Hypervisor-based binding of data to cloud environment for improved security
US9734325B1 · kind B1 · utility
Assignee
Inventors
Key dates
| Filing date | Dec 9, 2013 |
| Grant date | Aug 15, 2017 |
| Priority date | — |
| Expiry date | Apr 6, 2034 |
Classification
- Technology area (CPC G)Physics
- CPC primaryG06F2009/45587
- WIPO fieldComputer technology
- WIPO sectorElectrical engineering
Abstract
A method includes receiving a request at a first hypervisor from an application within a virtual machine. The virtual machine is executed within a virtualization layer supported by a second hypervisor, and the virtual machine and the hypervisors are executed by a computing node. The method also includes interrupting execution of the application and determining an authorization key using hashing operations performed by the first hypervisor based on measurements associated with the computing node and data associated with the first hypervisor. The method further includes storing the authorization key and resuming execution of the application. In addition, the method could include performing the receiving, interrupting, determining, storing, and resuming steps at each of multiple computing nodes in a computing cloud, where each computing node executes first and second hypervisors. The first hypervisors in the computing nodes can bind the virtual machine to the computing cloud.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.