首页> 外文会议>IEEE International Conference on Big Data Science and Engineering >SeLance: Secure Load Balancing of Virtual Machines in Cloud
【24h】

SeLance: Secure Load Balancing of Virtual Machines in Cloud

机译:SILANCE:云中的虚拟机的安全负载平衡

获取原文

摘要

The rapid development of cloud computing expands the scale of modern cloud data centers, resulting in growing challenges of energy consumption. Load balancing of virtual machines(VMs), for the purposes of improving the utilization of physical resources and reducing energy consumption, has become a research focus in recent years. However, the existing researches mostly focus on how to maximize resource utilization and reduce energy consumption. Security issues in the context of load balancing of VMs were rarely addressed. In this paper, we research the key procedures of load balancing, VM selection and VM placement, we find that the existing schemes introduced several security problems. In consideration of some conclusions of recent researches and inevitable live migrations during load balancing, common tenants have sufficient reasons to worry about their VMs' security when they are migrated to strange hosts and/or co-reside with the VMs owned by strange tenants. In short, VMs' mobility introduced by load balance expands the attack surface. In this work, we classify and analyze related security threats and create an information leakage model for load balancing. We present a new security policy, SeLance, to secure the load balancing via avoiding above threats as far as possible. We develop exact implementations in CloudSim and OpenStack. We show that SeLance can effectively alleviate the threats introduced by load balancing, the security score can improve 46.90%-81.15%, while keeping the load balancer's original function to a great extent (± 2.5%).
机译:云计算的快速发展扩大了现代云数据中心的规模,从而产生了能耗的挑战。为了提高物理资源利用率和降低能源消耗的目的,虚拟机(VM)的负载平衡已成为近年来的研究重点。然而,现有的研究主要集中在如何最大化资源利用率并降低能耗。很少解决VM负载平衡的安全问题。在本文中,我们研究了负载平衡,VM选择和VM放置的关键程序,我们发现现有方案引入了几个安全问题。考虑到近期研究的一些结论和负载平衡期间不可避免的实时迁移,普通租户有足够的理由担心他们的VMS安全性,当他们迁移到奇怪的主机和/或与奇怪的租户拥有的VMS迁移时。简而言之,负载平衡引入的VMS移动性扩展了攻击面。在这项工作中,我们分类和分析相关的安全威胁并创建用于负载平衡的信息泄漏模型。我们提出了一项新的安全策略,SLANCE,通过尽可能避免以上威胁来保护负载平衡。我们在Cloudsim和OpenStack中开发确切的实现。我们表明,SYANCE可以有效缓解负载平衡引入的威胁,安全分数可以提高46.90%-81.15%,同时将负载平衡器的原始功能保持在很大程度上(±2.5%)。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号