US 11,989,281 B2
White list generation device, control method, and program
Eiji Takahashi, Tokyo (JP)
Assigned to NEC CORPORATION, Tokyo (JP)
Appl. No. 17/435,834
Filed by NEC Corporation, Tokyo (JP)
PCT Filed Dec. 11, 2019, PCT No. PCT/JP2019/048413
§ 371(c)(1), (2) Date Sep. 2, 2021,
PCT Pub. No. WO2020/183828, PCT Pub. Date Sep. 17, 2020.
Claims priority of application No. 2019-044977 (JP), filed on Mar. 12, 2019.
Prior Publication US 2022/0156362 A1, May 19, 2022
Int. Cl. G06F 21/53 (2013.01); G06F 8/61 (2018.01); G06F 9/455 (2018.01); G06F 21/54 (2013.01); G06F 21/62 (2013.01)
CPC G06F 21/53 (2013.01) [G06F 8/61 (2013.01); G06F 9/45533 (2013.01); G06F 21/54 (2013.01); G06F 21/62 (2013.01)] 13 Claims
OG exemplary drawing
 
1. A white list generation apparatus comprising:
at least one memory configured to store instructions; and
at least one processor configured to execute the instructions to:
acquire a generation request including hardware configuration information of a target virtual machine and software configuration information indicating software to be installed on the target virtual machine, the hardware configuration information determining processing performance of each piece of virtual hardware constituting the target virtual machine; and
generate a white list representing a file access to which is permitted in the target virtual machine, wherein
generating the white list includes
determining a white list generation machine being a physical machine using the hardware configuration information or generating a white list generation machine being a virtual machine using the hardware configuration information,
installing software indicated in the acquired software configuration information onto the determined or generated white list generation machine, and
generating the white list, based on a content of a storage apparatus in the determined or generated white list generation machine after the installation, and wherein
the hardware configuration information includes information including an index value relating to a performance of target hardware required for the white list generation machine, and
the target hardware of the determined or generated white list generation machine has a hardware performance higher than the performance indicated by the index value.