EP2490147A2

A secure processor and a program for a secure processor

Abstract

In a secure processor (10), the instruction code including an instruction code stored in the area (14) where the encrypted instruction code is stored in a non-rewritable format is authenticated using a specific key (15) which is specific to the core (11) where the instruction code is executed or an authenticated key by a specific key to perform an encryption processing for the input and output data between the core and the outside. Generation of a secure process identifier generation to be compared with a secure process identifier corresponding to the page with a secure page flag showing that the page storing the execution codes is correctly authenticated prior to the execution of the process corresponding to the execution codes.

EP2490147A2, drawing sheet 1
Sheet 1 of 76

Term

Term ended

Projected expiry passed 23 February 2025, 1.6 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

15 claims: 2 independent, 13 dependent

  1. 1
    A secure processor (100), comprising:a secure process identifier generation unit (109) generating a secure process identifier to be compared with the secure process identifier corresponding to a page where a secure page flag is set up which indicates that page storing the execution code is properly authenticated prior to the execution of a process corresponding to the execution code when an instruction to generate the process is issued;and a process information retention unit (115) retaining the secure process identifier generated as an information related to the process.
  2. 15
    A computer readable storage medium (201, 202, 204, 210) used by computer when paging-in an execution code into memory, storing a program for a computer to execute the following operations:requesting the direct memory access mechanism (113) in computers to transfer the page to a memory;setting, after the transfer is completed successfully, the data regarding this page such as setting up a secure page flag on the page to indicate whether the page containing the execution code is properly authenticated in the page table entry in the translation look aside buffer (114) of the computer prior to the execution of the process corresponding to the execution code in the page, comparing the secure process identifiers and generating a secure process identifier at the time when a process generation instruction is issued;and requesting hardware (107) to perform authentication of the page and to set a secure page flag indicating successful authentication in the page table entry.