VIRTUAL MACHINE MIGRATION
First Claim
1. A method of attesting a virtual machine migrating from a first environment to a second environment comprising:
- in response to initiation of migration of the virtual machine from the first environment to the second environment;
accessing one or more stored trust values generated during trusted boot of the virtual machine in the first environment;
determining that the accessed trust values define a security setting that is not sufficient for the second environment; and
in response to the determination that the accessed trust values define the security setting that is not sufficient for the second environment, performing a predetermined action in relation to the migration of the virtual machine to the second environment.
1 Assignment
0 Petitions
Accused Products
Abstract
Attesting a virtual machine that is migrating from a first environment to a second environment includes in response to initiation of migration of the virtual machine from the first environment to the second environment, accessing one or more stored trust values generated during the trusted boot of the virtual machine in the first environment, determining if the accessed trust values define a security setting sufficient for the second environment, and if the accessed trust values do not define a security setting sufficient for the second environment, performing a predetermined action in relation to the migration of the virtual machine to the second environment.
-
Citations
12 Claims
-
1. A method of attesting a virtual machine migrating from a first environment to a second environment comprising:
in response to initiation of migration of the virtual machine from the first environment to the second environment; accessing one or more stored trust values generated during trusted boot of the virtual machine in the first environment; determining that the accessed trust values define a security setting that is not sufficient for the second environment; and in response to the determination that the accessed trust values define the security setting that is not sufficient for the second environment, performing a predetermined action in relation to the migration of the virtual machine to the second environment. - View Dependent Claims (2, 3, 4)
-
5. A system for attesting a virtual machine migrating from a first environment to a second environment comprising:
-
a computer processor; and a computer readable storage medium comprising a trusted management unit executable by the computer processor to; responsive to initiation of migration of the virtual machine from the first environment to the second environment; accessing one or more stored trust values generated during trusted boot of the virtual machine in the first environment; determining that the accessed trust values define a security setting that is not sufficient for the second environment; and in response to the determination that the accessed trust values define the security setting that is not sufficient for the second environment, performing a predetermined action in relation to the migration of the virtual machine to the second environment. - View Dependent Claims (6, 7, 8)
-
-
9. A computer program product on a tangible computer readable storage medium for attesting a virtual machine migrating from a first environment to a second environment, the product comprising instructions executable by a computer to cause the computer to perform:
-
responsive to initiation of migration of the virtual machine from the first environment to the second environment; accessing one or more stored trust values generated during trusted boot of the virtual machine in the first environment; determining that the accessed trust values define a security setting that is not sufficient for the second environment; and in response to the determination that the accessed trust values define the security setting that is not sufficient for the second environment, performing a predetermined action in relation to the migration of the virtual machine to the second environment. - View Dependent Claims (10, 11, 12)
-
Specification