Method and device for customizing security service

US10686837B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10686837-B2
Application numberUS-201415031811-A
CountryUS
Kind codeB2
Filing dateJul 29, 2014
Priority dateOct 25, 2013
Publication dateJun 16, 2020
Grant dateJun 16, 2020

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

The disclosure provides a method for customizing a security service and device, relates to the field of information security and solves the problem of incapability of an undiversified security service provision manner in meeting requirements of different tenants. The method includes that: a cloud computing data centre acquires at least one security service type selected by a tenant; and the cloud computing data centre executes corresponding security service according to the at least one security service type selected by the tenant. The technical solutions provided by the disclosure are applicable to a cloud computing system, and enables the cloud computing data centre to provide security service according to a requirement of the tenant.

First claim

Opening claim text (preview).

What is claimed is: 1. A method for customizing a security service, comprising: receiving a request and a virtual machine application from a tenant, wherein the request is for tenanting a virtual machine and the virtual machine application comprises a requested strength of a security service, a resource list for the virtual machine containing the virtual machine requested to be tenanted by the tenant and a parameter requirement of the tenant for the virtual machine; tenanting, by the tenant, the requested virtual machine; acquiring, by a cloud computing data centre, one or more security service types selected by a tenant, wherein the one or more security service types comprise at least one of the following: a security detection service and a security protection service, and the security detection service comprises at least one of the following: security scanning service, vulnerability scanning service, webpage scanning service, tamper-proofing scanning service, port scanning service, Trojan scanning service and traffic monitoring service; and the security protection service comprises at least one of the following: password strengthening service, Trojan embedding prevention service, antivirus service, data stream cleaning service and firewall service; wherein acquiring, by the cloud computing data centre, the one or more security service types selected by the tenant comprises: after receiving the resource list sent by the tenant, determining, by the cloud computing data centre, at least one security service type of the virtual machine tenanted by the tenant; providing, by the cloud computing data centre, at least one or more determined security service types suitable for the virtual machine for the tenant to select from an optional security service type list; and receiving, by the cloud computing data centre, information about one or more security service types comprising one or more security service types selected by the tenant from the optional security service type list; executing, by the cloud computing data centre, at least one security service on the virtual machine tenanted by the tenant according to the one or more security service types selected by the tenant and the requested strength; and feeding back, by the cloud computing data centre, to the tenant a result of executing the at least one security service, wherein the tenant selects whether to increase the strength of the at least one security service based upon the result. 2. The method for customizing the security service according to claim 1 , wherein providing, by the cloud computing data centre, the one or more determined security service types suitable for the virtual machine for the tenant to select comprises: generating the optional security service type list from the determined security service types suitable for the virtual machine, wherein the optional security service type list comprises multiple entries and each entry corresponds to information about one optional security service type; wherein receiving, by the cloud computing data centre, the information about the one or more security service types selected by the tenant comprises: receiving, by the cloud computing data centre, a selected security service type list returned by the tenant, wherein the selected security service type list contains one or more optional security service types selected by the tenant. 3. The method for customizing the security service according to claim 1 , wherein determining, by the cloud computing data centre, the at least one security service type of the virtual machine tenanted by the tenant after receiving the resource list sent by the tenant comprises: determining according to the parameter of the virtual machine, by the cloud computing data centre, at least one of the one or more security service types suitable for the virtual machine as one or more optional security service types of the optional security service type list. 4. The method for customizing the security service according to claim 1 , wherein acquiring, by the cloud computing data centre, the one or more security service types selected by the tenant further comprises: configuring a virtual machine security service type list of the tenant in a security component of an access gateway, wherein the virtual machine security service type list comprises the one or more security service types selected by the tenant. 5. The method for customizing the security service according to claim 4 , wherein acquiring, by the cloud computing data centre, the one or more security service types selected by the tenant further comprises: in a case that the tenant accesses the cloud computing data centre through the access gateway, sending, by the security component, the virtual machine security service type list to the cloud computing data centre; and determining according to the virtual machine security service list, by the cloud computing data centre, the one or more security service types selected by the tenant. 6. The method for customizing the security service according to claim 1 , wherein acquiring, by the cloud computing data centre, the one or more security service types selected by the tenant comprises: wherein the virtual machine application also includes at least one security service type requested by the tenant; determining, by the cloud computing data centre, at least one optional security service type of the optional security service type list according to the parameter of the virtual machine and the at least one security service requested by the tenant; and determining, by the cloud computing data centre, the at least one optional security service type of the optional security service list as one of the one or more security service types selected by the tenant.

Assignees

Inventors

Classifications

  • by executing in a restricted environment, e.g. sandbox or secure virtual machine · CPC title

  • Hypervisor-specific management and integration aspects · CPC title

  • H04L63/20Primary

    for managing network security; network security policies in general (filtering policies H04L63/0227) · CPC title

  • Isolation or security of virtual machine instances · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10686837B2 cover?
The disclosure provides a method for customizing a security service and device, relates to the field of information security and solves the problem of incapability of an undiversified security service provision manner in meeting requirements of different tenants. The method includes that: a cloud computing data centre acquires at least one security service type selected by a tenant; and the clo…
Who is the assignee on this patent?
Zte Corp, Xian Zhongxing New Software Co Ltd
What technology area does this patent fall under?
Primary CPC classification H04L63/20. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Jun 16 2020 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).