IP Library Granted Patent US 12,578,984
Granted Patent B2
US 12,578,984 · App. 17/942,558 · Granted Mar 17, 2026

Virtual machine register in a computer processor

Inventor: Steven Jeffrey Wallach (Dallas, TX)
Assignee: Micron Technology, Inc.
G06F9/45558G06F2009/45562G06F2009/45579G06F2009/45583G06F2009/45587
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,578,984
App. No.
17/942,558
Granted
Mar 17, 2026
Kind
B2
Abstract

Systems, apparatuses, and methods related to a virtual machine register in a computer processor are described. For example, a memory coupled to the computer processor can store instructions of routines of predefined, non-hierarchical domains. The computer processor can store, in the virtual machine register, an identifier of a virtual machine for which the processor is currently executing instructions in a current domain in the set of domains. For example, the processor can implement resource restriction/mapping and/or perform address translation for the virtual machine based on the identifier stored in the virtual machine register.

Claims (60)

1 . A device, comprising:

a processor, having:

at least one execution unit;

a memory management unit; and

a virtual machine register;

wherein the processor is configured to:

execute at least one instruction in a domain of a plurality of domains, wherein each of the plurality of domains is associated with a distinct set of one or more address translation tables;

store, in the virtual machine register, an identifier of a virtual machine for which the processor is executing the at least one instruction in the domain;

implement a computing resource restriction for the virtual machine based on the identifier, wherein the computing resource restriction restricts the virtual machine to resources associated with the domain;

execute, in response to trapping an operation performed during execution of a program executing in the virtual machine, a routine to identify a physical address page of a memory corresponding to a pseudo-physical address page in the virtual machine;

determining a first base of an address translation table associated with the domain;

combining the first base and the identifier of the virtual machine to generate a second base of an address translation table associated with the domain; and

translating, using the memory management unit, virtual memory addresses used by the at least one instruction to physical memory addresses of a memory using the second base.

2 . The device of claim 1 , further comprising:

the memory having physical memory addresses.

3 . The device of claim 1 , wherein the base of address translation table is a second base of address translation table, and the processor is further configured to:

store, in the memory management unit, entries of address translation tables;

determine a first base of address translation table via selection of the first base from a plurality of candidates;

combine the first base and the identifier of the virtual machine to generate the second base of address translation table; and

translate, using the memory management unit, virtual memory addresses used by instructions of the virtual machine to physical memory addresses using the second base.

4 . The device of claim 3 , wherein the processor is further configured to confine an operating system executed on the virtual machine to a portion of memory provisioned to the virtual machine.

5 . The device of claim 3 , wherein the processor is further configured to select the first base from the plurality of candidates configured for a current domain of routines.

6 . The device of claim 3 , wherein the processor is configured to convert pseudo-physical addresses used in the virtual machine to physical addresses in the memory based on the identifier stored in the virtual machine register.

7 . The device of claim 3 , wherein the processor is configured to use a portion of a virtual address to generate an index to access an entry in an address translation table.

8 . The device of claim 7 , wherein the processor is configured to hash a combination of the portion of the virtual address and the identifier to generate the index.

9 . The device of claim 8 , wherein the portion of the virtual address includes an object identifier specified in the virtual address.

10 . A method, comprising:

storing, in a virtual machine register configured in a processor having at least one execution unit, an identifier of a virtual machine having at least one instruction being executed by the at least one execution unit at a time the identifier is stored in the virtual machine register;

executing at least one instruction in a domain of a plurality of domains, wherein each of the plurality of domains is associated with a distinct set of one or more address translation tables;

implementing, by utilizing the processor, a computer resource restriction for the virtual machine based on the identifier, wherein the computing resource restriction restricts the virtual machine to resources associated with the domain;

executing, in response to trapping an operation performed during execution of a program executing in the virtual machine, a routine to identify a physical address page of a memory corresponding to a pseudo-physical address page in the virtual machine;

determining a first base of an address translation table associated with the domain;

combining the first base and the identifier of the virtual machine to generate a second base of an address translation table associated with the domain; and

translating, using the memory management unit, virtual memory addresses used by the at least one instruction to physical memory addresses of a memory using the second base.

11 . The method of claim 10 , further comprising:

selecting the first base from a plurality of candidates.

