首页> 外文会议>IEEE International Conference on Smart City >A Disjunctive VMI Model Based on XSM
【24h】

A Disjunctive VMI Model Based on XSM

机译:基于XSM的分解VMI模型

获取原文
获取外文期刊封面目录资料

摘要

This paper analyzed the former works relevant to Virtual Machine Introspection (VMI) and found that most of the VMI applications are deployed either in the hypervisor or in privileged virtual machines (dom0). As VMI applications may also be vulnerable, it will increase the risk of hypervisor or dom0 being attacked where other critical tools such as management tools and performance monitoring tools are also deployed. To reduce the impact of VMI applications to Trusted Computing Base (TCB), we propose and implement a disjunctive VMI model based on Xen Security Model (XSM) and FLASK security architecture. By migrating the VMI applications to a separate VM, we are able to minimize the impact of VMI to TCB, while in the same time keep VMI tools working by authorizing the access to other VMs. Experiments results proved that our model is both effective and efficient.
机译:本文分析了前者与虚拟机内省(VMI)相关的作品,并发现大多数VMI应用程序都在虚拟机管理程序或特权虚拟机(DOM0)中部署。由于VMI应用程序也可能很脆弱,它将增加管理程序或DOM0的风险,其中还部署了其他关键工具等其他关键工具以及性能监控工具。为了减少VMI应用程序对可信计算基础(TCB)的影响,我们提出了基于Xen安全模型(XSM)和烧瓶安全架构的分解VMI模型。通过将VMI应用程序迁移到单独的VM,我们能够最大限度地减少VMI对TCB的影响,同时通过授权访问其他VM来保持VMI工具。实验结果证明,我们的模型既有效又高效。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号