protected mode

Also found in: Dictionary, Thesaurus, Medical, Legal, Financial, Wikipedia.

protected mode

An operating mode of Intel 80x86 processors. The opposite of real mode. The Intel 8088, Intel 8086, Intel 80188 and Intel 80186 had only real mode, processors beginning with the Intel 80286 feature a second mode called protected mode.

In real mode, addresses are generated by adding an address offset to the value of a segment register shifted left four bits. As the segment register and address offset are 16 bits long this results in a 20-bit address. This is the origin of the one megabyte (2^20) limit in real mode.

There are 4 segment registers on processors before the Intel 80386. The 80386 introduced two more segment registers. Which segment register is used depends on the instruction, on the addressing mode and of an optional instruction prefix which selects the segment register explicitly.

In protected mode, the segment registers contain an index into a table of segment descriptors. Each segment descriptor contains the start address of the segment, to which the offset is added to generate the address. In addition, the segment descriptor contains memory protection information. This includes an offset limit and bits for write and read permission. This allows the processor to prevent memory accesses to certain data. The operating system can use this to protect different processes' memory from each other, hence the name "protected mode".

While the standard register set belongs to the CPU, the segment registers lie "at the boundary" between the CPU and MMU. Each time a new value is loaded into a segment register while in protected mode, the corresponding descriptor is loaded into a descriptor cache in the (Segment-)MMU. On processors before the Pentium this takes longer than just loading the segment register in real mode. Addresses generated by the CPU (which are segment offsets) are passed to the MMU to be checked against the limit in the segment descriptor and are there added to the segment base address in the descriptor to form a linear address.

On a 80386 or later, the linear address is further processed by the paged MMU before the result (the physical address) appears on the chip's address pins. The 80286 doesn't have a paged MMU so the linear address is output directly as the physical address.

The paged MMU allows for arbitrary remapping of four klilobyte memory blocks (pages) through a translation table stored in memory. A few entries of this table are cached in the MMU's Translation Lookaside Buffer to avoid excessive memory accesses.

After processor reset, all processors start in real mode. Protected mode has to be enabled by software. On the 80286 there exists no documented way back to real mode apart from resetting the processor. Later processors allow switching back to real mode by software.

Software which has been written or compiled to run in protected mode must only use segment register values given to it by the operating system. Unfortunately, most application code for MS-DOS, written before the 286, will fail in protected mode because it assumes real mode addressing and writes arbitrary values to segment registers, e.g. in order to perform address calculations.

Such use of segment registers is only really necessary with data structures that are larger than 64 kilobytes and thus don't fit into a single segment. This is usually dealt with by the huge memory model in compilers. In this model, compilers generate address arithmetic involving segment registers. A solution which is portable to protected mode with almost the same efficiency would involve using a table of segments instead of calculating new segment register values ad hoc.

To ease the transition to protected mode, Intel 80386 and later processors provide "virtual 86 mode".

Protected Mode

(1) The native state of an Intel CPU, which provides access to all advanced memory management functions. It was introduced in 1982 with the 16-bit 286 chip, which was the first x86 chip to break the 1MB barrier of the original 8086/8088 architecture. See Real Mode, Virtual 8086 Mode, 32-bit processing and memory protection.

(2) (protected mode) May refer to memory protection or a type of secure environment. See memory protection.
References in periodicals archive ?
We intend to help employers prepare quality job seekers, and to prepare for job interviews through negotiations with the real test by the employer in protected mode.
Look for the option to Enable Enhanced Protected Mode and click its checkbox to turn it on.
Because Adobe Reader X Protected Mode would prevent an exploit of this kind from executing, we are currently planning to address this issue in Adobe Reader X for Windows with the next quarterly security update for Adobe Reader, currently scheduled for June 14, 2011," the blog post said.
The WinTRAC 95 trackball offers all the features of MicroSpeed's original WinTRAC--including three programmable buttons and automatic application sensing--plus protected mode drivers for true 32 operation under Windows 95.
This gave me 2,048k in the 80286 protected mode split between 640k for DOS and 1,408k of extended RAM.
For example, CHK1-2-3 will determine the amount of conventional, expanded and extended memory available, the DOS version installed, and the computer's ability to access the protected mode of 80286 and 80386 microprocessors.
Colligan says that protected mode and real mode share almost identical instruction sets, so recompiling a standard Dos application for protected mode operation "usually takes no more than two or three weeks.
Safer viewing of PDF files with new Protected Mode security capabilities in Reader X.
As well as offering general protection against cyber-threats, the solution includes the Safe Money feature that allows users to open banking or shopping websites in a protected mode, verifies that websites are secure and prevents hidden redirects to fake websites attempting to steal personal information.
advisory including the Enhanced Protected Mode for IE 10 and 11, deemed as one