Title :
Intrusion detection techniques for virtual domains
Author :
Tupakula, Udaya ; Varadharajan, Vijay ; Dutta, D.
Author_Institution :
Fac. of Sci., Macquarie Univ., Sydney, NSW, Australia
Abstract :
A virtual domain enables grouping of related virtual machines running on separate physical machine into a single network domain with a unified security policy. Since the virtual machines can be running different operating systems and applications, the attacker can exploit even a single vulnerability in any of the operating system or applications in a single virtual machine to attack other machines in the virtual domain. There is a need to develop intrusion detection techniques to deal with different types of attacks in virtual domains. In this paper we consider the design choices for attack detection and propose intrusion detection architecture to deal with attacks in virtual domains. Our architecture takes into account the specific features of the virtual machine as well as security policies of the virtual domains to deal with different types of attacks in virtual machines. We have described the operation of the proposed system architecture in detail. Finally we present how our model can efficiently deal with different types of attacks and performance analysis of our model.
Keywords :
operating systems (computers); security of data; virtual machines; intrusion detection architecture; intrusion detection techniques; operating systems; physical machine; single network domain; unified security policy; virtual domains; virtual machines; Intrusion Detection Systems Architecture; Malware; Virtual Domains;
Conference_Titel :
High Performance Computing (HiPC), 2012 19th International Conference on
Conference_Location :
Pune
Print_ISBN :
978-1-4673-2372-7
Electronic_ISBN :
978-1-4673-2370-3
DOI :
10.1109/HiPC.2012.6507491