会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明授权
    • System for providing secure and trusted computing environments
    • 用于提供安全可靠的计算环境的系统
    • US07716720B1
    • 2010-05-11
    • US11155874
    • 2005-06-17
    • James A. MarekDavid S. HardinRaymond A. Kamin, IIISteven E. KoenckAllen P. Mass
    • James A. MarekDavid S. HardinRaymond A. Kamin, IIISteven E. KoenckAllen P. Mass
    • G06F7/04G06F17/30H04L9/32
    • G06F21/74
    • The present invention is directed to a system for providing a trusted environment for untrusted computing systems. The system may include a HAC subsystem managing shared resources and a trusted bus switch for controlling a COTS processor to access the shared resources. The shared resources such as memory and several I/O resources reside on the trusted side of the trusted bus switch. Alternatively, the system may include a SCM as an add-on module to an untrusted host environment. Only authenticated applications including COTS OS execute on the SCM while untrusted applications execute on the untrusted host environment. The SCM may control secure resource access from the untrusted host through a plug-in module interface. All secure resources may be maintained on the trusted side of the plug-in module interface.
    • 本发明涉及一种用于为不可信计算系统提供可信环境的系统。 该系统可以包括管理共享资源的HAC子系统和用于控制COTS处理器来访问共享资源的可信总线交换机。 诸如存储器和若干I / O资源的共享资源驻留在可信总线交换机的可信侧。 或者,系统可以包括作为不可信主机环境的附加模块的SCM。 只有经过认证的应用程序,包括COTS OS,在不可信任的应用程序在不受信任的主机环境上执行时才在SCM上执行。 SCM可以通过插件模块接口控制来自不受信任主机的安全资源访问。 可以在插件模块接口的受信任侧维护所有安全资源。
    • 8. 发明授权
    • Embedded MILS network
    • 嵌入式MILS网络
    • US07509434B1
    • 2009-03-24
    • US11340096
    • 2006-01-26
    • Julianne R. CrosmerSteven E. KoenckAllen P. Mass
    • Julianne R. CrosmerSteven E. KoenckAllen P. Mass
    • G06F15/173
    • H04L63/105
    • A method for transmitting information having different classification levels within an interconnection network includes transmitting a data word having encoded information that indicates a classification level to a processing environment having a classification level. The encoded information is examined to ascertain the indicated classification level. The classification level of the processing environment is verified by comparing it with the indicated classification level, and the data word is delivered to the processing environment upon verification. An interconnection network for transmitting the data words includes a switched fabric topology with serializer/deserializer devices interconnected by router blocks. A node for connecting to the interconnection network includes a network interface module linking the interconnection network and the processing environment. The network interface module examines data words to ascertain their classification level and verifies the classification level of the processing environment. The network interface module delivers the data words to the processing environment upon verification.
    • 一种用于在互连网络内发送具有不同分类级别的信息的方法包括:向具有分类级别的处理环境发送具有指示分类级别的编码信息的数据字。 检查编码信息以确定指示的分类水平。 处理环境的分类级别通过与指定的分类级别进行比较来验证,并且在验证时将数据字传送到处理环境。 用于发送数据字的互连网络包括具有通过路由器块互连的串行器/解串器设备的交换结构拓扑。 用于连接到互连网络的节点包括链接互连网络和处理环境的网络接口模块。 网络接口模块检查数据字以确定其分类级别,并验证处理环境的分类级别。 验证后,网络接口模块将数据字传送到处理环境。