This is a demonstration used in the EMC, VMware, Cisco supersession (SS5240) that shows how the three companies have been working to make the virtualized datacenter MORE secure than the physical datacenter. In the physical world, data loss/leakage prevention involves touching many "end points" (clients, servers), listening in on networks in a distributed way, and scanning shared storage (SAN/NAS).
While these work, and are the best way in the physical world - the challenge is scaling up that approach.
VMsafe APIs in vSphere give another opportunity - you can scan all network, CPU instructions, IO, memory management directly in the vmkernel.
In this example, content meeting rules in an RSA DLP content blade (in the example credit card numbers) are intercepted going from one virtual machine to another - without agents being deployed. Instead the data is captured using vShield Zones and VMSafe API integration.
Link to this comment:
All Comments (0)