When Dynamic VM Migration Falls Under the Control of VM Users

被引:8
|
作者
Lazri, Kahina [1 ,2 ]
Laniepce, Sylvie [1 ]
Ben-Othman, Jalel [2 ]
机构
[1] Orange Labs, Secur Dept, Caen, France
[2] Univ Paris 13, Lab L2TI, F-93430 Villetaneuse, France
关键词
Cloud Computing; Security; VM Migration; Multi-tenancy; Isolation; Vulnerability;
D O I
10.1109/CloudCom.2013.58
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Security of multi-tenancy in cloud platforms raises a growing interest since research has revealed that the sharing of resources constitutes a vector of vulnerability. In this paper, we examine how one can leverage the sharing of resources, through the manipulation of the amount of resources consumed by VMs, to abusively enforce the dynamic resource management system to trigger VM migrations. This causes waste of resources for the hosting infrastructure and affects performances of VMs. To demonstrate this cross-VM attack, we use VMware's Distributed Resource Scheduler (DRS) in charge of dynamic VM migration management. We perform a detailed analysis of the running of our experimentations by monitoring DRS details during the whole duration of the attack. We explore in various contexts the minimum amount of resources required for the attack to succeed. In our experimentation performed on small clusters, we observe higher vulnerability when the cluster gets larger and when DRS aggressiveness level gets higher. Finally, our experimentations show that the attack can be replayed several times to produce series of VM migrations.
引用
收藏
页码:395 / 402
页数:8
相关论文
共 50 条
  • [41] Availability and reliability modeling of VM migration as rejuvenation on a system under varying workload
    Torquato, Matheus
    Maciel, Paulo
    Vieira, Marco
    SOFTWARE QUALITY JOURNAL, 2020, 28 (01) : 59 - 83
  • [42] Availability and reliability modeling of VM migration as rejuvenation on a system under varying workload
    Matheus Torquato
    Paulo Maciel
    Marco Vieira
    Software Quality Journal, 2020, 28 : 59 - 83
  • [43] Optimal VM Migration Planning for Data Centers
    Liu, Jiaqiang
    Su, Li
    Jin, Yuchen
    Li, Yong
    Jin, Depeng
    Zeng, Lieguang
    2014 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM 2014), 2014, : 2332 - 2337
  • [44] STATE SAMPLING OF INTERACTIVE VM-370 USERS
    TETZLAFF, WH
    IBM SYSTEMS JOURNAL, 1979, 18 (01) : 164 - 180
  • [45] An Effective and Scalable VM Migration Strategy to Mitigate Cross-VM Side-Channel Attacks in Cloud
    Chao Yang
    Yunfei Guo
    Hongchao Hu
    Wenyan Liu
    Yawen Wang
    中国通信, 2019, 16 (04) : 151 - 171
  • [46] Fast local VM migration against hypervisor corruption
    Cerveira, Frederico
    Barbosa, Raul
    Madeira, Henrique
    2019 15TH EUROPEAN DEPENDABLE COMPUTING CONFERENCE (EDCC 2019), 2019, : 97 - 102
  • [47] Green Cloud VM Migration: Power Use Analysis
    Aikema, David
    Mirtchovski, Andrey
    Kiddle, Cameron
    Simmonds, Rob
    2012 INTERNATIONAL GREEN COMPUTING CONFERENCE (IGCC), 2012,
  • [48] Security-aware dynamic VM consolidation
    Elshabka, Mohamed A.
    Hassan, Hanan A.
    Sheta, Walaa M.
    Harb, Hany M.
    EGYPTIAN INFORMATICS JOURNAL, 2021, 22 (03) : 277 - 284
  • [49] Dynamic VM Provisioning for TORQUE in a Cloud Environment
    Zhang, S.
    Boland, L.
    Coddington, P.
    Sevior, M.
    20TH INTERNATIONAL CONFERENCE ON COMPUTING IN HIGH ENERGY AND NUCLEAR PHYSICS (CHEP2013), PARTS 1-6, 2014, 513
  • [50] OEC: An Open Experimental Cloud Based on VM Migration
    Liu, Yu
    Li, Bo
    Niu, Jianwei
    INTERNATIONAL CONFERENCE ON ADVANCED EDUCATION AND MANAGEMENT SCIENCE (AEMS 2017), 2017, : 83 - 87