首页> 外国专利> MONITORING ENCRYPTED NETWORK TRAFFIC FLOWS IN A VIRTUAL ENVIRONMENT USING DYNAMIC SESSION KEY ACQUISITION TECHNIQUES

MONITORING ENCRYPTED NETWORK TRAFFIC FLOWS IN A VIRTUAL ENVIRONMENT USING DYNAMIC SESSION KEY ACQUISITION TECHNIQUES

机译:使用动态会话密钥获取技术在虚拟环境中监控加密的网络业务流

摘要

A method executed by a dynamic session key acquisition (DSKA) engine residing in a virtual environment includes receiving session decryption information extraction instructions that configure the DSKA engine to obtain session decryption information for at least one communication session involving a virtual machine and obtaining the session decryption information from the virtual machine in accordance with the session decryption information extraction instructions. The session decryption information includes cryptographic keys utilized by an application server instance in the virtual machine to establish the at least one communication session. The session decryption information obtained from the virtual machine is stored and provided to a network traffic monitoring (NTM) agent. The NTM agent utilizes the session decryption information to decrypt copies of encrypted network traffic flows belonging to the at least one communication session involving the virtual machine.
机译:一种由位于虚拟环境中的动态会话密钥获取(DSKA)引擎执行的方法,包括:接收会话解密信息提取指令,该指令将DSKA引擎配置为获取至少一个涉及虚拟机的通信会话的会话解密信息,并获取会话解密。根据会话解密信息提取指令从虚拟机获取信息。会话解密信息包括虚拟机中的应用服务器实例用来建立至少一个通信会话的加密密钥。从虚拟机获得的会话解密信息被存储并提供给网络流量监视(NTM)代理。 NTM代理利用会话解密信息来解密属于至少一个涉及虚拟机的通信会话的加密网络流量的副本。

著录项

  • 公开/公告号US2020067700A1

    专利类型

  • 公开/公告日2020-02-27

    原文格式PDF

  • 申请/专利号US201816113360

  • 发明设计人 MATTHEW R. BERGERON;

    申请日2018-08-27

  • 分类号H04L9/08;G06F9/455;H04L29/06;H04L12/26;H04L12/24;

  • 国家 US

  • 入库时间 2022-08-21 11:20:25

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号