【24h】

Abstract models for system virtualization

机译:系统虚拟化的抽象模型

获取原文

摘要

The paper is dedicated to issues of system objects securing (system files and user system or application configuration files) against unauthorized access including denial of service attacks. The method and developed abstract system virtualization models, which are used to research attack scenarios for different virtualization modes, are presented. Effectiveness for system tools virtualization technology is evaluated. Proposed technology is based on redirection of access requests to system objects shared among access subjects. Whole and partial system virtualization modes are modeled. The difference between them is the following: in the whole virtualization mode all copies of the access system objects are created whereon subjects' requests are redirected including corresponding application objects; in the partial virtualization mode corresponding copies are created only for a part of the system, for example, only system objects for applications. Alternative solutions effectiveness is valued relating to different attack scenarios. Practical significance of the suggested security method is demonstrated.
机译:本文专门讨论防止未经授权的访问(包括拒绝服务攻击)的系统对象(系统文件和用户系统或应用程序配置文件)的安全保护问题。提出了用于研究不同虚拟化模式攻击场景的方法和开发的抽象系统虚拟化模型。评估了系统工具虚拟化技术的有效性。提出的技术基于将访问请求重定向到在访问主体之间共享的系统对象。对整个和部分系统虚拟化模式进行了建模。它们之间的区别如下:在整个虚拟化模式下,将创建访问系统对象的所有副本,并在此对象上重定向主题的请求,包括相应的应用程序对象;在部分虚拟化模式下,仅为系统的一部分创建相应的副本,例如,仅为应用程序创建系统对象。与不同的攻击场景相关的替代解决方案的有效性受到重视。证明了所建议的安全方法的实际意义。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号