首页> 外国专利> ACCESS CONTROL SYSTEM AND METHOD FOR ISOLATING MUTUALLY DISTRUSTING SECURITY DOMAINS

ACCESS CONTROL SYSTEM AND METHOD FOR ISOLATING MUTUALLY DISTRUSTING SECURITY DOMAINS

机译:用于隔离相互不信任的安全域的访问控制系统和方法

摘要

Resource access control in a system-on-chip (“SoC”) may employ an agent executing on a processor of the SoC and a trust management engine of the SoC. The agent, such as, for example, a high-level operating system or a hypervisor, may be configured to allocate a resource comprising a memory region to an access domain and to load a software image associated with the access domain into the memory region. The trust management engine may be configured to lock the resource against access by any entity other than the access domain, to authenticate the software image associated with the access domain, and to initiate booting of the access domain in response to a successful authentication of the software image associated with the access domain.
机译:在片上系统(“SOC”)中的资源访问控制可以采用在SOC的处理器上执行的代理和SOC的信任管理引擎。 诸如高级操作系统或管理程序的代理可以被配置为将包括存储区域的资源分配给接入域,并且将与访问域相关联的软件图像加载到存储区域中。 信任管理引擎可以被配置为锁定资源以通过访问域以外的任何实体锁定资源,以验证与访问域相关联的软件图像,并响应于软件的成功认证启动访问域的引导 与访问域关联的图像。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号