12 . The method of claim 11 , further comprising:

confining an operating system executed on the virtual machine to a portion of the memory provisioned to the virtual machine.

13 . The method of claim 11 , wherein the plurality of candidates are configured for a current domain of routines.

14 . The method of claim 10 , further comprising:

converting pseudo-physical addresses used in the virtual machine to physical addresses in the memory based on the identifier stored in the virtual machine register.

15 . The method of claim 10 , further comprising:

generating, using a portion of a virtual address, an index to access an entry in an address translation table.

16 . The method of claim 15 , further comprising:

hashing a combination of the portion of the virtual address and the identifier to generate the index.

17 . The method of claim 16 , wherein the portion of the virtual address includes an object identifier specified in the virtual address.

18 . An apparatus, comprising:

a memory;

a memory management unit configured to store entries of address translation tables and perform address translation using the address translation tables;

at least one execution unit; and

a register configured to store an identifier of a virtual machine having instructions loaded from the memory for execution in the at least one execution unit at a time the identifier is stored in the register;

wherein the apparatus is configured to:

execute at least one instruction in a domain of a plurality of domains, wherein each of the plurality of domains is associated with a distinct set of one or more address translation tables;

implement a computing resource restriction for the virtual machine based on the identifier, wherein the computing resource restriction restricts the virtual machine to resources associated with the domain;

execute, in response to trapping an operation performed during execution of a program executing in the virtual machine, a routine to identify a physical address page of a memory corresponding to a pseudo-physical address page in the virtual machine;

determine a first base of an address translation table including a mapping of the physical address page to a virtual address page of the virtual machine associated with the domain;

combine the first base and the identifier of the virtual machine to generate a second base of an address translation table associated with the domain; and

translate, using the memory management unit, virtual memory addresses used by the instructions to physical memory addresses using the second base.

19 . The apparatus of claim 18 , wherein the memory management unit is configured to hash a combination of the identifier stored in the register and a portion of a first virtual memory address to generate an index and apply the index to locate a page table entry to translate the first virtual memory address to a physical memory address in the memory.

