System and method for transforming inter-component communications through semantic interpretation
First Claim
Patent Images
1. A method for transforming inter-communications in a computing platform comprising:
- instantiating a set of isolated components, wherein each isolated component of the set of isolated components is individually isolated within a dedicated operating system level virtualization container;
to each of the isolated components of the set of isolated components, binding a respective semantic pipeline, wherein each respective semantic pipeline is bound as a dedicated semantic pipeline to a respective one of the isolated components;
establishing platform policies, the establishing comprising, for each of the semantic pipelines of the set of isolated components, defining a set of stages for the semantic pipeline, the set of stages being defined by the platform policies, each respective semantic pipeline for evaluating communications involving the isolated component to which it is bound, and each respective semantic pipeline for applying the platform policies to the communications, wherein the platform policies include, for each of one or more of the semantic pipelines, at least one rule policy for evaluating requested communications from a requesting one of the isolated components to a destination one of the isolated components, the rule policy determining whether requested communications are allowed or denied based on one or both of the requesting component and the destination component;
channeling communications of each of the isolated components through the respective semantic pipeline bound to the isolated component;
progressively processing a communication of one of the isolated components through the stages of the respective semantic pipeline; and
delivering the processed communication to a destination component in accordance with the platform policies, such that all communications from the one of the isolated components to the destination component are delivered through the respective semantic pipeline.
1 Assignment
0 Petitions
Accused Products
Abstract
A system and method for transforming inter-communications in a computing platform that includes establishing platform policies; isolating components of a platform; channeling communications of a component through a semantic pipeline; progressively processing a communication through stages of the semantic pipeline; and delivering the processed communication to the destination component in accordance with the semantic pipeline.
37 Citations
23 Claims
-
1. A method for transforming inter-communications in a computing platform comprising:
-
instantiating a set of isolated components, wherein each isolated component of the set of isolated components is individually isolated within a dedicated operating system level virtualization container; to each of the isolated components of the set of isolated components, binding a respective semantic pipeline, wherein each respective semantic pipeline is bound as a dedicated semantic pipeline to a respective one of the isolated components; establishing platform policies, the establishing comprising, for each of the semantic pipelines of the set of isolated components, defining a set of stages for the semantic pipeline, the set of stages being defined by the platform policies, each respective semantic pipeline for evaluating communications involving the isolated component to which it is bound, and each respective semantic pipeline for applying the platform policies to the communications, wherein the platform policies include, for each of one or more of the semantic pipelines, at least one rule policy for evaluating requested communications from a requesting one of the isolated components to a destination one of the isolated components, the rule policy determining whether requested communications are allowed or denied based on one or both of the requesting component and the destination component; channeling communications of each of the isolated components through the respective semantic pipeline bound to the isolated component; progressively processing a communication of one of the isolated components through the stages of the respective semantic pipeline; and delivering the processed communication to a destination component in accordance with the platform policies, such that all communications from the one of the isolated components to the destination component are delivered through the respective semantic pipeline. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14, 15, 16, 17, 18, 19, 20, 21, 22, 23)
-
Specification