Invention Grant
- Patent Title: Integrity verified paths between entities in a container-orchestration system
-
Application No.: US17035065Application Date: 2020-09-28
-
Publication No.: US11356461B2Publication Date: 2022-06-07
- Inventor: Nagendra Kumar Nainar , Carlos M. Pignataro , Akram Ismail Sheriff
- Applicant: Cisco Technology, Inc.
- Applicant Address: US CA San Jose
- Assignee: Cisco Technology, Inc.
- Current Assignee: Cisco Technology, Inc.
- Current Assignee Address: US CA San Jose
- Agency: Lee & Hayes, P.C.
- Main IPC: H04L9/32
- IPC: H04L9/32 ; H04L9/40 ; H04L45/00

Abstract:
Techniques and mechanisms for providing integrity verified paths using only integrity validated pods of nodes. A network service mesh (NSM) associated with a first pod may locally generate a nonce and provide the nonce to the first pod, where the request includes a request for an attestation token. Using the nonce, the first pod may generate the attestation token and reply back to the NSM. The NSM may generate a second request for an attestation token and forward it to a NSE pod, where the request includes a second locally generated nonce generated by the NSM. The NSE pod may generate the second attestation token using the second nonce and reply back to the NSM. The NSM may then have the attestation tokens verified or validated by a certificate authority (CA) server. The NSM may thus instantiate an integrity verified path between the first pod and the NSE pod.
Public/Granted literature
- US20220103570A1 INTEGRITY VERIFIED PATHS BETWEEN ENTITIES IN A CONTAINER-ORCHESTRATION SYSTEM Public/Granted day:2022-03-31
Information query