×

System and method for multi-layered sensitive data protection in a virtual computing environment

  • US 9,009,471 B2
  • Filed: 03/14/2014
  • Issued: 04/14/2015
  • Est. Priority Date: 10/02/2012
  • Status: Active Grant
First Claim
Patent Images

1. A method to provide data protection in a virtual computing environment, the method executed by a processing device configured to perform a plurality of operations, the method comprising:

  • activating a guest virtual machine in the virtual computing environment, wherein the guest virtual machine is associated with a virtual appliance machine that administers sensitive data controls for the virtual computing environment, and wherein the virtual appliance machine comprises a sensitive data control monitor;

    generating a certificate that uniquely identifies the guest virtual machine;

    associating, at the sensitive data control monitor, an encryption key with the certificate; and

    passing the encryption key and the certificate from the virtual appliance machine to the guest virtual machine,wherein sensitive data stored by the guest virtual machine is encrypted on a virtual disc associated with the guest virtual machine using the encryption key and encryption of the sensitive data is maintained when the guest virtual machine is deactivated.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×