Patent · US Active

Security within a software-defined infrastructure

US10546121B2 · kind B2 · utility

3Cited by
3References
14Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJun 22, 2018
Grant dateJan 28, 2020
Priority date
Expiry dateJun 22, 2038

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F2221/034
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

There is a computer program product and computer system that includes program instructions programmed to establish a security container describing a workload and a set of resources in a software-defined environment, the security container including a set of sub-containers that are self-describing sub-containers having associated metadata describing content of a respectively corresponding sub-container, each sub-container of the set of sub-containers respectively corresponds to a resource-divisible portion of the workload, the set of resources being required by the workload, wherein a sub-container of the set of sub-containers is an operating system sub-container; monitor the workload and the set of resources for security events; and responsive to identifying a security event, adjust isolation mechanisms provided by the plurality of sub-containers at various layers of a stack. The set of sub-containers represents an end-to-end run time environment for processing the workload using the set of resources.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.