首页> 外文期刊>ScientificWorldJournal >A Security-Awareness Virtual Machine Management Scheme Based on Chinese Wall Policy in Cloud Computing
【24h】

A Security-Awareness Virtual Machine Management Scheme Based on Chinese Wall Policy in Cloud Computing

机译:一种基于云计算中墙策略的安全意识虚拟机管理方案

获取原文
       

摘要

Cloud computing gets increasing attention for its capacity to leverage developers from infrastructure management tasks. However, recent works reveal that side channel attacks can lead to privacy leakage in the cloud. Enhancing isolation between users is an effective solution to eliminate the attack. In this paper, to eliminate side channel attacks, we investigate the isolation enhancement scheme from the aspect ofvirtual machine(VM) management. The security-awareness VMs management scheme (SVMS), a VMs isolation enhancement scheme to defend against side channel attacks, is proposed. First, we use theaggressive conflict of interest relation(ACIR) andaggressive in ally with relation(AIAR) to describe user constraint relations. Second, based on the Chinese wall policy, we put forward four isolation rules. Third, the VMs placement and migration algorithms are designed to enforce VMs isolation between the conflict users. Finally, based on the normal distribution, we conduct a series of experiments to evaluate SVMS. The experimental results show that SVMS is efficient in guaranteeing isolation between VMs owned by conflict users, while the resource utilization rate decreases but not by much.
机译:云计算因其利用基础设施管理任务而利用开发人员的能力而越来越关注。然而,最近的作品揭示了侧渠攻击可能导致云中的隐私泄漏。增强用户之间的隔离是消除攻击的有效解决方案。在本文中,为了消除侧信道攻击,我们研究了来自Virtual Machine(VM)管理方面的隔离增强方案。提出了一种安全意识VMS管理方案(SVM),用于防御侧信道攻击的VMS隔离增强方案。首先,我们使用盟友(AIAR)来描述用户约束关系的盟友的发出的利益关系(ACIR)。二是基于中国墙上的政策,我们提出了四个隔离规则。第三,VMS放置和迁移算法旨在强制冲突用户之间的VMS隔离。最后,基于正态分布,我们进行一系列实验来评估SVM。实验结果表明,SVMS在保证冲突用户拥有的VM之间的隔离方面是有效的,而资源利用率降低但不是很多。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号