Discover and Secure (DaS): An Automated Virtual Machine Security Management Framework

被引:0
|
作者
Navamani, Beaulah A. [1 ]
Yue, Chuan [2 ]
Zhou, Xiaobo [1 ]
机构
[1] Univ Colorado, Dept Comp Sci, Colorado Springs, CO 80907 USA
[2] Colorado Sch Mines, Dept Comp Sci, Golden, CO 80401 USA
关键词
Cloud; Virtual Machine Migration; Security; EC2;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud computing is very appealing for its convenient central management, the elasticity of resource provisioning and its economic benefits. Undoubtedly, the non-transparent nature of the Cloud infrastructure introduces significant security concerns. Naively, Virtual Machine (VM) migration can weaken or even nullify the security protection on a VM. Attackers compromise such vulnerable hosts and can either take control over their resources or use them as a channel for future attacks. To overcome the hidden security risk, this paper proposes Discover and Secure (DaS) framework for automated VM security management. This framework accomplishes two qualities: 1) to discover whether the VM is an inadvertent security victim 2) to secure the VM and the mission-critical applications running inside them. Modules in this framework detect, extract and measures the new identifiers assigned to the VM. Comparing the new identifiers to the reference table containing the old measured identifier values, verifies the identifier/s status. Transformed identifiers are perceived and replaced with new valid ones, hence, restoring the nullified security. This framework is implemented as VM-Internal security, self-supplied by the user and VM-introspection security, host-supplied by the cloud provider. Experimental results show that DaS framework can armor the VM from obscured security problems and seal the hidden door against attackers.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] A Novel Framework for Cloud based Virtual Machine Security by Change Management using Machine
    Radharani, S.
    Narasimha, V. B.
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2021, 12 (12) : 658 - 666
  • [2] Design and Implementation of a Portable ID Management Framework for a Secure Virtual Machine Monitor
    Hirano, Manabu
    Okuda, Takeshi
    Kawai, Eiji
    Yamaguchi, Suguru
    JOURNAL OF INFORMATION ASSURANCE AND SECURITY, 2007, 2 (03): : 211 - 216
  • [3] Automated Security Management for Virtual Services
    Repetto, M.
    Carrega, A.
    Yusupov, J.
    Valenza, F.
    Risso, F.
    Lamanna, G.
    2019 IEEE CONFERENCE ON NETWORK FUNCTION VIRTUALIZATION AND SOFTWARE DEFINED NETWORKS (IEEE NFV-SDN), 2019,
  • [4] Discover and safe: an automated security management system for educational institutions
    Kandhro, Irfan Ali
    Khan, Umer
    Memon, Shahrukh
    Yasir, Mohammad
    INTERNATIONAL JOURNAL OF ELECTRONIC SECURITY AND DIGITAL FORENSICS, 2023, 15 (02) : 158 - 176
  • [5] Machine learning-based intelligent security framework for secure cloud key management
    Ahmad, Shahnawaz
    Mehfuz, Shabana
    Urooj, Shabana
    Alsubaie, Najah
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2024, 27 (05): : 5571 - 5610
  • [6] A Framework to Secure the Virtual Machine Image in Cloud Computing
    Hussein, Raid Khalid
    Alenezi, Ahmed
    Wills, Gary B.
    Walters, Robert J.
    2016 IEEE INTERNATIONAL CONFERENCE ON SMART CLOUD (SMARTCLOUD), 2016, : 35 - 40
  • [7] A Security Context Migration Framework for Virtual Machine Migration
    Majhi, Santosh Kumar
    Dhal, Sunil Kumar
    2015 INTERNATIONAL CONFERENCE ON COMPUTING AND NETWORK COMMUNICATIONS (COCONET), 2015, : 452 - 456
  • [8] Towards virtual machine introspection based security framework for cloud
    Borisaniya, Bhavesh
    Patel, Dhiren
    SADHANA-ACADEMY PROCEEDINGS IN ENGINEERING SCIENCES, 2019, 44 (02):
  • [9] A Secure and Multiobjective Virtual Machine Placement Framework for Cloud Data Center
    Saxena, Deepika
    Gupta, Ishu
    Kumar, Jitendra
    Singh, Ashutosh Kumar
    Wen, Xiaoqing
    IEEE SYSTEMS JOURNAL, 2022, 16 (02): : 3163 - 3174
  • [10] Towards virtual machine introspection based security framework for cloud
    Bhavesh Borisaniya
    Dhiren Patel
    Sādhanā, 2019, 44