Host-based firewall for distributed computer systems

    公开(公告)号:US10142290B1

    公开(公告)日:2018-11-27

    申请号:US15085608

    申请日:2016-03-30

    Abstract: Customers of a computing resource service provider may utilize computing resources of the computing resources service provided to implement one or more computer systems. Furthermore, the customer may cause a host-based firewall to be executed by the one or more computer systems. The host-based firewall may collect network traffic information. The customer may then be provided with the network traffic information and be prompted to provide decisions associated with the network traffic information. The decisions may be used to generate a set of rules which may be enforced by the host-based firewall.

    Implementing network security policies using TPM-based credentials

    公开(公告)号:US09935937B1

    公开(公告)日:2018-04-03

    申请号:US14533395

    申请日:2014-11-05

    CPC classification number: H04L63/0823 H04L63/0853 H04L63/20

    Abstract: A method for implementing network security policies in a multi-tenant network environment may include receiving a request for implementation of at least one network security policy on one or more computing devices of a service provider cloud environment. The network security policy identified by the request may be retrieved. The network security policy may be encrypted using encrypting credentials of the one or more computing devices. Decrypting credentials corresponding to the encrypting credentials are stored in a Trusted Platform Module (TPM) within the one or more computing devices. The encrypted network security policy may be pushed to the one or more computing devices, for decryption and implementation at the one or more computing devices.

Patent Agency Ranking