【24h】

SeLance: Secure Load Balancing of Virtual Machines in Cloud

机译:SeLance:云中虚拟机的安全负载平衡

获取原文
获取原文并翻译 | 示例

摘要

The rapid development of cloud computing expands the scale of modern cloud data centers, resulting in growing challenges of energy consumption. Load balancing of virtual machines(VMs), for the purposes of improving the utilization of physical resources and reducing energy consumption, has become a research focus in recent years. However, the existing researches mostly focus on how to maximize resource utilization and reduce energy consumption. Security issues in the context of load balancing of VMs were rarely addressed. In this paper, we research the key procedures of load balancing, VM selection and VM placement, we find that the existing schemes introduced several security problems. In consideration of some conclusions of recent researches and inevitable live migrations during load balancing, common tenants have sufficient reasons to worry about their VMs' security when they are migrated to strange hosts and/or co-reside with the VMs owned by strange tenants. In short, VMs' mobility introduced by load balance expands the attack surface. In this work, we classify and analyze related security threats and create an information leakage model for load balancing. We present a new security policy, SeLance, to secure the load balancing via avoiding above threats as far as possible. We develop exact implementations in CloudSim and OpenStack. We show that SeLance can effectively alleviate the threats introduced by load balancing, the security score can improve 46.90%-81.15%, while keeping the load balancer's original function to a great extent (± 2.5%).
机译:云计算的飞速发展扩大了现代云数据中心的规模,从而带来了越来越多的能源消耗挑战。为了提高物理资源的利用率并减少能耗,虚拟机的负载平衡已成为近年来的研究重点。但是,现有的研究主要集中在如何最大程度地利用资源和减少能源消耗上。 VM负载平衡方面的安全问题很少得到解决。在本文中,我们研究了负载平衡,VM选择和VM放置的关键过程,发现现有方案引入了一些安全问题。考虑到最新研究的一些结论以及负载平衡期间不可避免的实时迁移,普通租户有充分的理由担心其VM迁移到陌生主机和/或与陌生租户拥有的VM共同驻留时的安全性。简而言之,通过负载平衡引入的VM移动性扩大了攻击面。在这项工作中,我们对相关的安全威胁进行分类和分析,并创建信息泄漏模型以实现负载平衡。我们提出了一种新的安全策略SeLance,以通过尽可能避免上述威胁来确保负载平衡。我们在CloudSim和OpenStack中开发确切的实现。我们证明,SeLance可以有效缓解负载平衡带来的威胁,安全分数可以提高46.90%-81.15%,同时可以在很大程度上保持负载平衡器的原始功能(±2.5%)。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号