Invention Grant
- Patent Title: Protecting workloads in Kubernetes
-
Application No.: US16587256Application Date: 2019-09-30
-
Publication No.: US11176245B2Publication Date: 2021-11-16
- Inventor: Angel Nunez Mencias , Peter Morjan , Dirk Herrendoerfer , Preethi Polepalli Yeshwanth
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Cantor Colburn LLP
- Agent Edward Wixted
- Main IPC: G06F21/53
- IPC: G06F21/53 ; G06F21/60

Abstract:
Aspects of the invention include obtaining, via a processor, an original docker image from a customer, encrypting a disk image using content from the original docker image and encrypting a bootloader. A re-packaged image is created using the encrypted disk image and the secure encrypted bootloader. The re-packaged image is deployed by inserting the re-package image into a pod container and by means of using a mutating webhook, granting elevated privileges to said container and creating a secured Kubernetes pod for protecting workloads, wherein the secured Kubernetes pod has at least one virtual machine containing the pod container.
Public/Granted literature
- US20210097169A1 PROTECTING WORKLOADS IN KUBERNETES Public/Granted day:2021-04-01
Information query