Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Linux Foundation

Zephyr OS Memory Protection

Linux Foundation via YouTube

Overview

Explore MPU-based memory protection features in the Zephyr RTOS through this 35-minute conference talk. Learn about novel techniques for overcoming MPU hardware limitations, implementing security domains in physical memory maps, and maintaining API compatibility across platforms. Discover the permission management system for controlling access to kernel objects and device driver instances, as well as the handling of static and dynamically allocated kernel objects. Gain insights into routing global objects to application memory domains, managing size/alignment constraints of MPU hardware, and defining system calls. Examine the implementation of futex-like capabilities for IPC mechanisms and uncover ongoing areas of development in Zephyr OS memory protection.

Syllabus

Intro
Zephyr vs. Linux
So What's the Problem?
High Level Security Objectives
User Mode Threads
Build Generation
Object Metadata
Futex-like objects
Dynamic Kernel Objects
System Calls Flowchart
MPU Hardware - SAM E70 Example
Memory Domains / Kernel Object Permissions
Automatic Memory Domain Setup
Automatic Memory Partitioning
Resource Allocation
Wrap-Up

Taught by

Linux Foundation

Reviews

Start your review of Zephyr OS Memory Protection

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.