×

Secure privilege level execution and access protection

  • US 10,198,578 B2
  • Filed: 12/05/2016
  • Issued: 02/05/2019
  • Est. Priority Date: 06/14/2013
  • Status: Active Grant
First Claim
Patent Images

1. A system for enforcing code execution and data access policies comprising:

  • enforcement logic configured to;

    determine an access designation and an execution designation of a plurality of chunks, each of the plurality of chunks comprising a plurality of bits of addressable memory space and policy settings that identify one or more execution capabilities and one or more access capabilities, wherein a policy setting for a first chunk from the plurality of chunks indicates that code in the first chunk is executable by a first source and not a second source, and wherein a policy setting for a second chunk indicates that code in the second chunk is executable by the second source and not the first source;

    receive a request from the first source related to code execution at an address against the access designation of a chunk from the plurality of chunks corresponding to the address by accessing policy settings for the chunk; and

    upon determining that the chunk is the first chunk, allow the request;

    orupon determining that the chunk is the second chuck, deny the request.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×