Isolated Container Event Monitoring
US-2018336351-A1 · Nov 22, 2018 · US
US2019026474A1 · US · A1
| Field | Value |
|---|---|
| Publication number | US-2019026474-A1 |
| Application number | US-201715842534-A |
| Country | US |
| Kind code | A1 |
| Filing date | Dec 14, 2017 |
| Priority date | Jul 19, 2017 |
| Publication date | Jan 24, 2019 |
| Grant date | — |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Systems, computer-implemented methods and/or computer program products that facilitate compliance-aware runtime generation of containers are provided. In one embodiment, a computer-implemented method comprises: identifying, by a system operatively coupled to a processor, information used by a target application to containerize; determining whether one or more risk violations exist for the information within one or more defined thresholds; determining whether a compliance or a security violation exists in the information, wherein the determining whether the compliance or security violation exists is performed based on a determination by the risk assessment component that one or more risk violations do not exist; and generating a new container of components corresponding to defined components of the target application that allow the target application to execute without an underlying operating system, wherein the generating is based on a determination that no compliance or security violation exists in the information.
Opening claim text (preview).
What is claimed is: 1 . A computer-implemented method, comprising: identifying, by a system operatively coupled to a processor, information used by a target application to containerize; determining, by the system, whether one or more risk violations exist for the information within one or more defined thresholds; determining, by the system, whether a compliance or a security violation exists in the information, wherein the determining whether the compliance or security violation exists is performed based on a determination by the risk assessment component that one or more risk violations do not exist; and generating, by the system, a new container of components corresponding to defined components of the target application that allow the target application to execute without an underlying operating system, wherein the generating is based on a determination that no compliance or security violation exists in the information. 2 . The computer-implemented method of claim 1 , further comprising automatically mapping, by the system, one or more features to one or more system operations or one or more libraries. 3 . The computer-implemented method of claim 2 , wherein the automatically mapping of one or more features to one or more system operations or one or more libraries comprises automatically mapping one or more compliance-related features. 4 . The computer-implemented method of claim 2 , wherein the automatically mapping of one or more features to one or more system operations or one or more libraries comprises automatically mapping one or more security-related features. 5 . The computer-implemented method of claim 4 , further comprising generating one or more patterns, wherein the generating the one or more patterns is performed based on determining by the risk assessment component that one or more risk violations exist for the information or based on determining by the compliance component that a compliance or a security violation exists in the information.
Assessing vulnerabilities and evaluating computer system security · CPC title
by virus signature recognition · CPC title
Dynamic detection, i.e. detection performed at run-time, e.g. emulation, suspicious activities · CPC title
by source code analysis · CPC title
by adding security routines or objects to programs · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.