首页> 外国专利> Moving Target Defense for Distributed Systems

Moving Target Defense for Distributed Systems

机译:分布式系统的移动目标防御

摘要

An apparatus and method defends against computer attacks by destroying virtual machines on a schedule of destruction in which virtual machines are destroyed in either a random sequence or a round-robin sequence with wait times between the destruction of the virtual machines. Also, each virtual machine is assigned a lifetime and is destroyed at the end of its lifetime, if not earlier destroyed. Destroyed virtual machines are reincarnated by providing a substitute virtual machine and, if needed, transferring the state to the substitute virtual machine. User applications are migrated from the destroyed machine to the replacement machine. All virtual machines are monitored for an attack at a hypervisor level of cloud software using Virtual Machine Introspection, and if an attack is detected, the attacked virtual machine is destroyed and reincarnated ahead of schedule to create a new replacement machine on a different hardware platform using a different operating system.
机译:一种设备和方法通过按破坏时间表破坏虚拟机来防御计算机攻击,在破坏时间表中,虚拟机以随机序列或循环序列的方式破坏,虚拟机破坏之间的等待时间较长。同样,为每个虚拟机分配了生命周期,如果没有更早地销毁虚拟机,则在其生命周期结束时将其销毁。通过提供替代虚拟机,并在需要时将状态转移到替代虚拟机,可以重新破坏已销毁的虚拟机。用户应用程序从被破坏的计算机迁移到替换计算机。使用虚拟机内省在云软件的管理程序级别上监视所有虚拟机是否受到攻击,如果检测到攻击,则被破坏的虚拟机会提前销毁并重新生成,以便使用以下方法在不同的硬件平台上创建新的替换计算机不同的操作系统。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号