×

CROSS-VM NETWORK FILTERING

  • US 20130036470A1
  • Filed: 08/03/2011
  • Published: 02/07/2013
  • Est. Priority Date: 08/03/2011
  • Status: Active Grant
First Claim
Patent Images

1. A method of filtering data traffic in a virtualization environment, said method comprising:

  • receiving at a privileged virtual machine a data packet from a first virtual machine destined for a second virtual machine, said privileged virtual machine executing upon a virtualization platform on a host computer;

    intercepting said data packet by said privileged virtual machine;

    sending said data packet to a memory location shared with a security virtual machine executing on said virtualization platform;

    receiving at said privileged virtual machine a verdict from said security virtual machine regarding said data packet; and

    passing said data packet to said second virtual machine or dropping said data packet based upon said verdict.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×