Invention Grant
- Patent Title: Restricting network access to untrusted virtual machines
- Patent Title (中): 限制对不可信虚拟机的网络访问
-
Application No.: US14316629Application Date: 2014-06-26
-
Publication No.: US09386021B1Publication Date: 2016-07-05
- Inventor: Ian Pratt
- Applicant: Bromium, Inc.
- Applicant Address: US CA Cupertino
- Assignee: Bromium, Inc.
- Current Assignee: Bromium, Inc.
- Current Assignee Address: US CA Cupertino
- Agency: Brokaw Patent Law PC
- Agent Christopher J. Brokaw
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F9/455

Abstract:
Approaches for providing operating environments selective access to network resources. A guest operating system, executing on a device, may issue a request to a network device for access to a set of network resources. Once the guest operating system authenticates itself to the network device, the network device provides, to the guest operating system, access to the set of network resources. Note that the host operating system, executing on the device, does not have access to the set of network resources. A guest operating system may be provided access to an untrusted network in a manner that denies the host operating system access to the untrusted network. In this way, any malicious code inadvertently introduced into the host operating system cannot access the untrusted network for unscrupulous purposes.
Information query