Method and apparatus for including architecture for protecting multi-user sensitive code and data
US8489898B2 · kind B2 · utility
Assignee
Inventor
Key dates
| Filing date | Dec 22, 2010 |
| Grant date | Jul 16, 2013 |
| Priority date | — |
| Expiry date | Apr 16, 2031 |
Classification
- Technology area (CPC G)Physics
- CPC primaryG06F21/109
- WIPO fieldComputer technology
- WIPO sectorElectrical engineering
Abstract
A secure execution environment for execution of sensitive code and data including a secure asset management unit (SAMU) is described. The SAMU provides a secure execution environment to run multiple instances of separate program code or data code associated with copy protection schemes established for content consumption. The SAMU architecture allows for hardware-based secure boot and memory protection and provides on-demand code execution for multiple instances of separate program code or data provided by a host processor. The SAMU may boot from an encrypted and signed kernel code, and execute encrypted, signed code. The hardware-based security configuration facilitates the prevention of vertical or horizontal privilege violations.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.