首页> 外文会议>IEEE International Conference on Cloud Computing >VM Migration for Secure Out-of-band Remote Management with Nested Virtualization
【24h】

VM Migration for Secure Out-of-band Remote Management with Nested Virtualization

机译:VM迁移用于安全带外远程管理,具有嵌套虚拟化

获取原文

摘要

Infrastructure-as-a-Service clouds provide out-of-band remote management of the systems in virtual machines (VMs). This management method enables users to manage their systems even on several types of failures inside VMs. In this method, users access virtual devices of their VMs, but virtual devices are not sufficiently protected against untrusted cloud operators. For secure out-of-band remote management, previous work securely runs shadow devices outside an untrusted virtualized system using nested virtualization. However, the states of shadow devices are lost during VM migration. In this paper, we propose USShadow for continuing secure out-of-band remote management after VM migration. USShadow enables the migration manager inside the virtualized system to transparently and securely save and restore the states of shadow devices outside it. We have implemented USShadow, which supports Xen and KVM as virtualized systems. Then, we confirmed that USShadow could continue virtual serial console and that the migration overhead was negligible.
机译:基础架构 - AS-Service云提供虚拟机(VM)中系统的带外远程管理。此管理方法使用户即使在VM内的几种类型的故障上也能够管理其系统。在此方法中,用户访问其VM的虚拟设备,但虚拟设备不充分保护不受信任的云运算符。对于安全的带外远程管理,以前的工作使用嵌套虚拟化安全地在不受信任的虚拟化系统之外安全地运行阴影设备。但是,在VM迁移期间,影子设备的状态丢失。在本文中,我们提出了USShadow在VM迁移后继续安全的带外远程管理。 USShadow使虚拟化系统内的迁移管理器能够透明地保存和恢复其外部的阴影设备状态。我们已经实施了USShadow,它支持Xen和KVM作为虚拟化系统。然后,我们确认USShadow可以继续虚拟串行控制台,并且迁移开销可以忽略不计。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号