首页> 外国专利> MONITORING ENCRYPTED NETWORK TRAFFIC FLOWS IN A VIRTUAL ENVIRONMENT USING DYNAMIC SESSION KEY ACQUISITION TECHNIQUES

MONITORING ENCRYPTED NETWORK TRAFFIC FLOWS IN A VIRTUAL ENVIRONMENT USING DYNAMIC SESSION KEY ACQUISITION TECHNIQUES

机译:使用动态会话密钥采集技术监视加密的网络流量在虚拟环境中流动

摘要

A method executed by a dynamic session key acquisition (DSKA) engine residing in a virtual environment includes receiving session decryption information extraction instructions that configure the DSKA engine to obtain session decryption information for at least one communication session involving a virtual machine and obtaining the session decryption information from the virtual machine in accordance with the session decryption information extraction instructions. The session decryption information includes cryptographic keys utilized by an application server instance in the virtual machine to establish the at least one communication session. The session decryption information obtained from the virtual machine is stored and provided to a network traffic monitoring (NTM) agent. The NTM agent utilizes the session decryption information to decrypt copies of encrypted network traffic flows belonging to the at least one communication session involving the virtual machine.
机译:由驻留在虚拟环境中的动态会话密钥获取(DSKA)引擎执行的方法包括接收会话解密信息提取指令,其配置DSKA引擎以获得涉及虚拟机的至少一个通信会话的会话解密信息并获得会话解密根据会话解密信息提取指令来自虚拟机的信息。会话解密信息包括虚拟机中的应用服务器实例使用的加密密钥来建立至少一个通信会话。从虚拟机获得的会话解密信息被存储并提供给网络流量监视(NTM)代理。 NTM代理利用会话解密信息来解密属于涉及虚拟机的至少一个通信会话的加密网络业务流的副本。

著录项

  • 公开/公告号US2021083857A1

    专利类型

  • 公开/公告日2021-03-18

    原文格式PDF

  • 申请/专利号US202017105411

  • 发明设计人 MATTHEW R. BERGERON;

    申请日2020-11-25

  • 分类号H04L9/08;G06F9/455;H04L29/06;H04L12/24;H04L12/26;

  • 国家 US

  • 入库时间 2022-08-24 17:46:10

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号