Security for the cloud infrastructure: Trusted virtual data center implementation

被引:36
作者
Berger, S. [1 ]
Caceres, R. [2 ]
Goldman, K. [3 ]
Pendarakis, D. [3 ]
Perez, R. [3 ]
Rao, J. R. [3 ]
Rom, E. [4 ]
Sailer, R. [1 ]
Schildhauer, W. [5 ]
Srinivasan, D. [5 ]
Tal, S. [4 ]
Valdez, E. [1 ]
机构
[1] Thomas J Watson Res Ctr, IBM Res Div, Hawthorne, NY 10532 USA
[2] AT&T Labs, Florham Pk, NJ 07932 USA
[3] IBM Corp, Thomas J Watson Res Ctr, IBM Res Div, Yorktown Hts, NY 10598 USA
[4] IBM Res Div, Haifa Res Labs, IL-31905 Haifa, Israel
[5] IBM Syst & Technol Grp, Res Triangle Pk, NC 27709 USA
关键词
D O I
10.1147/JRD.2009.5429060
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The trusted virtual data center (TVDc) is a technology developed to address the need for strong isolation and integrity guarantees in virtualized environments. In this paper, we extend previous work on the TVDc by implementing controlled access to networked storage based on security labels and by implementing management prototypes that demonstrate the enforcement of isolation constraints and integrity checking. In addition, we extend the management paradigm for the TVDc with a hierarchical administration model based on trusted virtual domains and describe the challenges for future research.
引用
收藏
页数:12
相关论文
共 29 条
[1]  
Anderson J. P., 1972, ESDTR7351 US AIR FOR, VI-II
[2]  
[Anonymous], 2005, P 1 IEEE WORKSH HOT
[3]  
[Anonymous], TRUST PLATF MOD TPM
[4]  
Berger Stefan, 2008, Operating Systems Review, V42, P40, DOI 10.1145/1341312.1341321
[5]  
Berger S, 2006, USENIX ASSOCIATION PROCEEDINGS OF THE 15TH USENIX SECURITY SYMPOSIUM, P305
[6]  
Boebert W.E., 1985, 8 NATL COMPUTER SECU, P18
[7]  
Bussani A., 2005, RC23792 IBM CORP
[8]  
Cabuk S, 2007, CCS'07: PROCEEDINGS OF THE 14TH ACM CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, P235
[9]  
Cambridge University UK, XEN VIRT MACH MON
[10]  
Department of Defense U.S. Government, 1985, 520028STD DOD US GOV