A Lightweight Security Isolation Approach for Virtual Machines Deployment

被引:4
|
作者
Liang, Hongliang [1 ]
Han, Changyao [1 ]
Zhang, Daijie [1 ]
Wu, Dongyang [1 ]
机构
[1] Beijing Univ Posts & Telecommun, Beijing 100088, Peoples R China
关键词
Virtualization; Hypervisor; Isolation; Migration; Mandatory access control;
D O I
10.1007/978-3-319-16745-9_28
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud computing has changed the way of IT services; virtualization technology is the foundation of it, which directly affects the security and reliability of the cloud computing platform. From the point of virtualization technology security, we study to integrate mandatory access control mechanism into virtual machines deployment to control resources available for virtual machines, design and implement a lightweight MAC-based strong isolation and migration approach between virtual machines. Experiments show that our method is effective in isolation and migration, and with less performance overload.
引用
收藏
页码:516 / 529
页数:14
相关论文
共 50 条
  • [31] A systematic approach to security deployment in a networking environment
    Sheu, M
    Tang, L
    Mukkamala, R
    [J]. SAM '04: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON SECURITY AND MANAGEMENT, 2004, : 228 - 234
  • [32] Enforcing performance isolation across virtual machines in Xen
    Gupta, Diwaker
    Cherkasova, Ludmila
    Gardner, Rob
    Vahdat, Amin
    [J]. MIDDLEWARE 2006, PROCEEDINGS, 2006, 4290 : 342 - +
  • [33] An approach for virtual appliance distribution for service deployment
    Kecskemeti, Gabor
    Terstyanszky, Gabor
    Kacsuk, Peter
    Nemeth, Zsolt
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2011, 27 (03): : 280 - 289
  • [34] A virtual scheme of router based on security isolation
    Yang, Yun
    Wang, Ji-Zhe
    Wu, Bin
    Wu, Lie
    [J]. WIRELESS COMMUNICATION AND SENSOR NETWORK, 2016, : 658 - 665
  • [35] A Lightweight Model for Estimating Energy Cost of Live Migration of Virtual Machines
    Strunk, Anja
    [J]. 2013 IEEE SIXTH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING (CLOUD 2013), 2013, : 510 - 517
  • [36] A formal model for the building of state machines: A lightweight approach
    Barajas, Fernando Valles
    [J]. 31ST IEEE SOFTWARE ENGINEERING WORKSHOP, PROCEEDINGS, 2007, : 194 - 203
  • [37] A new perspective for Minimal Learning Machines: A lightweight approach
    Florencio, Jose A., V
    Oliveira, Saulo A. F.
    Gomes, Joao P. P.
    Rocha Neto, Ajalmar R.
    [J]. NEUROCOMPUTING, 2020, 401 : 308 - 319
  • [38] Lightweight Modeling of Java']Java Virtual Machine Security Constraints
    Reynolds, Mark C.
    [J]. ABSTRACT STATE MACHINES, ALLOY, B AND Z, PROCEEDINGS, 2010, 5977 : 146 - 159
  • [39] Fast, On-demand Software Deployment with Lightweight, Independent Virtual Disk Images
    Chen, Bin
    Xiao, Nong
    Cai, Zhiping
    Wang, Zhiying
    Wang, Ji
    [J]. 2009 EIGHTH INTERNATIONAL CONFERENCE ON GRID AND COOPERATIVE COMPUTING, PROCEEDINGS, 2009, : 16 - 23
  • [40] Low Overhead Security Isolation using Lightweight Kernels and TEEs
    Lange, John R.
    Gordon, Nicholas
    Gaines, Brian
    [J]. SCWS 2021: 2021 SC WORKSHOPS SUPPLEMENTARY PROCEEDINGS, 2021, : 42 - 49