发明名称 System and method for intelligent coordination of host and guest intrusion prevention in virtualized environment
摘要 A distributed and coordinated security system providing intrusion-detection and intrusion-prevention for the virtual machines (VMs) in a virtual server is described. The virtualization platform of the virtual server is enhanced with networking drivers that provide a "fast path" firewall function for pre-configured guest VMs that already have dedicated deep packet inspection security agents installed. A separate security VM is deployed to provide virtual security agents providing deep packet inspection for non pre-configured guest VMs. The network drivers are then configured to intercept the data traffic of these guest VMs and route it through their corresponding virtual security agents, thus providing a "slow-path" for intrusion detection and prevention.
申请公布号 US8443440(B2) 申请公布日期 2013.05.14
申请号 US20090418252 申请日期 2009.04.03
申请人 MCGEE WILLIAM GERALD;TREND MICRO INCORPORATED 发明人 MCGEE WILLIAM GERALD
分类号 G06F21/00;G06F11/30 主分类号 G06F21/00
代理机构 代理人
主权项
地址