Check Point Software Technologies Ltd.
Methods and system for packet control and inspection in containers and meshed environments

Last updated:

Abstract:

An instantiated application includes both a runtime instantiation of an application image, and an administrative service operable to install in the instantiated application at least one security module during runtime of the instantiated application in a container. Prior to runtime, a design time agent can access the application image in a repository, examine the application image, and based on the examining, adding at least one security module to the application image prior to instantiation. During runtime, a runtime agent can query parameters of the container, such as static and dynamic variables available on the machine on which the container is running. The runtime agent processes these parameters in conjunction with predefined rules to determine an action such as starting, stopping, adding, and/or changing the security module, such as the method of packet inspection.

Status:
Grant
Type:

Utility

Filling date:

4 Jul 2019

Issue date:

30 Aug 2022