IP Library Granted Patent US 10,282,273
Granted Patent B1
US 10,282,273 · App. 15/226,874 · Granted May 7, 2019

Application monitoring using workload metadata

Inventor: Aaron Justin Bell (Brooklyn, NY)
Assignee: Mesosphere, Inc.
G06F11/3608G06F8/70
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,282,273
App. No.
15/226,874
Filed
Aug 2, 2016
Granted
May 7, 2019
Kind
B1
Examiner
WU, DAXIN
Art Unit
2191
USPC
717/126
Abstract

A system for application monitoring includes an interface to receive an indication regarding an application. The system includes a processor to determine whether the application is compliant based at least in part on a set of policy rules, and in the event that the application is compliant, provide an indication that the application is compliant.

Claims (47)

1. A system for application monitoring, comprising:

an interface configured to receive an application indication regarding an application, wherein the application indication comprises a check indication to check policy compliance for the application;

a processor configured to:

receive a set of policy rules from a policy storage system;

receive metadata associated with the application from a metadata storage system, wherein the metadata associated with the application comprises personally identifiable information status of the application, wherein the personally identifiable information status of the application comprises whether the application processes or stores personally identifiable information and locations of personally identifiable information storage;

determine whether the application is compliant based at least in part on the set of policy rules, wherein determining whether the application is compliant comprises selecting a policy rule from the set of policy rules, performing a set of logical tests on the metadata, and comparing the policy rule with the personally identifiable information status of the application to determine whether the metadata complies with the policy rule, wherein the personally identifiable information status of the application is necessary to determine whether the metadata complies with the policy rule; and

in response to a compliant determination that the application is compliant:

provide a compliance indication that the application is compliant, wherein the compliance indication that the application is compliant causes the application to be allowed to run; and

in response to a noncompliant determination that the application is not compliant:

provide a noncompliance indication that the application is not compliant, wherein the noncompliance indication that the application is not compliant causes the application not to be allowed to run.

2. The system of claim 1 , wherein the interface is further configured to receive the set of policy rules.

3. The system of claim 1 , wherein the processor is further configured to cause storage of the set of policy rules in the policy storage system.

4. The system of claim 1 , wherein the interface is further configured to receive the metadata associated with the application.

5. The system of claim 1 , wherein the processor is further configured to cause storage of the metadata associated with the application in the metadata storage system.

6. The system of claim 1 , wherein the processor is further configured to retrieve metadata associated with the application from the metadata storage system.

7. The system of claim 1 , wherein the processor is further configured to:

in response to the compliant determination that the application is compliant:

provide a running indication that the application is allowed to run.

8. The system of claim 1 , wherein the processor is further configured to:

in response to the compliant determination that the application is compliant:

provide a deploying indication that the application is allowed to deploy.

9. The system of claim 1 , wherein the interface is further configured to receive an indication of monitored data describing operating characteristic of the application.

10. The system of claim 9 , wherein the processor is further configured to retrieve the monitored data.

11. The system of claim 10 , wherein the processor is further configured to store the monitored data.

12. The system of claim 11 , wherein the monitored data is stored in the metadata storage system.

13. A method for application monitoring, comprising:

receiving an application indication regarding an application, wherein the indication comprises a check indication to check policy compliance for the application;

receiving a set of policy rules from a policy storage system;

receiving metadata associated with the application from a metadata storage system, wherein the metadata associated with the application comprises personally identifiable information status of the application, wherein the personally identifiable information status of the application comprises whether the application processes or stores personally identifiable information and locations of personally identifiable information storage;

determining, using a processor, whether the application is compliant based at least in part on the set of policy rules, wherein determining whether the application is compliant comprises selecting a policy rule from the set of policy rules, performing a set of logical tests on the metadata, and comparing the policy rule with the personally identifiable information status of the application to determine whether the metadata complies with the policy rule, wherein the personally identifiable information status of the application is necessary to determine whether the metadata complies with the policy rule; and

in response to a compliant determination that the application is compliant:

providing a compliance indication that the application is compliant, wherein the compliance indication that the application is compliant causes the application to be allowed to run; and

in response to a noncompliant determination that the application is not compliant:

providing a noncompliance indication that the application is not compliant, wherein the noncompliance indication that the application is not compliant causes the application not to be allowed to run.

14. A computer program product for application monitoring, the computer program product being embodied in a non-transitory computer readable storage medium and comprising computer instructions for:

receiving an application indication regarding an application, wherein the application indication comprises a check to check policy compliance for the application;

receiving a set of policy rules from a policy storage system;

receiving metadata associated with the application from a metadata storage system, wherein the metadata associated with the application comprises personally identifiable information status of the application, wherein the personally identifiable information status of the application comprises whether the application processes or stores personally identifiable information and locations of personally identifiable information storage;

determining whether the application is compliant based at least in part on the set of policy rules, wherein determining whether the application is compliant comprises selecting a policy rule from the set of policy rules, performing a set of logical tests on the metadata, and comparing the policy rule with the personally identifiable information status of the application to determine whether the metadata complies with the policy rule, wherein the personally identifiable information status of the application is necessary to determine whether the metadata complies with the policy rule; and

in response to a compliant determination that the application is compliant:

providing a compliance indication that the application is compliant, wherein the compliance indication that the application is compliant causes the application to be allowed to run; and

in response to a noncompliant determination that the application is not compliant:

providing a noncompliance indication that the application is not compliant, wherein the noncompliance indication that the application is not compliant causes the application not to be allowed to run.

15. The system of claim 1 , wherein the processor is further configured to retrieve the set of policy rules from the policy storage system.

16. The system of claim 1 , wherein the personally identifiable information status of the application comprises developer metadata provided to the metadata storage system from an application developer interface.

17. The system of claim 1 , wherein the personally identifiable information status of the application comprises deploy metadata added to the metadata storage system by an application monitor.

18. The system of claim 1 , wherein the personally identifiable information status of the application comprises running metadata added to the metadata storage system by an application monitor.

Assignments (6)
SECURITY INTEREST Recorded Feb 13, 2025
From: NUTANIX, INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 070206/0463 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 19, 2023
From: D2IQ, INC.
To: D2IQ (ASSIGNMENT FOR THE BENEFIT OF CREDITORS), LLC
Reel/Frame 065909/0748 →
CORRECTIVE ASSIGNMENT TO CORRECT THE NAME OF THE ASSIGNOR. PREVIOUSLY RECORDED ON REEL 065771 FRAME 0424. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Dec 8, 2023
From: D2IQ (ASSIGNMENT FOR THE BENEFIT OF CREDITORS), LLC.
To: NUTANIX, INC.
Reel/Frame 065836/0558 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 5, 2023
From: D2IQ, INC.
To: NUTANIX, INC.
Reel/Frame 065771/0424 →
CHANGE OF NAME Recorded May 15, 2020
From: MESOSPHERE, INC.
To: D2IQ, INC.
Reel/Frame 052679/0179 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 27, 2017
From: BELL, AARON JUSTIN
To: MESOSPHERE, INC.
Reel/Frame 041113/0078 →
Continuity (1)
Provisional Application 62202066 · Aug 6, 2015