20 . The apparatus of claim 19 , wherein the apparatus is further configured to convert a page table entry mapping the physical address page to the virtual address page.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 12, 2022
From: WALLACH, STEVEN JEFFREY
To: MICRON TECHNOLOGY, INC.
Reel/Frame 061062/0496 →
Continuity (8)
Continuation 16520310 · Jul 23, 2019
Provisional Application 62724999 · Aug 30, 2018
Provisional Application 62724913 · Aug 30, 2018
Provisional Application 62724929 · Aug 30, 2018
Provisional Application 62725118 · Aug 30, 2018
Provisional Application 62724896 · Aug 30, 2018
Provisional Application 62725030 · Aug 30, 2018
Related Publication 20230004420A1 · Jan 5, 2023
References Cited (208)
US 4386399A · Rasala et al. · 1983 [cited by applicant]
US 4409655A · Wallach et al. · 1983 [cited by applicant]
US 4525780A · Bratt et al. · 1985 [cited by applicant]
US 4821184A · Clancy et al. · 1989 [cited by applicant]
US 5280614A · Munroe et al. · 1994 [cited by applicant]
US 6393544B1 · Bryg et al. · 2002 [cited by applicant]
US 6446188B1 · Henderson et al. · 2002 [cited by applicant]
US 6757807B1 · Jacobson et al. · 2004 [cited by applicant]
US 7213247B1 · Wilner et al. · 2007 [cited by applicant]
US 7370193B2 · Shao et al. · 2008 [cited by applicant]
US 7581089B1 · White · 2009 [cited by applicant]
US 8245270B2 · Cooperstein et al. · 2012 [cited by applicant]
US 8359575B2 · Wilner et al. · 2013 [cited by applicant]
US 8601473B1 · Aron et al. · 2013 [cited by applicant]
US 8607299B2 · Baker · 2013 [cited by applicant]
US 8713563B2 · Kondoh et al. · 2014 [cited by applicant]
US 9122890B2 · Grocutt et al. · 2015 [cited by applicant]
US 9405515B1 · Bertram et al. · 2016 [cited by applicant]
US 9519779B2 · Ghosh et al. · 2016 [cited by applicant]
US 9575784B1 · Aron et al. · 2017 [cited by applicant]
US 9852084B1 · Soderquist et al. · 2017 [cited by applicant]
US 10043001B2 · Ghosh et al. · 2018 [cited by applicant]
US 10757100B2 · Angelino et al. · 2020 [cited by applicant]
US 10915457B2 · Wallach · 2021 [cited by applicant]
US 10915465B2 · Wallach · 2021 [cited by applicant]
US 10942863B2 · Wallach · 2021 [cited by applicant]
US 10984097B2 · Ghosh et al. · 2021 [cited by applicant]
US 11182507B2 · Wallach · 2021 [cited by applicant]
US 11436156B2 · Wallach · 2022 [cited by applicant]
US 11481241B2 · Wallach · 2022 [cited by applicant]
US 11500665B2 · Wallach · 2022 [cited by applicant]
US 11561904B2 · Wallach · 2023 [cited by applicant]
US 11620239B2 · Wallach · 2023 [cited by applicant]
US 12056057B2 · Wallach · 2024 [cited by applicant]
US 12131178B2 · Wallach · 2024 [cited by applicant]
US 12222869B2 · Wallach · 2025 [cited by applicant]
US 12242653B2 · Wallach · 2025 [cited by applicant]
US 20020184345A1 · Masuyama et al. · 2002 [cited by applicant]
US 20040078631A1 · Rogers · 2004 [cited by examiner]
US 20040133777A1 · Kiriansky et al. · 2004 [cited by applicant]
US 20040221036A1 · Smith · 2004 [cited by applicant]
US 20050188173A1 · Hasbun et al. · 2005 [cited by applicant]
US 20050257243A1 · Baker · 2005 [cited by applicant]
US 20060161719A1 · Bennett et al. · 2006 [cited by applicant]
US 20070050586A1 · Shin et al. · 2007 [cited by applicant]
US 20070204259A1 · Wilner et al. · 2007 [cited by applicant]
US 20080086729A1 · Kondoh · 2008 [cited by examiner]
US 20080091891A1 · Shiota et al. · 2008 [cited by applicant]
US 20080104586A1 · Thorton et al. · 2008 [cited by applicant]
US 20080162680A1 · Zimmer et al. · 2008 [cited by applicant]
US 20080172749A1 · Ko et al. · 2008 [cited by applicant]
US 20080244206A1 · Heo et al. · 2008 [cited by applicant]
US 20080250216A1 · Kershaw et al. · 2008 [cited by applicant]
US 20080250217A1 · Kershaw et al. · 2008 [cited by applicant]
US 20080252017A1 · Rowan · 2008 [cited by applicant]
US 20080271158A1 · Kamperman · 2008 [cited by applicant]
US 20080276051A1 · Renno · 2008 [cited by applicant]
US 20090187724A1 · Greiner et al. · 2009 [cited by applicant]
