• DocumentCode
    2578391
  • Title

    A Lightweight Monitoring Service for Multi-core Embedded Systems

  • Author

    Shimada, Hiromasa ; Courbot, Alexandre ; Kinebuchi, Yuki ; Nakajima, Tatsuo

  • Author_Institution
    Dept. of Comput. Sci., Waseda Univ., Tokyo, Japan
  • fYear
    2010
  • fDate
    5-6 May 2010
  • Firstpage
    202
  • Lastpage
    209
  • Abstract
    The recent increase in complexity and functionality in embedded systems makes them more vulnerable to rootkit-type attacks, raising the need for integrity management systems. However, as of today there is no such system that can guarantee the system´s safety while matching the low-resource, real-time and multi-core requirements of embedded systems. In this paper, we present a Virtual Machine Monitor (VMM) based monitoring service for embedded systems that checks the actual kernel data against a safe data specification. However, due to the VMM and multi-core nature of the system, the guest OS can be preempted at any time, leading to the checking of potentially inconsistent states. We evaluated two approaches to solve this problem: detecting such invalid states by checking specific kernel data, and detecting system calls using the VMM.
  • Keywords
    embedded systems; formal specification; operating systems (computers); security of data; system monitoring; virtual machines; detecting system calls; integrity management systems; lightweight monitoring service; multicore embedded systems; rootkit-type attacks; specific kernel data checking; virtual machine monitor based monitoring service; Computer science; Computerized monitoring; Data structures; Distributed computing; Embedded system; Kernel; Operating systems; Protection; Real time systems; Virtual machine monitors; embedded systems; monitoring; operating systems; virtualization;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Object/Component/Service-Oriented Real-Time Distributed Computing (ISORC), 2010 13th IEEE International Symposium on
  • Conference_Location
    Carmona, Seville
  • ISSN
    1555-0885
  • Print_ISBN
    978-1-4244-7083-9
  • Electronic_ISBN
    1555-0885
  • Type

    conf

  • DOI
    10.1109/ISORC.2010.12
  • Filename
    5479553