Invention Grant
- Patent Title: Profiling of container images and enforcing security policies respective thereof
-
Application No.: US15397230Application Date: 2017-01-03
-
Publication No.: US10586042B2Publication Date: 2020-03-10
- Inventor: Dima Stopel , Liron Levin , Lior Yankovich
- Applicant: Twistlock, Ltd.
- Applicant Address: IL Herzliya
- Assignee: TWISTLOCK, LTD.
- Current Assignee: TWISTLOCK, LTD.
- Current Assignee Address: IL Herzliya
- Agency: M&B IP Analysts, LLC
- Main IPC: G06F21/00
- IPC: G06F21/00 ; G06F21/55 ; G06F21/52 ; G06F21/57 ; G06F21/53

Abstract:
A method for securing execution of software containers using security profiles. The method comprises receiving an event indicating that a container image requires profiling, wherein the container image includes resources utilized to execute a corresponding application container; generating a security profile for the container image, wherein the generated security profile includes at least a system calls profile; monitoring the operation of a runtime execution of the application container; and detecting a violation of the security profile based on the monitored operation, wherein the security profile is of the container image corresponding to the application container.
Public/Granted literature
- US20170116415A1 PROFILING OF CONTAINER IMAGES AND ENFORCING SECURITY POLICIES RESPECTIVE THEREOF Public/Granted day:2017-04-27
Information query