集成技术
集成技術
집성기술
Journal of Integration Technology
2015年
5期
5-17
,共13页
云计算%虚拟化%虚拟机%同驻%安全
雲計算%虛擬化%虛擬機%同駐%安全
운계산%허의화%허의궤%동주%안전
cloud computing%virtualization%virtual machine%co-residency%security
在云计算环境中,为了实现资源共享,不同租户的虚拟机可能运行在同一台物理机器上,即虚拟机同驻,这将带来新的安全问题。为此,文章重点讨论同驻虚拟机所面临的一些新的安全威胁,包括资源干扰、隐蔽通道/侧信道、拒绝服务与虚拟机负载监听等,介绍现有虚拟机同驻探测方法,总结针对虚拟机同驻威胁的四种防御思路,并分析未来的研究趋势。
在雲計算環境中,為瞭實現資源共享,不同租戶的虛擬機可能運行在同一檯物理機器上,即虛擬機同駐,這將帶來新的安全問題。為此,文章重點討論同駐虛擬機所麵臨的一些新的安全威脅,包括資源榦擾、隱蔽通道/側信道、拒絕服務與虛擬機負載鑑聽等,介紹現有虛擬機同駐探測方法,總結針對虛擬機同駐威脅的四種防禦思路,併分析未來的研究趨勢。
재운계산배경중,위료실현자원공향,불동조호적허의궤가능운행재동일태물리궤기상,즉허의궤동주,저장대래신적안전문제。위차,문장중점토론동주허의궤소면림적일사신적안전위협,포괄자원간우、은폐통도/측신도、거절복무여허의궤부재감은등,개소현유허의궤동주탐측방법,총결침대허의궤동주위협적사충방어사로,병분석미래적연구추세。
In cloud computing, in order to achieve resource sharing, virtual machines (VMs) of different tenants might be scheduled to run on the same physical machine, namely VMs co-residency, which would bring many new security issues. Therefore, security threats due to VMs co-residency, including resources interference, covert or side channel, denial of service and virtual machine load monitoring were reviewed in this paper. Besides, existing detection methods of co-residency were introduced, four kinds of defense about VMs co-residency were summarized and further trends were also pointed out.