The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jun. 09, 2020

Filed:

Jul. 12, 2017
Applicant:

Nicira, Inc., Palo Alto, CA (US);

Inventors:

Laxmikant Gunda, Palo Alto, CA (US);

Nilesh Awate, Pune, IN;

Priyal Rathi, Pune, IN;

Assignee:

Nicira, Inc., Palo Alto, CA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/62 (2013.01); G06F 9/455 (2018.01); G06F 21/53 (2013.01);
U.S. Cl.
CPC ...
G06F 21/6209 (2013.01); G06F 9/45558 (2013.01); G06F 21/53 (2013.01); G06F 9/45545 (2013.01); G06F 2009/45579 (2013.01); G06F 2009/45587 (2013.01);
Abstract

A method of providing security for containers executing on a physical host machine is provided. The method receives a notification of a file access request. The notification includes a path in a file system of the host machine being accessed by a process. From the path, the method determines whether the file access event is for accessing a location in the file system to which container file systems are mapped. The method identifies a namespace of the process using the identification of the process included in the file path. The method determines the process is a container when the namespace belongs to a service that is used to implement containers on the host machine. The method sends the identifier of the container, the identification of a VM executing the container, and the file path to a set of security applications to determine whether the file access request to be allowed.


Find Patent Forward Citations

Loading…