The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jul. 21, 2020

Filed:

Jan. 26, 2017
Applicant:

British Telecommunications Public Limited Company, London, GB;

Inventors:

Fadi El-Moussa, London, GB;

Theo Dimitrakos, London, GB;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 9/46 (2006.01); G06F 9/455 (2018.01); G06F 8/61 (2018.01); G06F 21/53 (2013.01); G06F 21/62 (2013.01); G06F 9/48 (2006.01); G06F 21/60 (2013.01); H04L 29/06 (2006.01);
U.S. Cl.
CPC ...
G06F 9/45558 (2013.01); G06F 8/63 (2013.01); G06F 9/4856 (2013.01); G06F 21/53 (2013.01); G06F 21/602 (2013.01); G06F 21/6218 (2013.01); H04L 63/06 (2013.01); G06F 2009/4557 (2013.01); G06F 2009/45562 (2013.01); G06F 2009/45566 (2013.01); G06F 2221/2107 (2013.01);
Abstract

A computer implemented method of providing whole disk encryption for a virtualized computer system including providing a software component executing in a first virtual machine for instantiation in a first hypervisor, the software component invoking a second hypervisor within the first virtual machine for instantiating a disk image of the virtualized computer system as a second virtual machine, and the software component being configured to install a software agent in the second virtual machine, the software agent being adapted to: a) encrypt the instantiated disk image; b) encrypt data written, by the second virtual machine, to the instantiated disk image at a runtime of the second virtual machine; and c) decrypt data read, by the second virtual machine, from the instantiated disk image at a runtime of the second virtual machine, wherein the software component is configured to migrate the second virtual machine at a runtime of the second virtual machine to the first hypervisor so as to provide a wholly encrypted disk image for the second virtual machine executing in the first hypervisor.


Find Patent Forward Citations

Loading…