Title :
On Trustworthiness of CPU Usage Metering and Accounting
Author :
Liu, Mei ; Ding, Xuhua
Author_Institution :
State Key Lab. of Inf. Security, Grad. Univ. of Chinese Acad. of Sci., Beijing, China
Abstract :
In the envisaged utility computing paradigm, a user taps a service provider´s computing resources to accomplish her tasks, without deploying the needed hardware and software in her own IT infrastructure. To make the service profitable, the service provider charges the user based on the resources consumed. A commonly billed resource is CPU usage. A key factor to ensure the success of such a business model is the trustworthiness of the resource metering scheme. In this paper, we provide a systematic study on the trustworthiness of CPU usage metering. Our results show that the metering schemes in commodity operating systems should not be used in utility computing. A dishonest server can run various attacks to cheat the users. Many of the attacks are surprisingly simple and do not even require high privileges or sophisticated techniques. To demonstrate that, we experiment with several types of attacks on Linux and show their adversarial effects. We also suggest that source integrity, execution integrity and fine-grained metering are the necessary properties for a trustworthy metering scheme in utility computing.
Keywords :
Linux; commerce; security of data; utility programs; Linux; business model; resource metering scheme; service provider; utility computing; Kernel; Libraries; Loading; Process control; Runtime; Servers; CPU time metering; attack; utility computing;
Conference_Titel :
Distributed Computing Systems Workshops (ICDCSW), 2010 IEEE 30th International Conference on
Conference_Location :
Genova
Print_ISBN :
978-1-4244-7471-4
DOI :
10.1109/ICDCSW.2010.40