×

System and method for enforcing security policies in a virtual environment

  • US 8,869,265 B2
  • Filed: 12/21/2012
  • Issued: 10/21/2014
  • Est. Priority Date: 08/21/2009
  • Status: Expired due to Fees
First Claim
Patent Images

1. A method, comprising:

  • intercepting, by a security layer, a request for an execution of an object in a computer wherein the request for the execution is from a user space of a privileged domain;

    verifying an authorization of the object by linking a particular module into a kernel space associated with the privileged domain, wherein the particular module is configured to compute a checksum for the object, access an inventory of a plurality of stored checksums in a memory element, and compare the checksum to the plurality of stored checksums; and

    denying the execution of the object if it is not authorized;

    wherein the security layer is in a kernel of a privileged domain of a computer configured to operate in a virtual machine environment, wherein the privileged domain of the computer manages a virtual machine monitor (VMM) and operates at a higher priority than one or more guest operating systems.

View all claims
  • 9 Assignments
Timeline View
Assignment View
    ×
    ×