US 20090204785A1 · Yates, Jr. et al. · 2009 [cited by applicant]
US 20090222816A1 · Mansell et al. · 2009 [cited by applicant]
US 20090259846A1 · Watt et al. · 2009 [cited by applicant]
US 20100042980A1 · Wright et al. · 2010 [cited by applicant]
US 20100057960A1 · Renno · 2010 [cited by applicant]
US 20100082991A1 · Baldwin et al. · 2010 [cited by applicant]
US 20100162243A1 · Barde et al. · 2010 [cited by applicant]
US 20100228936A1 · Wright et al. · 2010 [cited by applicant]
US 20100228943A1 · Deshpande et al. · 2010 [cited by applicant]
US 20100235598A1 · Bouvier · 2010 [cited by applicant]
US 20100332788A1 · Zhao et al. · 2010 [cited by applicant]
US 20110055528A1 · Kondoh et al. · 2011 [cited by applicant]
US 20110231630A1 · Dannowski et al. · 2011 [cited by applicant]
US 20120036334A1 · Horman et al. · 2012 [cited by applicant]
US 20120042144A1 · Grisenthwaite · 2012 [cited by applicant]
US 20130132690A1 · Epstein · 2013 [cited by applicant]
US 20130132695A1 · Heo et al. · 2013 [cited by applicant]
US 20130151831A1 · Bealkowski et al. · 2013 [cited by applicant]
US 20130326193A1 · Mccarthy et al. · 2013 [cited by applicant]
US 20130339958A1 · Droste et al. · 2013 [cited by applicant]
US 20140068137A1 · Kegel et al. · 2014 [cited by applicant]
US 20140075581A1 · Grocutt et al. · 2014 [cited by applicant]
US 20140089616A1 · Shanbhogue et al. · 2014 [cited by applicant]
US 20140108701A1 · Liljeberg · 2014 [cited by examiner]
US 20140173169A1 · Liu et al. · 2014 [cited by applicant]
US 20140282819A1 · Sastry et al. · 2014 [cited by applicant]
US 20140331019A1 · Parker et al. · 2014 [cited by applicant]
US 20140331023A1 · Sharp et al. · 2014 [cited by applicant]
US 20150082305A1 · Hepkin et al. · 2015 [cited by applicant]
US 20150100717A1 · Bennett et al. · 2015 [cited by applicant]
US 20150128249A1 · Alexandrian et al. · 2015 [cited by applicant]
US 20150180894A1 · Sadovsky et al. · 2015 [cited by applicant]
US 20150301850A1 · Jeong et al. · 2015 [cited by applicant]
US 20160110298A1 · Koufaty et al. · 2016 [cited by applicant]
US 20160210082A1 · Frank et al. · 2016 [cited by applicant]
US 20160274810A1 · Godard et al. · 2016 [cited by applicant]
US 20160299851A1 · Mattson, Jr. et al. · 2016 [cited by applicant]
US 20160350019A1 · Koufaty et al. · 2016 [cited by applicant]
US 20160381050A1 · Shanbhogue et al. · 2016 [cited by applicant]
US 20170060783A1 · Chiu et al. · 2017 [cited by applicant]
US 20170161204A1 · Roberts et al. · 2017 [cited by applicant]
US 20170367036A1 · Chen et al. · 2017 [cited by applicant]
US 20180004681A1 · Koufaty · 2018 [cited by applicant]
US 20180048648A1 · Angelino et al. · 2018 [cited by applicant]
US 20180060244A1 · Godard et al. · 2018 [cited by applicant]
US 20180095902A1 · Lemay et al. · 2018 [cited by applicant]
US 20180121125A1 · Zeng et al. · 2018 [cited by applicant]
US 20180121665A1 · Anderson et al. · 2018 [cited by applicant]
US 20190102537A1 · Zhang et al. · 2019 [cited by applicant]
US 20190196983A1 · Khosravi et al. · 2019 [cited by applicant]
US 20200073693A1 · Wallach · 2020 [cited by applicant]
US 20200073694A1 · Wallach · 2020 [cited by applicant]
US 20200073820A1 · Wallach · 2020 [cited by applicant]
US 20200073821A1 · Wallach · 2020 [cited by applicant]
US 20200073822A1 · Wallach · 2020 [cited by applicant]
US 20200073827A1 · Wallach · 2020 [cited by applicant]
US 20200074093A1 · Wallach · 2020 [cited by applicant]
US 20200074094A1 · Wallach · 2020 [cited by applicant]
US 20210141742A1 · Wallach · 2021 [cited by applicant]
US 20210149817A1 · Wallach · 2021 [cited by applicant]
US 20210157741A1 · Wallach · 2021 [cited by applicant]
US 20210240619A1 · Earnshaw · 2021 [cited by applicant]
US 20220050908A1 · Wallach · 2022 [cited by applicant]
US 20220414019A1 · Wallach · 2022 [cited by applicant]
US 20230074273A1 · Wallach · 2023 [cited by applicant]
US 20230106598A1 · Wallach · 2023 [cited by applicant]
