Invention Application
- Patent Title: SECURITY CONTEXT AWARE NANO-SEGMENTATION FOR CONTAINER BASED MICROSERVICES
-
Application No.: US16547634Application Date: 2019-08-22
-
Publication No.: US20210006543A1Publication Date: 2021-01-07
- Inventor: Prahalad Deshpande , Nikhil Bhalerao , Atul Jadhav , Abhijit Sharma , Shashank Ranjan
- Applicant: VMWARE, INC.
- Applicant Address: US CA Palo Alto
- Assignee: VMWARE, INC.
- Current Assignee: VMWARE, INC.
- Current Assignee Address: US CA Palo Alto
- Priority: IN201941026800 20190704
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
The present disclosure provides an approach for creating one or more firewall rules to regulate communication between containers. The approach includes calculating a trust score for each container. To generate a rule for any two containers, a difference between the trust scores is computed, and if the difference in trust levels is too large, then the more trustworthy container is not allowed to communicate with the less trustworthy container. If the difference in trust scores is not too large, then the trustworthy container is allowed to communicate with the other trustworthy container, or an untrustworthy container is allowed to communicate with another untrustworthy container.
Public/Granted literature
- US11343231B2 Security context aware nano-segmentation for container based microservices Public/Granted day:2022-05-24
Information query