×

Method and apparatus for dynamic switching and real time security control on virtualized systems

  • US 20090073895A1
  • Filed: 09/17/2007
  • Published: 03/19/2009
  • Est. Priority Date: 09/17/2007
  • Status: Active Grant
First Claim
Patent Images

1. A system for securing network traffic to a platform, comprising:

  • a host processor on the platform having virtualization technology capability, the host processor coupled to a second processor on the platform to control network communication;

    a virtual machine manager (VMM) to execute on the host processor to control a plurality of virtual machines (VMs) running on the host processor;

    the second processor to send and receive network traffic to/from the plurality of virtual machines running on the host processor, the second processor to use at least one filter to determine when network traffic is suspect and to route suspect network traffic to a security virtual appliance for investigation, and when network traffic is not suspect, to route the non-suspect traffic to an intended recipient running on the host processor,wherein the security virtual appliance is to run in a first virtual machine and to investigate suspect network traffic, wherein when the suspect network traffic is identified as harmless, enabling the harmless traffic to be routed to the intended recipient running on the host processor, and when the network traffic is identified as not harmless, failing to forward the non-harmless traffic to the intended recipient on the host processor.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×