Invention Application
- Patent Title: TECHNIQUES FOR DATA SECURITY IN A MULTI-TENANT ENVIRONMENT
- Patent Title (中): 数据安全技术在多重环境中的应用
-
Application No.: US15076264Application Date: 2016-03-21
-
Publication No.: US20160205110A1Publication Date: 2016-07-14
- Inventor: Gregory B. Roth , Eric Jason Brandwine , Graeme D. Baer
- Applicant: Amazon Technologies, Inc.
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
The usage of data in a multi-tenant environment can be controlled by utilizing functionality at the hypervisor level of various resources in the environment. Data can be associated with various tags, security levels, and/or compartments. The ability of resources or entities to access the data can depend at least in part upon whether the resources or entities are also associated with the tags, security levels, and/or compartments. Limitations on the usage of the data can be controlled by one or more policies associated with the tags, security levels, and/or compartments. A control service can monitor traffic to enforce the appropriate rules or policies, and in some cases can prevent encrypted traffic from passing beyond a specified egress point unless the encryption was performed by a trusted resource with the appropriate permissions.
Public/Granted literature
- US10270781B2 Techniques for data security in a multi-tenant environment Public/Granted day:2019-04-23
Information query