首页> 外文会议>16th IEEE Pacific Rim International Symposium on Dependable Computing >Implementing a Hybrid Virtual Machine Monitor for Flexible and Efficient Security Mechanisms
【24h】

Implementing a Hybrid Virtual Machine Monitor for Flexible and Efficient Security Mechanisms

机译:实施混合虚拟机监视器以实现灵活高效的安全机制

获取原文

摘要

Virtual machine monitors (VMMs) have emerged as potential tools %% are one of the promising approaches for implementing security mechanisms to enhance the security and/or reliability of software systems. There are two approaches to implementing VMMs. One is a software-based approach that emulates the execution of virtual machines via software. The other is a hardware-based approach that utilizes the hardware virtualization support of CPUs. The software-based approach is preferred for implementing security mechanisms, whereas the hardware-based approach is preferred from the viewpoint of performance. In this paper, we present an approach to implementing a hybrid VMM for flexible and efficient security mechanisms. The hybrid VMM consists of a software-based VMM (QEMU) and hardware-based VMM (KVM), and it dynamically switches between them. Using the hybrid VMM, security- and reliability-critical software can be executed on the software-based VMM, and performance-critical software can be executed on the hardware-based VMM. We also present the results of experiments conducted to evaluate the performance and verify the effectiveness of the hybrid VMM.
机译:虚拟机监控器(VMM)的出现已经成为潜在工具,%%是实现安全机制以增强软件系统的安全性和/或可靠性的有前途的方法之一。有两种实现VMM的方法。一种是基于软件的方法,可通过软件模拟虚拟机的执行。另一种是基于硬件的方法,该方法利用了CPU的硬件虚拟化支持。基于软件的方法对于实现安全机制是首选的,而从性能的角度来看,基于硬件的方法是首选的。在本文中,我们提出了一种用于实现灵活,高效的安全机制的混合VMM的方法。混合VMM由基于软件的VMM(QEMU)和基于硬件的VMM(KVM)组成,并且可以在它们之间动态切换。使用混合VMM,可以在基于软件的VMM上执行对安全性和可靠性至关重要的软件,而可以在基于硬件的VMM上执行对性能和安全性至关重要的软件。我们还介绍了为评估性能和验证混合VMM的有效性而进行的实验的结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号