Generating memory dumps

US2018150409A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2018150409-A1
Application numberUS-201815898936-A
CountryUS
Kind codeA1
Filing dateFeb 19, 2018
Priority dateSep 16, 2016
Publication dateMay 31, 2018
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method for generating a dump comprising data generated by a virtual system in a computing environment is depicted. The method comprises: initiating a dump process for dumping data generated by the virtual system and stored in guest memory; sending a dump request for the data from the virtual machine monitor to the trusted component; in response to receiving the dump request, generating a symmetric dump generating key; reading the data from the guest memory; encrypting the data with the symmetric dump generating key; encrypting the symmetric dump generating key with the public cryptographic key of the client system; providing the encrypted dump data and the encrypted symmetric dump generating key to the virtual machine monitor; generating a dump comprising the encrypted dump data and the encrypted symmetric dump generating key; and providing the dump to the client system.

First claim

Opening claim text (preview).

1 . A method for generating a dump comprising data generated by a virtual system in a computing environment, the method comprising: initiating a dump process for dumping data being generated by the virtual system and stored in a guest memory; sending a dump request for the data from a virtual machine monitor to a trusted component; after sending the dump request to the trusted component, the trusted component generating a header of the data to be stored, the header comprising the encrypted dump generating key, a list of the encrypted dump data to be stored, the size of the encrypted data to be stored and a list of unencrypted dump data and a size of unencrypted dump data, the trusted component sending the header to the virtual machine monitor, the virtual machine monitor sending the header to the client, and then the virtual machine monitor sending the data to the client system after the data according to the header is accessible to the virtual machine monitor; in response to receiving the dump request, generating a symmetric dump generating key by the trusted component; after receiving the dump request from the virtual machine monitor, the trusted component initiating a challenge-response authentication with the client system, wherein the challenge-response authentication uses the private and the public cryptographic key of the client system, and wherein the dump process is performed if the challenge-response authentication is successfully performed; reading the data from the guest memory by the trusted component; encrypting the data with the symmetric dump generating key by the trusted component; encrypting the symmetric dump generating key with a public cryptographic key of the client system by the trusted component; providing the encrypted dump data and the encrypted symmetric dump generating key to the virtual machine monitor by the trusted component; generating a dump comprising the encrypted dump data and the encrypted symmetric dump generating key by the virtual machine monitor; and providing the dump to the client system by the virtual machine monitor.

Assignees

Inventors

Classifications

  • Isolation or security of virtual machine instances · CPC title

  • by using cryptography (for digital transmission H04L9/00) · CPC title

  • Hypervisor-specific management and integration aspects · CPC title

  • Escrow, recovery or storing of secret information, e.g. secret key escrow or cryptographic key storage · CPC title

  • Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2018150409A1 cover?
A method for generating a dump comprising data generated by a virtual system in a computing environment is depicted. The method comprises: initiating a dump process for dumping data generated by the virtual system and stored in guest memory; sending a dump request for the data from the virtual machine monitor to the trusted component; in response to receiving the dump request, generating a symm…
Who is the assignee on this patent?
IBM
What technology area does this patent fall under?
Primary CPC classification G06F9/45558. Mapped technology areas include Physics.
When was this patent published?
Publication date Thu May 31 2018 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).