Invention Grant
- Patent Title: Methods and systems for applying security policies in a virtualization environment using a security instance
-
Application No.: US15427004Application Date: 2017-02-07
-
Publication No.: US10341387B2Publication Date: 2019-07-02
- Inventor: Fei Huang , Gang Duan
- Applicant: NeuVector, Inc.
- Applicant Address: US CA Milpitas
- Assignee: NEUVECTOR, INC.
- Current Assignee: NEUVECTOR, INC.
- Current Assignee Address: US CA Milpitas
- Agency: Morgan, Lewis & Bockius LLP
- Main IPC: G06F17/00
- IPC: G06F17/00 ; H04L29/06 ; G06F9/455 ; H04W12/08

Abstract:
The various implementations described herein include systems, methods and/or devices method for applying security policies in a virtualization environment. In one aspect, the method is performed at an electronic device of a plurality of electronic devices in a computing network, the electronic device having one or more processors and memory storing instructions for execution by the one or more processors. A plurality of user-space instances is instantiated. Furthermore, a security instance distinct from the plurality of user-space instances is instantiated. The security instance, which executes in user space of a respective virtual address space, monitors operations and data communications for the plurality of user-space instances. The security instance applies security policies to the monitored operations and data communications for the plurality of user-space instances so as to detect and/or remediate violations of the security policies.
Public/Granted literature
Information query