Access control configurations for shared memory

    公开(公告)号:US11928349B2

    公开(公告)日:2024-03-12

    申请号:US17517331

    申请日:2021-11-02

    CPC classification number: G06F3/0637 G06F3/0604 G06F3/0631 G06F3/0679

    Abstract: Methods, systems, and devices for access control configurations for inter-processor communications are described to support reconfiguration of a dynamic access control configuration at a device. The configuration may support additional configuration fields that may be added to existing access control rules of the device. A processor of the device may request creation of a new shared memory resource, using a subregion of an existing memory resource, where the additional fields may indicate a parent memory resource for the new memory resource. The additional fields may also include a value which may indicate a processor which has write permission for a respective memory region of the shared memory, where other processors of the device may be prevented from writing to the memory region. The additional fields may further indicate a chain of delegation, or a history, of which processors have been assigned the exclusive write permission for the respective memory region.

    Access control configurations for inter-processor communications

    公开(公告)号:US11630711B2

    公开(公告)日:2023-04-18

    申请号:US17239012

    申请日:2021-04-23

    Inventor: Liang Cai

    Abstract: Methods, systems, and devices for access control configurations for inter-processor communications are described to support reconfiguration of a dynamic access control configuration at a device. For example, additional configuration fields may be added to existing access control rules of the device, where these additional fields may be configured by a processor sending information to a receiving processor, via a shared memory resource or region of the device. The additional fields may include a read-only value which may specify a processor which has exclusive write permission for a memory region of the share memory. This value may indicate the sending processor of the memory region, and the value may be set by access control hardware when the additional field is changed. Other processors of the device may be prevented from writing to the memory region.

    ACCESS CONTROL CONFIGURATIONS FOR SHARED MEMORY

    公开(公告)号:US20220342573A1

    公开(公告)日:2022-10-27

    申请号:US17517331

    申请日:2021-11-02

    Abstract: Methods, systems, and devices for access control configurations for inter-processor communications are described to support reconfiguration of a dynamic access control configuration at a device. The configuration may support additional configuration fields that may be added to existing access control rules of the device. A processor of the device may request creation of a new shared memory resource, using a subregion of an existing memory resource, where the additional fields may indicate a parent memory resource for the new memory resource. The additional fields may also include a value which may indicate a processor which has write permission for a respective memory region of the shared memory, where other processors of the device may be prevented from writing to the memory region. The additional fields may further indicate a chain of delegation, or a history, of which processors have been assigned the exclusive write permission for the respective memory region.

    ACCESS CONTROL CONFIGURATIONS FOR INTER-PROCESSOR COMMUNICATIONS

    公开(公告)号:US20220342729A1

    公开(公告)日:2022-10-27

    申请号:US17239012

    申请日:2021-04-23

    Inventor: Liang Cai

    Abstract: Methods, systems, and devices for access control configurations for inter-processor communications are described to support reconfiguration of a dynamic access control configuration at a device. For example, additional configuration fields may be added to existing access control rules of the device, where these additional fields may be configured by a processor sending information to a receiving processor, via a shared memory resource or region of the device. The additional fields may include a read-only value which may specify a processor which has exclusive write permission for a memory region of the share memory. This value may indicate the sending processor of the memory region, and the value may be set by access control hardware when the additional field is changed. Other processors of the device may be prevented from writing to the memory region.

    VIRTUALIZATION TECHNIQUES WITH REAL-TIME CONSTRAINTS

    公开(公告)号:US20200097646A1

    公开(公告)日:2020-03-26

    申请号:US16142353

    申请日:2018-09-26

    Abstract: Techniques for managing resources on computing device are provided. An example processor according to these techniques includes a resource management module (RMM) configured to be executed by the processor as an only privileged application on the processor such that the RMM has exclusive control over the allocation of memory resources utilized by the other applications executed by the processor and assignment of access permissions to the memory resources. The RMM is configured to manage the memory resources used by other applications executed by the processor, to group applications into logical compartments, and to enforce separation between the compartments such that resources associated with one compartment are inaccessible to another compartment. The processor may include a memory protection unit (MPU) configured to provide memory protection for memory utilized by the processor, and the RMM can be configured to dynamically configure the MPU regions to enforce separation between compartments.

    APPARATUSES AND METHODS FOR SECURE DISPLAY ON SECONDARY DISPLAY DEVICE
    7.
    发明申请
    APPARATUSES AND METHODS FOR SECURE DISPLAY ON SECONDARY DISPLAY DEVICE 有权
    用于在第二显示装置上安全显示的装置和方法

    公开(公告)号:US20160232339A1

    公开(公告)日:2016-08-11

    申请号:US14616353

    申请日:2015-02-06

    Abstract: One feature pertains to a computing device that includes an input interface, a communication interface, and a processing circuit that is adapted to receive a request from an application to authorize an action and generate a dynamic access code associated with the action. The processing circuit also transmits a message to a secondary display device that includes information data associated with the action and the dynamic access code for display on a display of the secondary display device. The processing circuit authorizes the action received from the application if the dynamic access code is entered into the input interface. Multiple, unique dynamic codes may also be associated with different actions the application may make requests for, which are also transmitted to the secondary display device for display.

    Abstract translation: 一个特征涉及包括输入接口,通信接口和处理电路的计算设备,该处理电路适于从应用程序接收授权动作的请求并生成与该动作相关联的动态访问代码。 该处理电路还向辅助显示设备发送消息,该辅助显示设备包括与动作相关联的信息数据和用于在辅助显示设备的显示器上显示的动态访问代码。 如果将动态访问码输入到输入接口,则处理电路授权从应用程序接收到的动作。 多个独特的动态代码也可以与应用可能请求的不同动作相关联,这些动作也被发送到辅助显示设备以进行显示。

Patent Agency Ranking