首页> 外文会议>Proceedings of the Twenty-Third ACM symposium on operating systems principles. >CloudVisor: Retrofitting Protection of Virtual Machines in Multi-tenant Cloud with Nested Virtualization
【24h】

CloudVisor: Retrofitting Protection of Virtual Machines in Multi-tenant Cloud with Nested Virtualization

机译:CloudVisor:使用嵌套虚拟化对多租户云中的虚拟机进行保护改造

获取原文
获取原文并翻译 | 示例

摘要

Multi-tenant cloud, which usually leases resources in the form of virtual machines, has been commercially available for years. Unfortunately, with the adoption of commodity virtualized infrastructures, software stacks in typical multi-tenant clouds are non-trivially large and complex, and thus are prone to compromise or abuse from adversaries including the cloud operators, which may lead to leakage of security-sensitive data. In this paper, we propose a transparent, backward-compatible approach that protects the privacy and integrity of customers' virtual machines on commodity virtualized infrastructures, even facing a total compromise of the virtual machine monitor (VMM) and the management VM. The key of our approach is the separation of the resource management from security protection in the virtualization layer. A tiny security monitor is introduced underneath the commodity VMM using nested virtualization and provides protection to the hosted VMs. As a result, our approach allows virtualization software (e.g., VMM, management VM and tools) to handle complex tasks of managing leased VMs for the cloud, without breaking security of users' data inside the VMs. We have implemented a prototype by leveraging commercially-available hardware support for virtualization. The prototype system, called CloudVisor, comprises only 5.5K LOCs and supports the Xen VMM with multiple Linux and Windows as the guest OSes. Performance evaluation shows that CloudVisor incurs moderate slowdown for I/O intensive applications and very small slowdown for other applications.
机译:通常以虚拟机形式租用资源的多租户云已经商业化了很多年。不幸的是,随着采用商品化虚拟化基础架构,典型的多租户云中的软件堆栈变得异常庞大且复杂,因此容易受到包括云运营商在内的对手的危害或滥用,这可能导致对安全性敏感的漏洞数据。在本文中,我们提出了一种透明的,向后兼容的方法,可以保护商品虚拟化基础架构上客户虚拟机的隐私和完整性,甚至面临虚拟机监视器(VMM)和管理VM的全面损害。我们方法的关键是将资源管理与虚拟化层中的安全保护分开。在商用VMM下使用嵌套虚拟化功能引入了一个微型安全监视器,该监视器可为托管的VM提供保护。结果,我们的方法允许虚拟化软件(例如VMM,管理VM和工具)处理为云管理租用VM的复杂任务,而不会破坏VM内部用户数据的安全性。我们通过利用商业可用的硬件支持来实现虚拟化,从而实现了原型。名为CloudVisor的原型系统仅包含5.5K LOC,并支持Xen VMM,并具有多个Linux和Windows作为来宾OS。性能评估表明,对于I / O密集型应用程序,CloudVisor会导致中等程度的速度下降,而对于其他应用程序,则会导致非常小的速度下降。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号