DocumentCode :
2366355
Title :
Implementing a Hybrid Virtual Machine Monitor for Flexible and Efficient Security Mechanisms
Author :
Sawazaki, Junya ; Maeda, Toshiyuki ; Yonezawa, Akinori
Author_Institution :
Grad. Sch. of Inf. Sci. & Technol., Univ. of Tokyo, Tokyo, Japan
fYear :
2010
fDate :
13-15 Dec. 2010
Firstpage :
37
Lastpage :
46
Abstract :
Virtual machine monitors (VMMs) have emerged as potential tools %% are one of the promising approaches for implementing security mechanisms to enhance the security and/or reliability of software systems. There are two approaches to implementing VMMs. One is a software-based approach that emulates the execution of virtual machines via software. The other is a hardware-based approach that utilizes the hardware virtualization support of CPUs. The software-based approach is preferred for implementing security mechanisms, whereas the hardware-based approach is preferred from the viewpoint of performance. In this paper, we present an approach to implementing a hybrid VMM for flexible and efficient security mechanisms. The hybrid VMM consists of a software-based VMM (QEMU) and hardware-based VMM (KVM), and it dynamically switches between them. Using the hybrid VMM, security- and reliability-critical software can be executed on the software-based VMM, and performance-critical software can be executed on the hardware-based VMM. We also present the results of experiments conducted to evaluate the performance and verify the effectiveness of the hybrid VMM.
Keywords :
safety-critical software; virtual machines; KVM; QEMU; efficient security mechanism; flexible security mechanism; hardware virtualization support; hybrid virtual machine monitor; reliability-critical software; security-critical software; software system reliability; software system security; Hardware virtualization support; Security; Security mechanism; VMM switching; Virtual machine monitor;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Dependable Computing (PRDC), 2010 IEEE 16th Pacific Rim International Symposium on
Conference_Location :
Tokyo
Print_ISBN :
978-1-4244-8975-6
Electronic_ISBN :
978-0-7695-4289-8
Type :
conf
DOI :
10.1109/PRDC.2010.32
Filename :
5703225
Link To Document :
بازگشت