Invention Grant
- Patent Title: Container data offline and online scan in a cloud environment
-
Application No.: US15967494Application Date: 2018-04-30
-
Publication No.: US10581890B2Publication Date: 2020-03-03
- Inventor: Jinto Antony
- Applicant: VMware, Inc.
- Applicant Address: US CA Palo Alto
- Assignee: VMWARE, INC.
- Current Assignee: VMWARE, INC.
- Current Assignee Address: US CA Palo Alto
- Agency: Loza & Loza, LLP
- Main IPC: G06F21/50
- IPC: G06F21/50 ; G06F21/56 ; H04L29/06 ; G06F9/455 ; G06F21/00 ; G06F21/53

Abstract:
Techniques for security scanning of containers executing within VMs. A virtualization system maintains container disk files that store data for containers. The container disk files are stored separate from, and not included within, virtual machine disk files that store data for the virtual machines. To scan data for any particular container, a scanning module scans the container disk file associated with the container. If a threat is found, a container scan catalog is updated to indicate this fact. A container may be disconnected from the network if identified security threats cannot be removed from the container. An entire VM may be disconnected from the network if all containers within the VM have threats that cannot be cleaned. The use of container disk files for security threat scanning allows for data for individual containers to be scanned.
Public/Granted literature
- US20180255087A1 CONTAINER DATA OFFLINE AND ONLINE SCAN IN A CLOUD ENVIRONMENT Public/Granted day:2018-09-06
Information query