Invention Grant
- Patent Title: Container isolation method and apparatus for netlink resource
-
Application No.: US16777516Application Date: 2020-01-30
-
Publication No.: US11500666B2Publication Date: 2022-11-15
- Inventor: Guocheng Zhong , Liang Zhang , Jianrui Yang , Jinmiao Liu
- Applicant: HUAWEI TECHNOLOGIES CO., LTD.
- Applicant Address: CN Shenzhen
- Assignee: HUAWEI TECHNOLOGIES CO., LTD.
- Current Assignee: HUAWEI TECHNOLOGIES CO., LTD.
- Current Assignee Address: CN Shenzhen
- Agency: Hauptman Ham, LLP
- Priority: CN201710637129.7 20170731
- Main IPC: G06F9/455
- IPC: G06F9/455 ; G06F9/54 ; G06F9/30

Abstract:
A container isolation method for a netlink resource includes receiving, by a kernel executed by a processor, a trigger instruction from an application program. The method also includes creating, by the kernel according to the trigger instruction, a container corresponding to the application program, creating a netlink namespace for the container, and sending a notification to the application program indicating that the netlink namespace is created. The method further includes receiving, by the kernel, a netlink message from the container, wherein the netlink message comprises entries generated when the container runs. The method additionally includes storing, by the kernel, the entries based on an identifier of the netlink namespace for the container, to send an entry required by the container to user space of the container.
Public/Granted literature
- US20200167186A1 CONTAINER ISOLATION METHOD AND APPARATUS FOR NETLINK RESOURCE Public/Granted day:2020-05-28
Information query