Increasing virtual machine security in cloud environments

被引:0
|
作者
Schwarzkopf, Roland [1 ]
Schmidt, Matthias [1 ]
Strack, Christian [1 ]
Martin, Simon [1 ]
Freisleben, Bernd [1 ]
机构
[1] Univ Marburg, Dept Math & Comp Sci, Hans Meerwein Str 3, D-35032 Marburg, Germany
关键词
D O I
10.1186/2192-113X-1-12
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A common approach in Infrastructure-as-a-Service Clouds or virtualized Grid computing is to provide virtual machines to customers to execute their software on remote resources. Giving full superuser permissions to customers eases the installation and use of user software, but it may lead to security issues. The providers usually delegate the task of keeping virtual machines up to date to the customers, while the customers expect the providers to perform this task. Consequently, a large number of virtual machines (either running or dormant) are not patched against the latest software vulnerabilities. The approach presented in this article deals with these problems by helping users as well as providers to keep virtual machines up to date. Prior to the update step, it is crucial to know which software is actually outdated or affected by remote security vulnerabilities. While these tasks seem to be straightforward, developing a solution that handles multiple software repositories from different vendors and identifies the correct packages is a challenging task. The Update Checker presented in this article identifies outdated software packages in virtual machines, regardless if the virtual machine is running or dormant on disk. The proposed Online Penetration Suite performs pre-rollout scans of virtual machines for security vulnerabilities using established techniques and prevents execution of flawed virtual machines. The article presents the design, the implementation and an experimental evaluation of the two components.
引用
收藏
页数:12
相关论文
共 50 条
  • [1] Increasing virtual machine security in cloud environments
    Roland Schwarzkopf
    Matthias Schmidt
    Christian Strack
    Simon Martin
    Bernd Freisleben
    [J]. Journal of Cloud Computing: Advances, Systems and Applications, 1 (1):
  • [2] Update checker: increasing virtual machine security in cloud environments
    Raghavendran, R.
    Ragupathi, B.
    [J]. APPLIED SCIENCE, MATERIALS SCIENCE AND INFORMATION TECHNOLOGIES IN INDUSTRY, 2014, 513-517 : 1268 - 1273
  • [3] ON VIRTUAL MACHINE SECURITY ISSUES IN CLOUD COMPUTING
    Zhang, Chaochao
    Bai, Ling
    Chen, Su
    Jiang, Hai
    [J]. INTERNATIONAL SYMPOSIUM ON COMPUTER SCIENCE & TECHNOLOGY: PROCEEDINGS, 2012, : 75 - 79
  • [4] Analysing Virtual Machine Security in Cloud Systems
    Al Said, Taimur
    Rana, Omer F.
    [J]. INTELLIGENT CLOUD COMPUTING, 2015, 8993 : 137 - 151
  • [5] Minimizing Virtual Machine Migration Probability for Cloud Environments
    Chen, Xiaojiao
    Chen, Shiping
    Tseng, Fan-Hsun
    Chou, Li-Der
    Chao, Han-Chieh
    [J]. 2013 IEEE 15TH INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE COMPUTING AND COMMUNICATIONS & 2013 IEEE INTERNATIONAL CONFERENCE ON EMBEDDED AND UBIQUITOUS COMPUTING (HPCC_EUC), 2013, : 1430 - 1436
  • [6] Virtual Machine Contracts for Datacenter and Cloud Computing Environments
    Matthews, Jeanna
    Garfinkel, Tal
    Hoff, Christofer
    Wheeler, Jeff
    [J]. FIRST WORKSHOP ON AUTOMATED CONTROL FOR DATACENTERS AND CLOUDS (ACDC '09), 2009, : 25 - 30
  • [7] Security Strategy for Virtual Machine Allocation in Cloud Computing
    Jia, Hefei
    Liu, Xu
    Di, Xiaoqiang
    Qi, Hui
    Cong, Ligang
    Li, Jinqing
    Yang, Huamin
    [J]. 2018 INTERNATIONAL CONFERENCE ON IDENTIFICATION, INFORMATION AND KNOWLEDGE IN THE INTERNET OF THINGS, 2019, 147 : 140 - 144
  • [8] Trusted Model for Virtual Machine Security in Cloud Computing
    Narayana, K. Sathya
    Pasupuleti, Syam Kumar
    [J]. PROGRESS IN COMPUTING, ANALYTICS AND NETWORKING, ICCAN 2017, 2018, 710 : 655 - 665
  • [9] Towards optimal virtual machine placement methods in cloud environments
    Zuo, Haichun
    [J]. JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2023, 44 (05) : 8663 - 8696
  • [10] Minimizing virtual machine migration probability in cloud computing environments
    Moghaddam, Marjan Jalali
    Esmaeilzadeh, Akram
    Ghavipour, Mina
    Zadeh, Ahmad Khadem
    [J]. CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2020, 23 (04): : 3029 - 3038