US 20240394198A1 · Wallach · 2024 [cited by applicant]
US 20250045090A1 · Wallach · 2025 [cited by applicant]
CN 1711525 · 2005 [cited by applicant]
CN 101520738 · 2009 [cited by applicant]
CN 105550014 · 2016 [cited by applicant]
EP 3467663A1 · 2019 [cited by examiner]
WO 2013174503 · 2013 [cited by applicant]
WO 2013174503A1 · 2013 [cited by applicant]
WO 2016154115 · 2016 [cited by applicant]
WO 2016164424 · 2016 [cited by applicant]
Inoue, Hiroaki, et al., “Dynamic Security Domain Scaling on Symmetric Multiprocessors for Future High-End Embedded Systems.” 2007 5th IEEE/ACM/IFIP International Conference on Hardware/Software Codesign and System Synth… [cited by applicant]
Kim, Haeyoung, et al., “DEMIX: Domain-Enforced Memory Isolation for Embedded System.” MDPI, Mar. 29, 2023. [cited by applicant]
Qing, Sihan, et al., “A Dynamically Modified Privilege Control Policy.” IEEE, Proceedings of the 2006 IEEE Workshop on Information Assurance, 2006. [cited by applicant]
Wang, Jialin, et al., “Study on a Decision Method for Reconfiguration of Network Security Functions Based on Privilege Transition Graph.” IEEE, 2018 18th IEEE International Conference on Communication Technology, 2018. [cited by applicant]
Security Configuration for Memory Address Translation from Object Specific Virtual Address Spaces to a Physical Address Space, U.S. Appl. No. 16/520,311, filed Jul. 23, 2019, Confirmation: 9553, Jan. 9, 2023, Steven Wal… [cited by applicant]
Access Control for Processor Registers based on Execution Domains, U.S. Appl. No. 16/520,290, filed Jul. 23, 2019, Confirmation: 4266, Oct. 26, 2022, Steven Wallach, Final Rejection Mailed. [cited by applicant]
Memory Configured to Store Instructions of a Predefined Set of Domains Controllable via a Domain Register for Instructions Being Executed in a Computer Processor, U.S. Appl. No. 16/520,298, filed Jul. 23, 2019, Confirma… [cited by applicant]
Domain Register for Instructions Being Executed in Computer Processors, U.S. Appl. No. 17/154,722, filed Jan. 21, 2021, Confirmation: 4072, Dec. 1, 2022, Steven Wallach, Notice of Allowance Mailed—Application Received i… [cited by applicant]
Domain Crossing in Executing Instructions in Computer Processors, U.S. Appl. No. 16/520,299, filed Jul. 23, 2019, Confirmation: 6505, Nov. 3, 2021, Steven Wallach, Patented Case. [cited by applicant]
Domain Crossing in Executing Instructions in Computer Processors, U.S. Appl. No. 17/511,756, filed Oct. 27, 2021, Confirmation: 8247, Nov. 13, 2021, Steven Wallach, Docketed New Case—Ready for Examination. [cited by applicant]
Dynamic Configuration of a Computer Processor based on the Presence of a Hypervisor, U.S. Appl. No. 16/520,304, filed Jul. 23, 2019, Confirmation: 1033, Oct. 23, 2022, Steven Wallach, Patented Case. [cited by applicant]
Dynamic Configuration of a Computer Processor based on the Presence of a Hypervisor, U.S. Appl. No. 18/054,858, filed Nov. 11, 2022, Confirmation: 2411, Nov. 30, 2022, Steven Wallach, Docketed New Case—Ready for Examina… [cited by applicant]
Virtual Machine Register in a Computer Processor, U.S. Appl. No. 16/520,310, filed Jul. 23, 2019, Confirmation: 3991, Oct. 5, 2022, Steven Wallach, Patented Case. [cited by applicant]
Memory Access Control through Permissions Specified in Page Table Entries for Execution Domains, U.S. Appl. No. 16/520,292, filed Jul. 23, 2019, Confirmation: 8203, Jan. 20, 2021, Steven Wallach, Patented Case. [cited by applicant]
Memory Access Control through Permissions Specified in Page Table Entries for Execution Domains, U.S. Appl. No. 17/158,979, filed Jan. 26, 2021, Confirmation: 5463, Aug. 17, 2022, Steven Wallach, Patented Case. [cited by applicant]
Memory Access Control through Permissions Specified in Page Table Entries for Execution Domains, U.S. Appl. No. 17/899,366, filed Aug. 30, 2022, Confirmation: 1016, Sep. 25, 2022, Steven Wallach, Docketed New Case—Ready… [cited by applicant]
