Discover and Secure (DaS): An Automated Virtual Machine Security Management Framework

被引:0
|
作者
Navamani, Beaulah A. [1 ]
Yue, Chuan [2 ]
Zhou, Xiaobo [1 ]
机构
[1] Univ Colorado, Dept Comp Sci, Colorado Springs, CO 80907 USA
[2] Colorado Sch Mines, Dept Comp Sci, Golden, CO 80401 USA
关键词
Cloud; Virtual Machine Migration; Security; EC2;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud computing is very appealing for its convenient central management, the elasticity of resource provisioning and its economic benefits. Undoubtedly, the non-transparent nature of the Cloud infrastructure introduces significant security concerns. Naively, Virtual Machine (VM) migration can weaken or even nullify the security protection on a VM. Attackers compromise such vulnerable hosts and can either take control over their resources or use them as a channel for future attacks. To overcome the hidden security risk, this paper proposes Discover and Secure (DaS) framework for automated VM security management. This framework accomplishes two qualities: 1) to discover whether the VM is an inadvertent security victim 2) to secure the VM and the mission-critical applications running inside them. Modules in this framework detect, extract and measures the new identifiers assigned to the VM. Comparing the new identifiers to the reference table containing the old measured identifier values, verifies the identifier/s status. Transformed identifiers are perceived and replaced with new valid ones, hence, restoring the nullified security. This framework is implemented as VM-Internal security, self-supplied by the user and VM-introspection security, host-supplied by the cloud provider. Experimental results show that DaS framework can armor the VM from obscured security problems and seal the hidden door against attackers.
引用
收藏
页数:6
相关论文
共 50 条
  • [41] Dolphin partner optimization based secure and qualified virtual machine for resource allocation with streamline security analysis
    Dhanya, D.
    Arivudainambi, D.
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2019, 12 (05) : 1194 - 1213
  • [42] Integrated Security Framework for Secure Web Services
    Zhang, Wenjun
    2010 THIRD INTERNATIONAL SYMPOSIUM ON INTELLIGENT INFORMATION TECHNOLOGY AND SECURITY INFORMATICS (IITSI 2010), 2010, : 178 - 183
  • [43] SECURITY ENHANCEMENT IN AUTOMATED TELLER MACHINE
    Adithya, P.
    Aishwarya, S.
    Megalai, S.
    Priyadharshini, S.
    Kurinjimalar, R.
    PROCEEDINGS OF 2017 INTERNATIONAL CONFERENCE ON INTELLIGENT COMPUTING AND CONTROL (I2C2), 2017,
  • [44] Secure Virtual Machine Migration In Virtualized Environment
    Anitha, H. M.
    Jayarekha, P.
    PROCEEDINGS OF THE 2ND INTERNATIONAL CONFERENCE ON INVENTIVE SYSTEMS AND CONTROL (ICISC 2018), 2018, : 938 - 943
  • [45] Automated Security Assessment for IDaaS Framework
    Gomaa, Ibrahim
    Abd-Elrahman, Emad
    Hamdy, Alaa
    Saad, Elsayed M.
    WIRELESS PERSONAL COMMUNICATIONS, 2021, 116 (04) : 3465 - 3490
  • [46] Automated Security Assessment for IDaaS Framework
    Ibrahim Gomaa
    Emad Abd-Elrahman
    Alaa Hamdy
    Elsayed M. Saad
    Wireless Personal Communications, 2021, 116 : 3465 - 3490
  • [47] A Framework for Secure Live Migration of Virtual Machines
    Anala, M. R.
    Shetty, Jyoti
    Shobha, G.
    2013 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2013, : 243 - 248
  • [48] An Approach for Virtual Machine Image Security
    Pandey, Anjali
    Srivastava, Shashank
    2014 INTERNATIONAL CONFERENCE ON SIGNAL PROPAGATION AND COMPUTER TECHNOLOGY (ICSPCT 2014), 2014, : 616 - 623
  • [49] On State of The Art in Virtual Machine Security
    Chen, Qian
    Mehrotra, Rajat
    Dubey, Abhishek
    Abdelwahed, Sherif
    Rowland, Krisa
    2012 PROCEEDINGS OF IEEE SOUTHEASTCON, 2012,
  • [50] VIRTUAL MACHINE ENVIRONMENT - SECURITY ASPECTS
    WATTAM, KW
    INFORMATION PRIVACY, 1981, 3 (02): : 68 - 74