Patent · US Active

Cryptographic memory ownership table for secure public cloud

US10671737B2 · kind B2 · utility

5Cited by
3References
30Claims
0Family size

Assignee

Inventors

Key dates

Filing dateNov 10, 2017
Grant dateJun 2, 2020
Priority date
Expiry dateJun 3, 2038

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F2212/1052
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

In a public cloud environment, each consumer's/guest's workload is encrypted in a cloud service provider's (CSP's) server memory using a consumer-provided key unknown to the CSP's workload management software. An encrypted consumer/guest workload image is loaded into the CSP's server memory at a memory location specified by the CSP's workload management software. Based upon the CSP-designated memory location, the guest workload determines expected hardware physical addresses into which memory mapping structures and other types of consumer data should be loaded. These expected hardware physical addresses are specified by the guest workload in a memory ownership table (MOT), which is used to check that subsequently CSP-designated memory mappings are as expected. Memory ownership table entries also may be encrypted by the consumer-provided key unknown to the CSP.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.