-
公开(公告)号:US20200014638A1
公开(公告)日:2020-01-09
申请号:US16028342
申请日:2018-07-05
Applicant: VMware, Inc.
Inventor: Tori Chen , Sirisha Myneni , Arijit Chanda , Arnold Poon , Farzad Ghannadian , Venkat Rajagopalan
IPC: H04L12/931 , H04L12/741 , H04L12/24 , H04L12/721 , H04L12/46 , G06F9/455 , H04L12/803
Abstract: Some embodiments of the invention provide a novel architecture for capturing contextual attributes on host computers that execute one or more machines and providing the captured contextual attributes to middlebox service engines executing at the edge of a physical datacenter. In some embodiments, the middlebox service engines run in an edge host (e.g., an NSX Edge) that provides routing services and connectivity to external networks (e.g., networks external to an NSX-T deployment). Some embodiments execute a context header insertion processor that receives contextual attributes relating to network events and/or process events on the machines collected using a guest-introspection (GI) agent on each machine. In some embodiments, the context header insertion processor uses these contextual attributes to generate a header including data regarding the contextual attributes (a “context header”) that is used to encapsulate a data message that is processed by the SFE.
-
公开(公告)号:US09779240B2
公开(公告)日:2017-10-03
申请号:US14611006
申请日:2015-01-30
Applicant: VMware, Inc.
Inventor: Azeem Feroz , Rahul Mathias Madan , Arnold Poon , Aditi Vutukuri
CPC classification number: G06F21/566 , G06F9/45558 , G06F21/53 , G06F21/561 , G06F21/575 , G06F2009/45587 , G06F2221/034
Abstract: Aspects of the present invention include hypervisor based security using a hypervisor to monitor a VM. In embodiments of the present invention, the information gathered by the hypervisor in the monitoring is compared against a reference image to determine if there are possible rootkits present on the VM. If there are potential rootkits, the VM can be quarantined.
-