×

Processors, methods, systems, and instructions to support live migration of protected containers

  • US 10,558,588 B2
  • Filed: 07/17/2017
  • Issued: 02/11/2020
  • Est. Priority Date: 06/26/2015
  • Status: Active Grant
First Claim
Patent Images

1. A system on a chip comprising:

  • a decode unit to decode an instruction;

    a circuit to access a control structure in response to the instruction, the control structure to store a plurality of cryptographic keys capable of being migrated from a source computer system to a destination computer system;

    a cryptographic unit, in response to the instruction, to;

    decrypt a copy of data with a first cryptographic key, the data to be within an encrypted portion of a virtual machine; and

    encrypt the decrypted copy of the data with a second, different cryptographic key; and

    a memory controller, in response to the instruction, to store the encrypted copy of the data after the encryption by the cryptographic unit to a memory location outside of the encrypted portion of the virtual machine, as part of a migration of the virtual machine from the source computer system to the destination computer system,wherein the system on a chip is to leave the data within the encrypted portion of the virtual machine valid and readable after the encrypted copy of the data has been stored to the memory location outside of the encrypted portion of the virtual machine.

View all claims
  • 0 Assignments
Timeline View
Assignment View
    ×
    ×