CloudVMI: A Cloud-Oriented Writable Virtual Machine Introspection

被引:5
|
作者
Qiang, Weizhong [1 ]
Xu, Gongping [1 ]
Dai, Weiqi [1 ]
Zou, Deqing [1 ]
Jin, Hai [1 ]
机构
[1] Huazhong Univ Sci & Technol, Big Data Technol & Syst Lab, Serv Comp Technol & Syst Lab, Cluster & Grid Comp Lab,Sch Comp Sci & Technol, Wuhan 430074, Hubei, Peoples R China
来源
IEEE ACCESS | 2017年 / 5卷
基金
中国国家自然科学基金;
关键词
Virtual machine introspection; cloud management; security monitoring;
D O I
10.1109/ACCESS.2017.2758356
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
IoT generates considerable amounts of data, which often requires leveraging cloud computing to effectively scale the costs of transferring and computing these data. The concern regarding cloud security is more severe because many devices are connected to the cloud. It is important to automatically monitor and control these resources and services to efficiently and securely deliver cloud computing. The writable virtual machine introspection (VMI) technique can not only detect the runtime state of a guest VM from the outside but also update the state from the outside without any need for administrator efforts. Thus, the writable VMI technique can provide the benefit of high automation, which is helpful for automated cloud management. However, the existing writable VMI technique produces high overhead, fails to monitor the VMs distributed on different host nodes, and fails to monitor multiple VMs with heterogeneous guest OSes within a cloud; therefore, it cannot be applied for automated and centralized cloud management. In this paper, we present CloudVMI, which is a writable and cross-node monitoring VMI framework that can overcome the aforementioned issues. CloudVMI solves the semantic gap problem by redirecting the critical execution of system calls issued by the VMI program into the monitored VM. It has strong practicability by allowing one introspection program to inspect heterogeneous guest OSes and to monitor VMs distributed on remote host nodes. Thus, CloudVMI can be directly applied for automated and centralized cloud management. Moreover, we implement some defensive measures to secure CloudVMI itself. To highlight the writable capability and practical usefulness of CloudVMI, we implement four applications based on CloudVMI. CloudVMI is designed, implemented, and systematically evaluated. The experimental results demonstrate that CloudVMI is effective and practical for cloud management and that its performance overhead is acceptable compared with existing VMI systems.
引用
收藏
页码:21962 / 21976
页数:15
相关论文
共 50 条
  • [41] A Cloud-Oriented Content Delivery Network Paradigm: Modeling and Assessment
    Papagianni, Chrysa
    Leivadeas, Aris
    Papavassiliou, Symeon
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2013, 10 (05) : 287 - 300
  • [42] SELECTION OF THE CLOUD-ORIENTED DATABASE LEARNING TOOLS FOR FUTURE IT PROFESSIONALS
    Vakaliuk, Tetiana A.
    Korotun, Olha V.
    Antoniuk, Dmytro S.
    INFORMATION TECHNOLOGIES AND LEARNING TOOLS, 2019, 71 (03) : 154 - 168
  • [43] Cloud-oriented emotion feedback-based Exergames framework
    M. Shamim Hossain
    Ghulam Muhammad
    Muhammad Al-Qurishi
    Mehedi Masud
    Ahmad Almogren
    Wadood Abdul
    Atif Alamri
    Multimedia Tools and Applications, 2018, 77 : 21861 - 21877
  • [44] Cloud-oriented fault tolerance technique based on resource state
    Khiat, Abdelhamid
    MULTIAGENT AND GRID SYSTEMS, 2021, 17 (04) : 335 - 349
  • [45] A Universal Semantic Bridge for Virtual Machine Introspection
    Schneider, Christian
    Pfoh, Jonas
    Eckert, Claudia
    INFORMATION SYSTEMS SECURITY, 2011, 7093 : 370 - 373
  • [46] Narrowing the semantic gap in virtual machine introspection
    Cui, Chao-Yuan
    Wu, Yun
    Li, Ping
    Zhang, Xiao-Ming
    Tongxin Xuebao/Journal on Communications, 2015, 36 (08):
  • [47] Efficient Checkpointing of Virtual Machines using Virtual Machine Introspection
    Aderholdt, Ferrol
    Han, Fang
    Scott, Stephen L.
    Naughton, Thomas
    2014 14TH IEEE/ACM INTERNATIONAL SYMPOSIUM ON CLUSTER, CLOUD AND GRID COMPUTING (CCGRID), 2014, : 414 - 423
  • [48] CLOUD-ORIENTED LEARNING TECHNOLOGIES AS A TOOL OF THE DIGITAL PREPARATION SYSTEM FOR MANAGERS
    Bodnenko, Dmytro M.
    Yakovenko, Ihor, V
    Kuchakovska, Halyna A.
    Lokaziuk, Oleksandra, V
    INFORMATION TECHNOLOGIES AND LEARNING TOOLS, 2022, 89 (03) : 131 - 161
  • [49] A Proposal of a Cloud-Oriented Security and Performance Simulator Provided as-a-Service
    Casola, Valentina
    De Benedictis, Alessandra
    Rak, Massimiliano
    Villano, Umberto
    COMPLEX, INTELLIGENT, AND SOFTWARE INTENSIVE SYSTEMS, 2019, 772 : 1002 - 1011
  • [50] Research for the virtual machine-oriented cloud resource scheduling algorithm
    Zhu, Youchan
    Liang, Huili
    PROCEEDINGS OF 2013 6TH INTERNATIONAL CONFERENCE ON INFORMATION MANAGEMENT, INNOVATION MANAGEMENT AND INDUSTRIAL ENGINEERING (ICIII 2013) VOL 1, 2013, : 133 - 136