The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Aug. 09, 2022

Filed:

Jul. 11, 2019
Applicant:

International Business Machines Corporation, Armonk, NY (US);

Inventors:

Hai Huang, Scarsdale, NY (US);

Jia Jun Brandon Lum, White Plains, NY (US);

Sahil Suneja, Ossining, NY (US);

Ricardo Andrei Koller Jemio, White Plains, NY (US);

Malgorzata Steinder, Leonia, NJ (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/75 (2013.01); G06F 21/57 (2013.01);
U.S. Cl.
CPC ...
G06F 21/575 (2013.01); G06F 2221/2115 (2013.01);
Abstract

Techniques facilitating security hardening systems that host containers are provided. In one example, a system comprises: a memory that stores computer executable components; and a processor that executes computer executable components stored in the memory. The computer executable components comprise: a boot component performs a portion of a trusted boot sequence to securely boot the system to a defined secure state wherein one or more types of administrative access to a container memory are deactivated. The computer executable components also comprise: a core service component started as a part of the trusted boot sequence and that securely obtains one or more decryption keys for use with the container memory; and a runtime decryption component that uses the one or more decryption keys to perform runtime decryption of one or more files accessed by a container associated with the container memory.


Find Patent Forward Citations

Loading…