- 专利标题: Isolated network stack to manage security for virtual machines
-
申请号: US15421121申请日: 2017-01-31
-
公开(公告)号: US10938837B2公开(公告)日: 2021-03-02
- 发明人: Vasantha Kumar
- 申请人: Nicira, Inc.
- 申请人地址: US CA Palo Alto
- 专利权人: Nicira, Inc.
- 当前专利权人: Nicira, Inc.
- 当前专利权人地址: US CA Palo Alto
- 代理机构: Adeli LLP
- 优先权: IN201641029536 20160830
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; G06F21/53
摘要:
Some embodiments provide a novel method for monitoring network requests from a machine. The method captures the network request at various layers of a protocol stack. At a first layer of a protocol stack, the method tags a packet related to the network request with a tag value, maps the tag value to a set of tuples associated with the packet, and sends a first set of data related to the packet to a security engine. At a second layer of the network stack, the method determines whether the packet has been modified through the network stack, and sends an updated second set of data to the security engine when the packet has been modified.
公开/授权文献
信息查询