• 专利标题: Isolated network stack to manage security for virtual machines
  • 申请号: US15421121
    申请日: 2017-01-31
  • 公开(公告)号: US10938837B2
    公开(公告)日: 2021-03-02
  • 发明人: Vasantha Kumar
  • 申请人: Nicira, Inc.
  • 申请人地址: US CA Palo Alto
  • 专利权人: Nicira, Inc.
  • 当前专利权人: Nicira, Inc.
  • 当前专利权人地址: US CA Palo Alto
  • 代理机构: Adeli LLP
  • 优先权: IN201641029536 20160830
  • 主分类号: H04L29/06
  • IPC分类号: H04L29/06 G06F21/53
Isolated network stack to manage security for virtual machines
摘要:
Some embodiments provide a novel method for monitoring network requests from a machine. The method captures the network request at various layers of a protocol stack. At a first layer of a protocol stack, the method tags a packet related to the network request with a tag value, maps the tag value to a set of tuples associated with the packet, and sends a first set of data related to the packet to a security engine. At a second layer of the network stack, the method determines whether the packet has been modified through the network stack, and sends an updated second set of data to the security engine when the packet has been modified.
信息查询
0/0