Security Configurations in Page Table Entires for Execution Domains using a Sandbox Application Operation, U.S. Appl. No. 16/520,296, filed Jul. 23, 2019, Confirmation: 7614, Feb. 17, 2021, Steven Wallach, Patented Case. [cited by applicant]
Security Configurations in Page Table Entries for Execution Domains, U.S. Appl. No. 17/170,763, filed Feb. 8, 2021, Confirmation: 7019, Jan. 4, 2023, Steven Wallach, Patented Case. [cited by applicant]
Security Configurations in Page Table Entries for Execution Domains, U.S. Appl. No. 18/064,778, filed Dec. 12, 2022, Confirmation: 8826, Jan. 6, 2023, Steven Wallach, Docketed New Case—Ready for Examination. [cited by applicant]
“Hash table. Collision resolution by chaining (closed addressing)”, Algorithms and Data Strcutures: with implementations in Java and C++, http://www.algolist.net/Data_structures/Hash_table/Chaining, printed on Aug. 30, … [cited by applicant]
Call stack, Wikipedia, printed on Aug. 10, 2018. [cited by applicant]
Capability-based addressing, Wikipedia, printed on Sep. 13, 2018. [cited by applicant]
Explain Hashed page tables in operating system, https://cs.stackexchange.com/questions/85207/explain-hashed-page-tables-in-operating system, printed on Aug. 17, 2018. [cited by applicant]
Extended European Search Report, EP19856112.8, mailed on Apr. 14, 2022. [cited by applicant]
Extended European Search Report, EP19855925.4, mailed on Apr. 11, 2022. [cited by applicant]
Extended European Search Report, EP19854049.4, mailed on Apr. 7, 2022. [cited by applicant]
Extended European Search Report, EP19853813.4, mailed on Apr. 4, 2022. [cited by applicant]
Extended European Search Report, EP19855829.8, mailed on Apr. 11, 2022. [cited by applicant]
Extended European Search Report, EP19854485.7, mailed on Apr. 11, 2022. [cited by applicant]
Extended European Search Report, EP19854059.3, mailed on Apr. 11, 2022. [cited by applicant]
Extended European Search Report, EP19854058.5, mailed on Apr. 20, 2022. [cited by applicant]
Fernandez, Eduardo B., et al. “Patterns for the secure and reliable execution of processes.” Pattern Languages of Programs, ACM, Oct. 18, 2008. [cited by applicant]
G. J. Myers, B. R. S. Buckingham, “A Hardware Implemenation of Capability-based Addressing”, ACM SIGARCH Computer Architecture News Homepage archive, vol. 8, Iss. 6, Oct. 1980. [cited by applicant]
George Radin, Peter R. Schneider, “An Architecture for an Extended Machine With Protected Addressing”, May 21, 1976. [cited by applicant]
Hash table, Wikipedia, printed on Aug. 30, 2018. [cited by applicant]
Hypervisor, Wikipedia, printed on Apr. 19, 2018. [cited by applicant]
International Search Report and Written Opinion, PCT/US2019/048015, mailed Dec. 12, 2019. [cited by applicant]
International Search Report and Written Opinion, PCT/US2019/048006, mailed Dec. 11, 2019. [cited by applicant]
International Search Report and Written Opinion, PCT/US2019/048008, mailed Dec. 12, 2019. [cited by applicant]
International Search Report and Written Opinion, PCT/US2019/048023, mailed Dec. 17, 2019. [cited by applicant]
International Search Report and Written Opinion, PCT/US2019/048020, mailed Dec. 17, 2019. [cited by applicant]
International Search Report and Written Opinion, PCT/US2019/048019, mailed Dec. 17, 2019. [cited by applicant]
International Search Report and Written Opinion, PCT/US2019/048013, mailed Dec. 13, 2019. [cited by applicant]
International Search Report and Written Opinion, PCT/US2019/048018, mailed Dec. 17, 2019. [cited by applicant]
Lluis Vilanove, et al. “CODOMs: Protecting Software with Code-centric Memory Domains.” ACM SIGARCH Computer Architecture news, vol. 42, Issue 3, Jun. 2014. [cited by applicant]
Lluís Vilanova et al., “CODOMs: Protecting Software with Code-centric Memory Domains,” ACM SIGARCH Computer Architecture News, Jun. 2014. [cited by applicant]
Martinsen, Jayce. “Implementation of Intel Virtual Machine Extension Root Operation on the NPS Least Privilege Separation Kernel.” Naval Postgraduate School thesis, Sep. 2010. [cited by applicant]
