首页> 外文期刊>IEEE Transactions on Computers >CloudMon: Monitoring Virtual Machines in Clouds
【24h】

CloudMon: Monitoring Virtual Machines in Clouds

机译:CloudMon:监视云中的虚拟机

获取原文
获取原文并翻译 | 示例
       

摘要

In the cloud platform, the startup security of guest virtual machines (VMs) can be guaranteed by existing techniques such as TBoot, however, how to monitor and guarantee their runtime security seems to be a non-trivial challenge, when they are exposed to the Internet. For a practical cloud system, security and performance are two important issues. In this paper, we propose a dynamic framework called CloudMon to detect kernel rootkits and guarantee the runtime security of guest VMs. CloudMon is transparent to a guest VM, neither requires its specific system information, nor has to one-on-one run with it. Meanwhile, CloudMon detects kernel rootkits through self-adjusting monitoring on memory with an acceptable overhead. A working prototype of CloudMon is implemented based on Xen. The case studies on security show that CloudMon is effective to detect kernel rootkits in guest VMs, while the performance experiments demonstrate that it brings a low performance overhead.
机译:在云平台中,客户虚拟机(VM)的启动安全性可以通过诸如TBoot之类的现有技术来保证,但是,如何监控和保证其运行时安全性似乎是一项艰巨的挑战,因为它们会暴露在虚拟机中。互联网。对于实际的云系统,安全性和性能是两个重要问题。在本文中,我们提出了一个名为CloudMon的动态框架,以检测内核rootkit并保证来宾VM的运行时安全性。 CloudMon对来宾VM透明,既不需要其特定的系统信息,也不需要与其一对一运行。同时,CloudMon通过以可接受的开销对内存进行自我调整监视来检测内核rootkit。 CloudMon的工作原型是基于Xen实现的。有关安全性的案例研究表明,CloudMon可有效检测来宾VM中的内核rootkit,而性能实验表明,它带来的性能开销较低。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号