会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 39. 发明申请
    • METHOD FOR SECURELY PULLING A CONTAINER IMAGE TO A LOCAL REGISTRY OF A NODE
    • WO2019233805A1
    • 2019-12-12
    • PCT/EP2019/063694
    • 2019-05-27
    • THALES DIS FRANCE SA
    • FOKLE KOKOU, MilasHUYSMANS, GuillaumeVEERAPPAN, Vivek
    • H04W12/06H04W12/08H04W12/10H04L29/06
    • The present invention relates to a method for securely pulling, to a local registry of a node among a plurality of nodes, a container image among a plurality of container images stored in a central registry, wherein said node is configured to execute a container manager configured for running, on the node, instances of container images stored in the local registry of the node, said instances being called software containers, wherein said central registry is configured to be connected to a database comprising an expiration date of each container image stored in the central registry and, for each node of the plurality of nodes, a cryptographic key of the node and access rights of the node to said container images stored by said central registry, and comprising, performed by the central registry, the steps of: - receiving (S2) from a node of said plurality of nodes a request for pulling a container image to a local registry of the node, - authenticating (S3) the requesting node using the cryptographic key of the requesting node stored in the database, - checking (S4) access rights of the requesting node to the requested container image using the access rights of the requesting node to the requested container image stored in the database, - when the requesting node is successfully authenticated and has access rights to the requested container image, checking the expiration date of the requested container image stored in the database and when the expiration date of the requested container image is not expired, providing (S5) the requesting node with the requested container image and a signature of the requested container image enabling the container manager of the requesting node to verify the integrity of the provided container image before storing the requested container image in the local registry of the requesting node (S6).