When Dynamic VM Migration Falls Under the Control of VM Users

被引:8
|
作者
Lazri, Kahina [1 ,2 ]
Laniepce, Sylvie [1 ]
Ben-Othman, Jalel [2 ]
机构
[1] Orange Labs, Secur Dept, Caen, France
[2] Univ Paris 13, Lab L2TI, F-93430 Villetaneuse, France
关键词
Cloud Computing; Security; VM Migration; Multi-tenancy; Isolation; Vulnerability;
D O I
10.1109/CloudCom.2013.58
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Security of multi-tenancy in cloud platforms raises a growing interest since research has revealed that the sharing of resources constitutes a vector of vulnerability. In this paper, we examine how one can leverage the sharing of resources, through the manipulation of the amount of resources consumed by VMs, to abusively enforce the dynamic resource management system to trigger VM migrations. This causes waste of resources for the hosting infrastructure and affects performances of VMs. To demonstrate this cross-VM attack, we use VMware's Distributed Resource Scheduler (DRS) in charge of dynamic VM migration management. We perform a detailed analysis of the running of our experimentations by monitoring DRS details during the whole duration of the attack. We explore in various contexts the minimum amount of resources required for the attack to succeed. In our experimentation performed on small clusters, we observe higher vulnerability when the cluster gets larger and when DRS aggressiveness level gets higher. Finally, our experimentations show that the attack can be replayed several times to produce series of VM migrations.
引用
收藏
页码:395 / 402
页数:8
相关论文
共 50 条
  • [1] VM AS A MIGRATION AID FOR IBM USERS
    PARTRIDGE, DC
    DATA PROCESSING, 1984, 26 (01): : 24 - 26
  • [2] Dynamic Threshold Setting for VM Migration
    Hummaida, Abdul Rahman
    Paton, Norman W.
    Sakellariou, Rizos
    SERVICE-ORIENTED AND CLOUD COMPUTING, 2022, 13226 : 31 - 46
  • [3] Minimizing Biased VM Selection in Live VM Migration
    Melhem, Suhib Bani
    Agarwal, Anjali
    Goel, Nishith
    Zaman, Marzia
    PROCEEDINGS OF 2017 3RD INTERNATIONAL CONFERENCE OF CLOUD COMPUTING TECHNOLOGIES AND APPLICATIONS (CLOUDTECH), 2017, : 229 - 235
  • [4] MIGRATION TO VM/XA
    WOLKERSDORFER, K
    PROCEEDINGS : SEAS ANNIVERSARY MEETING 1989, VOLS 1 AND 2: THE CORPORATE NETWORK, 1989, : 561 - 576
  • [5] Evaluation of VM Selection Policy in Minimizing Cost Energy VM Migration at Dynamic Virtual Machine Consolidation
    Shidik, Guruh Fajar
    Azhari
    Mustofa, Khabib
    ADVANCED SCIENCE LETTERS, 2015, 21 (10) : 3292 - 3295
  • [6] Hybrid Live VM Migration: An Efficient Live VM Migration Approach in Cloud Computing
    Shakya, Abhishek Ku
    Garg, Deepak
    Nayak, Prakash Ch
    ADVANCED INFORMATICS FOR COMPUTING RESEARCH, ICAICR 2018, PT I, 2019, 955 : 600 - 611
  • [7] A Cloud VM Migration Control Mechanism Using Blockchain
    Uchibayashi, Toshihiro
    Apduhan, Bernady
    Suganuma, Takuo
    Hiji, Masahiro
    COMPUTATIONAL SCIENCE AND ITS APPLICATIONS, ICCSA 2020, PART IV, 2020, 12252 : 221 - 235
  • [8] Autonomous Learning for Efficient Resource Utilization of Dynamic VM Migration
    Choi, Hyung Won
    Kwak, Hukeun
    Sohn, Andrew
    Chung, Kyusik
    ICS'08: PROCEEDINGS OF THE 2008 ACM INTERNATIONAL CONFERENCE ON SUPERCOMPUTING, 2008, : 185 - +
  • [9] Estimation of the Cost of VM Migration
    Dargie, Waltenegus
    2014 23RD INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATION AND NETWORKS (ICCCN), 2014,
  • [10] VM Live Migration At Scale
    Ruprecht, Adam
    Jones, Danny
    Shiraev, Dmitry
    Harmon, Greg
    Spivak, Maya
    Krebs, Michael
    Baker-Harvey, Miche
    Sanderson, Tyler
    ACM SIGPLAN NOTICES, 2018, 53 (03) : 45 - 56