统包括:架构受保护的存储器; 以及多个处理设备,通信地耦合到架构保护的存储器,每个处理设备包括第一处理逻辑,以通过执行以下至少一个来实现架构保护的执行环境:执行驻留在架构保护的存储器中的指令,或者防止未授权的 访问架构受保护的内存; 其中每个处理设备还包括第二处理逻辑,用于与所述处理系统的第二处理设备建立安全通信信道,采用所述安全通信信道来同步代表所述处理系统的平台标识密钥,并发送包括所述平台的平台清单 认证系统的身份密钥。