I/O for virtual machine monitors - Security and performance issues

被引:11
|
作者
Karger, Paul A.
Safford, David
机构
[1] IBM T.J. Watson Research Center
关键词
Context switching - Department of Defense - Device Driver - Hypervisions - Para-virtualization - Security and performance - Virtual machine monitors - Virtual processor;
D O I
10.1109/MSP.2008.119
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Virtual machine monitors (VMM) or hypervisor, is a specialized operating system (OS) that creates multiple virtual processors and behave exactly like a real hardware CPU. The Xen VMM popularized the concept of paravirtualization to simplify some aspects of CPU virtualization and I/O virtualization. Studies have demonstrated the feasibility of using hypervisions for the very high levels of security demanded by the Department of Defense projects. Pure isolation VMMs such as PR/SM on zSeries mainframes or systems, allow each guest partition with a dedicated I/O hardware and device drivers, without sharing device between them. The biggest source of performance overhead in a VMM is the cost of context switching into and out of the VMM and between guest partitions. The VMMs can run a full Linux or AIX OS in the special partitions and redirect all I/O requests from guest.
引用
收藏
页码:16 / 23
页数:8
相关论文
共 50 条
  • [1] Scheduling I/O in Virtual Machine Monitors
    Ongaro, Diego
    Cox, Alan L.
    Rixner, Scott
    [J]. VEE'08: PROCEEDINGS OF THE FOURTH INTERNATIONAL CONFERENCE ON VIRTUAL EXECUTION ENVIRONMENTS, 2008, : 1 - 10
  • [2] Performance Measuring and Comparing of Virtual Machine Monitors
    Che, Jianhua
    He, Qinming
    Gao, Qinghua
    Huang, Dawei
    [J]. EUC 2008: PROCEEDINGS OF THE 5TH INTERNATIONAL CONFERENCE ON EMBEDDED AND UBIQUITOUS COMPUTING, VOL 2, WORKSHOPS, 2008, : 381 - 386
  • [3] ON VIRTUAL MACHINE SECURITY ISSUES IN CLOUD COMPUTING
    Zhang, Chaochao
    Bai, Ling
    Chen, Su
    Jiang, Hai
    [J]. INTERNATIONAL SYMPOSIUM ON COMPUTER SCIENCE & TECHNOLOGY: PROCEEDINGS, 2012, : 75 - 79
  • [4] Performance Combinative Evaluation of Typical Virtual Machine Monitors
    Che, Jianhua
    He, Qinming
    Ye, Kejiang
    Huang, Dawei
    [J]. HIGH PERFORMANCE COMPUTING AND APPLICATIONS, 2010, 5938 : 96 - 101
  • [5] Evaluation of I/O Performance Regulating Function with a Virtual Machine
    Nagao, Takashi
    Tanabe, Nasanori
    Yokoyama, Kazutoshi
    Taniguchi, Hideo
    [J]. ADVANCES IN NETWORKED-BASED INFORMATION SYSTEMS, NBIS-2019, 2020, 1036 : 641 - 649
  • [6] Performance analysis of selected hypervisors (Virtual Machine Monitors - VMMs)
    Graniszewski, Waldemar
    Arciszewski, Adam
    [J]. INTERNATIONAL JOURNAL OF ELECTRONICS AND TELECOMMUNICATIONS, 2016, 62 (03) : 231 - 236
  • [7] Separation Virtual Machine Monitors
    McDermott, John
    Montrose, Bruce
    Li, Margery
    Kirby, James
    Kang, Myong
    [J]. 28TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE (ACSAC 2012), 2012, : 419 - 428
  • [8] Security Issues Due to Vulnerabilities in the Virtual Machine of Cloud Computing
    Bhagat, Swapnil P.
    Patil, Vikram S.
    Meshram, Bandu B.
    [J]. INTELLIGENT COMPUTING AND COMMUNICATION, ICICC 2019, 2020, 1034 : 625 - 634
  • [9] Performance Issues in Clouds: An Evaluation of Virtual Image Propagation and I/O Paravirtualization
    Armstrong, Django
    Djemame, Karim
    [J]. COMPUTER JOURNAL, 2011, 54 (06): : 836 - 849
  • [10] On the Impossibility of Detecting Virtual Machine Monitors
    Gueron, Shay
    Seifert, Jean-Pierre
    [J]. EMERGING CHALLENGES FOR SECURITY, PRIVACY AND TRUST: 24TH IFIP TC 11 INTERNATIONAL INFORMATION SECURITY CONFERENCE, SEC 2009, PROCEEDINGS, 2009, 297 : 143 - 151