Michael D. Schroeder, Jerome H. Saltzer, “A Hardware Architecture for Implementing Protection Rings”, Presented at the Third ACM Symposium on Operating Systems Principles, Palo Alto, CA, Oct. 1971. [cited by applicant]
Page replacement algorithm, Wikipedia, printed on Jul. 31, 2018. [cited by applicant]
Page table, Wikipedia, printed on Jul. 31, 2018. [cited by applicant]
Protection ring, Wikipedia, printed on Jul. 31, 2018. [cited by applicant]
R. S. Fabry, “Capability-Based Addressing”, Communications of the ACM, Jul. 1974. [cited by applicant]
Sandbox (computer security), Wikipedia, printed on Aug. 21, 2018. [cited by applicant]
Stack register, Wikipedia, printed on Aug. 10, 2018. [cited by applicant]
The RISC-V Instruction Set Manual, vol. II: Privileged Architecture, May 7, 2017. [cited by applicant]
Vilanova, Lluis, et al. “CODOMs: Protecting Software with Code-centric Memory Domains.” IEEE, Jun. 14, 2014. [cited by applicant]
Vilanova, Lluis. “CODOMs: Protecting Software with Code-centric Memory Domains.” IEEE, 2014. [cited by applicant]
Vmware. “Mechanisms to determine if software is running in a Vmware virtual machine.” Retrieved from the Internet <https://kb.vmware.com/s/article/1009458> on Nov. 23, 2021. [cited by applicant]
Fan, Kai, et al., “Cross-Domain Based Data Sharing Scheme in Cooperative Edge Computing.” 2018 IEEE, International Conference on Edge Computing (EDGE), IEEE, 2018. [cited by applicant]
Wang, Jun, et al., “Research on Safe Privilege Management Model in Trusted-Domains.” 2008 International Symposium on Knowledge Acquisition and Modeling, 2008. [cited by applicant]
Cho, Yun Chan, et al., “Sharing Data Between Processes Running on Difference Domains in para-Virtualized Xen.” International Conference on Control, Automation and Systems 2007, COEX, Oct. 17-20, 2007. [cited by applicant]
He, Quanwen, et al., “A Novel Cross-domain Access Control Protocol in Mobile Edge Computing.” 2021 IEEE Global Communications Conference (GLOBECOM), IEEE, 2021. [cited by applicant]
Kongsgard, Kyrre Wahl, et al., “Data Leakage Prevention for Secure Cross-Domain Information Exchange.” IEEE Communications Magazine, IEEE, Oct. 2017. [cited by applicant]
Zhang, Hongbin, et al., “An Access Control Model for Multi-level Security in Multi-domain Networking Environments.” The 9th International Conference on Modelling, Identification and Control, ICMIC, 2017. [cited by applicant]
Zhang, Hua, et al., “Research on User Cross-domain Access Control Model Based on Feedback.” 2021 International Conference on Intelligent Computing, Automation and Applications (ICAA), IEEE, 2021. [cited by applicant]
Fernandez, Eduardo B., et al., “Patterns for the secure and reliable execution of processes.” ACM, Oct. 8, 2008. [cited by applicant]
Mishra, Mayank, et al., “Dynamic Resource Management Using Virtual Machine Migrations.” IEEE Communications Magazine, IEEE, Sep. 2012. [cited by applicant]
Microchip, “Microchip application note TB3268: Using the CRC-on-Boot.” Technical Brief, Microchip Technology Inc., 2020. [cited by applicant]
Trusted Computing Group, “DICE Certificate Profiles.” Specification, Trusted Computing Group, Jul. 23, 2020. [cited by applicant]
He, Quanwen, et al., “A Novel Cross-domain Access Control Protocol in Mobile Edge Computing.” IEEE, 2021. [cited by applicant]
Mouliswaran, S. Chandra, et al., “Representation of Multiple Domain Role Based Access Control Using FCA.” IEEE, 2015. [cited by applicant]
Zhu, He-fei, et al., “Memory Management Unit Design for Embedded System,” Computer Engineering and Applications, No. 1, Abstract only, Jan. 1, 2007. [cited by applicant]
Rusling, David A., et al., “Linux Programming White Papers.” China Machine Press, Apr. 30, 2000. [cited by applicant]
Vilanova, Lluis, et al., “CODOMs: Protecting Software with Code-centric Memory Domains.” Computer Architecture, IEEE, Jun. 14, 2014. [cited by applicant]