Safety pod in container arrangement environment

Safety is provided to protect the pod in a container arrangement environment. The container runtime interface command is validated to perform orchestration actions on a set of containers including application workloads corresponding to the service based on matching the container runtime interface co...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: LISCHE STEFAN, OHARA, MORIYOSHI, MAGOWAN JAMES ROBERT, NUNEZ MENCIAS, ANA
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:Safety is provided to protect the pod in a container arrangement environment. The container runtime interface command is validated to perform orchestration actions on a set of containers including application workloads corresponding to the service based on matching the container runtime interface command with rules included in a trusted execution environment contract included in a pod sandbox virtual machine of the trusted execution environment. It is determined whether a container runtime interface command that performs an orchestration action on a set of containers is valid based on finding a matching rule in a trusted execution environment contract. In response to determining that the container runtime interface command that performs the orchestration action on the set of containers is valid, the container runtime interface command is executed to perform the orchestration action on the set of containers in the pod sandbox virtual machine of the trusted execution environment. 提供了在容器编排环境中保护网荚的安全。基于将容器运行时接口命令