Method for carrying out centralized control on internal memory of safety control module

A security control module and centralized control technology, applied in computer security devices, memory address/allocation/relocation, internal/peripheral computer component protection, etc., can solve problems such as poor efficiency, avoid memory waste and ensure high performance The effect of memory allocation, avoiding object reuse

Inactive Publication Date: 2010-06-16
BEIJING UNIV OF TECH
View PDF0 Cites 8 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

The general memory allocation algorith

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for carrying out centralized control on internal memory of safety control module
  • Method for carrying out centralized control on internal memory of safety control module
  • Method for carrying out centralized control on internal memory of safety control module

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0015] The invention sets forth an efficient method for allocating the name space memory of the core layer name space of the structured protection level operating system. It maintains namespace memory blocks with a doubly linked list, allocates namespaces with a stack mechanism, and roughly sorts the empty memory blocks with dynamically increased empty values ​​by a decomposed sorting method, so as to ensure that memory blocks can be found quickly when performing memory block recovery operations of recycled objects.

[0016] In order to achieve the above object, the specific embodiment of the present invention is achieved in this way: an initial memory value is set, and the memory of the initial memory value size is pre-allocated in the system, which is centrally managed by the name space memory allocation mechanism, and the system regularly checks (can be regularly scheduled). Check or regular inspection) the total space and free space of the pre-allocated memory, when the fr...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a method for carrying out centralized control on internal memory of safety control module, which maintains name space memory blocks by using double linked list, distributes the name space by a stack mechanism and sequences the dynamically added hole memory blocks with dynamically added hole values by partitioned sequencing method. The method comprises the following steps: pre-defining parameters; distributing N memory blocks with the size being Bz and establishing a name space management mechanism by using the alloc pages () function; processing the memory distribution request from the security module by the name space; processing the memory release request from the security module by the name space; self-checking by the name space. The method can ensure that the processing of the trusted computing base security name space conforms to the principle of one-way call, the system monitors the situation of the security name space by a monitoring program, when the holes of the memory blocks are comparatively large, the hole memories are recycled; when the number of the idle memory blocks is insufficient, the idle memory blocks are supplemented. And meanwhile the trusted computing base is provided with a stable and efficient security name space memory distribution mechanism.

Description

technical field [0001] The invention belongs to the field of safety operating system and relates to a method for centrally allocating and managing memory used in the operation of a safety control module. The method can not only improve the utilization efficiency of system resources, but also provide higher strength protection for the data used by the security control module. Background technique [0002] The national standard GB17859-1999 requires that operating systems above the structured protection level need to carry out security marking on all subjects and objects in the system, while in a large server, the total number of subjects and objects in the system may reach the order of millions, and there are May change dynamically. The operating system implements mandatory access control policies, and it is necessary to search and compare the names of these objects. Correspondingly, it is necessary to allocate space in memory for the security tags of these subjects and obj...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): G06F12/02G06F21/02G06F21/70
Inventor 胡俊沈昌祥田健生蔡勉
Owner BEIJING UNIV OF TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products