More Than Old Wine in New Bottles: A Secure Live Virtual Machine Job Migration Framework for Cloud Systems Integrity

Hanif Deylami, Jairo Gutiérrez, R. Sinha
{"title":"More Than Old Wine in New Bottles: A Secure Live Virtual Machine Job Migration Framework for Cloud Systems Integrity","authors":"Hanif Deylami, Jairo Gutiérrez, R. Sinha","doi":"10.23919/ICMU.2018.8653611","DOIUrl":null,"url":null,"abstract":"Cloud Computing is a flexible, cost-effective, and proven delivery platform for providing information technology services over the Internet. However, cloud computing presents an added level of risk because essential services are often outsourced to a third party, which makes it harder to maintain data security and privacy, support data and service availability, and demonstrate compliance.While existing cloud computing threat detection and prevention techniques are improving, they are still not effective enough to meet the needs of next-generation systems, such as secure dynamic resource pools, high usability, and secure virtual machine migration. This paper aims to provide an understanding of the different potential attack vectors created by virtualization in a public Infrastructure-as-a-Service cloud, in particular, the security associated with the live virtual machine migration of jobs. The vectors will be investigated, concentrating on the threats emerging from various potential attackers (internal/external) to cloud systems. The overarching aim of this study, therefore, is to design and develop a secure live virtual machine migration framework that enables a virtual trusted platform module for multiple virtual machines running on a hardware platform while maintaining the cloud system’s integrity.","PeriodicalId":398108,"journal":{"name":"2018 Eleventh International Conference on Mobile Computing and Ubiquitous Network (ICMU)","volume":"6 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2018-10-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"6","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2018 Eleventh International Conference on Mobile Computing and Ubiquitous Network (ICMU)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.23919/ICMU.2018.8653611","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 6

Abstract

Cloud Computing is a flexible, cost-effective, and proven delivery platform for providing information technology services over the Internet. However, cloud computing presents an added level of risk because essential services are often outsourced to a third party, which makes it harder to maintain data security and privacy, support data and service availability, and demonstrate compliance.While existing cloud computing threat detection and prevention techniques are improving, they are still not effective enough to meet the needs of next-generation systems, such as secure dynamic resource pools, high usability, and secure virtual machine migration. This paper aims to provide an understanding of the different potential attack vectors created by virtualization in a public Infrastructure-as-a-Service cloud, in particular, the security associated with the live virtual machine migration of jobs. The vectors will be investigated, concentrating on the threats emerging from various potential attackers (internal/external) to cloud systems. The overarching aim of this study, therefore, is to design and develop a secure live virtual machine migration framework that enables a virtual trusted platform module for multiple virtual machines running on a hardware platform while maintaining the cloud system’s integrity.
新瓶装旧酒:云系统完整性的安全实时虚拟机作业迁移框架
云计算是一种灵活的、具有成本效益的、经过验证的交付平台,用于在Internet上提供信息技术服务。然而,云计算带来了额外的风险,因为基本服务通常外包给第三方,这使得维护数据安全和隐私、支持数据和服务可用性以及证明合规性变得更加困难。虽然现有的云计算威胁检测和防护技术正在不断改进,但它们仍然不足以满足下一代系统的需求,例如安全的动态资源池、高可用性和安全的虚拟机迁移。本文旨在提供对公共基础设施即服务云中虚拟化创建的不同潜在攻击向量的理解,特别是与作业的实时虚拟机迁移相关的安全性。将对这些载体进行调查,重点关注来自各种潜在攻击者(内部/外部)对云系统的威胁。因此,本研究的总体目标是设计和开发一个安全的实时虚拟机迁移框架,该框架支持在硬件平台上运行的多个虚拟机的虚拟可信平台模块,同时保持云系统的完整性。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信