首页> 外国专利> Establishing isolation between content hosting services executing on common support server

Establishing isolation between content hosting services executing on common support server

机译:在公共支持服务器上执行的内容托管服务之间建立隔离

摘要

Embodiments relate to systems and methods for establishing isolation between content hosting services executing on a common support server. In aspects, a server virtualization platform can operate on a common physical support server to instantiate, configure, and operate a set of virtual servers. The set of virtual servers can, for instance, be used to run independent Web sites or other locations or services. The data available to each process on each virtual server can be encoded using an SELinux™ label including an MCS (multi-category security) category or categories uniquely identifying that process. Isolation of the potentially sensitive data for multiple Web sites and/or their content hosted on a common physical server can therefore be enforced, since each process operating on each virtual server is restricted to only access and manipulate data objects or other entities having matching MCS category information identified on that baremetal support server.
机译:实施例涉及用于在公共支持服务器上执行的内容托管服务之间建立隔离的系统和方法。在各方面中,服务器虚拟化平台可以在公共物理支持服务器上操作以实例化,配置和操作一组虚拟服务器。例如,该组虚拟服务器可用于运行独立的网站或其他位置或服务。可以使用SELinux™标签对每个虚拟服务器上每个进程可用的数据进行编码,其中包括MCS(多类别安全性)类别或唯一标识该进程的类别。由于可以在每个虚拟服务器上运行的每个进程仅限于访问和操纵数据对象或具有匹配MCS类别的其他实体,因此可以强制隔离多个站点和/或公共物理服务器上托管的内容的潜在敏感数据。该裸机支持服务器上标识的信息。

著录项

  • 公开/公告号US9405923B2

    专利类型

  • 公开/公告日2016-08-02

    原文格式PDF

  • 申请/专利权人 DANIEL J. WALSH;

    申请/专利号US201113248797

  • 发明设计人 DANIEL J. WALSH;

    申请日2011-09-29

  • 分类号G06F17/00;G06F21/62;

  • 国家 US

  • 入库时间 2022-08-21 14:29:47

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号