×

Security within a software-defined infrastructure

  • US 10,534,911 B2
  • Filed: 06/22/2018
  • Issued: 01/14/2020
  • Est. Priority Date: 03/25/2015
  • Status: Active Grant
First Claim
Patent Images

1. A computer program product comprising a computer readable storage medium having stored thereon program instructions programmed to:

  • identify, in a software-defined environment, a security container describing a workload and a set of resources required by the workload, the security container including self-describing sub-containers having associated metadata describing content of a respectively corresponding sub-container;

    determine, for the workload, a set of resource-divisible portions of the workload including a compute-resource portion;

    generate a plurality of sub-containers within the security container, a sub-container within the plurality of sub-containers being a self-describing sub-container having associated metadata describing the content of the sub-container representing only one resource-divisible portion, the sub-container being an operating system sub-container; and

    responsive to identifying a security event while processing the workload, adjust a security mechanism associated with the security container;

    wherein;

    the plurality of sub-containers represents an end-to-end run time environment for processing the workload.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×