Title :
VMGuard: An Integrity Monitoring System for Management Virtual Machines
Author :
Fang, Haifeng ; Zhao, Yiqiang ; Zang, Hongyong ; Huang, H. Howie ; Song, Ying ; Sun, Yuzhong ; Liu, Zhiyong
Author_Institution :
Grad. Univ. of Chinese Acad. of Sci., Beijing, China
Abstract :
A cloud computing provider can dynamically allocate virtual machines (VM) based on the needs of the customers, while maintaining the privileged access to the Management Virtual Machine that directly manages the hardware and supports the guest VMs. The customers must trust the cloud providers to protect the confidentiality and integrity of their applications and data. However, as the VMs from different customers are running on the same host, an attack to the management virtual machine will easily lead to the compromise of the guest VMs. Therefore, it is critical for a cloud computing system to ensure the trustworthiness of management VMs. To this end, we propose VMGuard, an integrity monitoring and detecting system for management virtual machines in a distributed environment. VMGuard utilizes a special VM, Guard Domain, which runs on each physical node to monitor the co-resident management VMs. The integrity measurements collected by the Guard Domains are sent to the VMGuard server for safe store and independent analysis. The experimental evaluation of a Xen-based prototype shows that VMGuard can quickly detect the root kit attacks while the performance overhead is low.
Keywords :
cloud computing; system monitoring; virtual machines; VMGuard server; cloud computing provider; cloud computing system; cloud providers; coresident management; detecting system; distributed environment; guard domain; independent analysis; integrity monitoring system; management virtual machine; virtual machines; Integrity Monitoring; Remote I/O; Virtual Machine;
Conference_Titel :
Parallel and Distributed Systems (ICPADS), 2010 IEEE 16th International Conference on
Conference_Location :
Shanghai
Print_ISBN :
978-1-4244-9727-0
Electronic_ISBN :
1521-9097
DOI :
10.1109/ICPADS.2010.44