Trusted Virtual Domains - Design, Implementation and Lessons Learned

نویسندگان

  • Luigi Catuogno
  • Alexandra Dmitrienko
  • Konrad Eriksson
  • Dirk Kuhlmann
  • Gianluca Ramunno
  • Ahmad-Reza Sadeghi
  • Steffen Schulz
  • Matthias Schunter
  • Marcel Winandy
  • Jing Zhan
چکیده

A Trusted Virtual Domain (TVD) is a coalition of virtual machines and resources (e.g., network, storage) that are distributed over multiple physical platforms and share a common security policy. The concept of TVDs and their usage scenarios have been studied extensively. However, details on certain implementation aspects have not been explored in depth yet, such as secure policy deployment and integration of heterogeneous virtualization and trusted computing technologies. In this paper, we present implementation aspects of the life cycle management of TVDs. We describe the components and protocols necessary to realize the TVD design on a cross-platform architecture and present our prototype implementation for the Xen and L4 microkernel platforms. In particular, we discuss the need for and the realization of intra-TVD access control, a hypervisor abstraction layer for simplified TVD management, necessary components of a TVD policy and revocation issues. We believe that these integration details are essential and helpful inputs for any large-scale real-world deployment of TVD.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Comparing Java and .NET security: Lessons learned and missed

Many systems execute untrusted programs in virtual machines (VMs) to mediate their access to system resources. Sun introduced the Java VM in 1995, primarily intended as a lightweight platform for executing untrusted code inside web pages. More recently, Microsoft developed the .NET platform with similar goals. Both platforms share many design and implementation properties, but there are key dif...

متن کامل

Using virtual worlds as collaborative environments for innovation and design Lessons learned and observations from case studies in architectural projects

In this paper we discuss observations and lessons learned in conducting architectural design projects in virtual worlds. By integrating a community of users in virtual worlds into a collaborative architectural design process, organisations can tap the community’s creativity and intelligence through immersive technology. The paper provides an overview of the latest advances of information and co...

متن کامل

Trusted Privacy Domains - Challenges for Trusted Computing in Privacy-Protecting Information Sharing

With the growing use of the Internet, users need to reveal an increasing amount of private information when accessing online services, and, with growing integration, this information is shared among services. Although progress was achieved in acknowledging the need to design privacy-friendly systems and protocols, there are still no satisfactory technical privacy-protecting solutions that relia...

متن کامل

Cognitive Systems Engineering and GIScience: Lessons learned from a work domain analysis for the design of a collaborative, multimodal emergency management GIS

This research presents an overview of the implementation strategies, results, and lessons learned from an onsite Work Domain Analysis for the design of a multimodal emergency management GIS for hurricane response. An overview of the onsite visits including details of the knowledge elicitation techniques used (e.g. critical incident analysis, concept mapping, and design storyboarding [19],[12]) ...

متن کامل

Psychosocial Rehabilitation: Some Lessons Learned From Natural Disaster in Iran

Background: Disasters have adverse impacts on different aspects of human life. Psychosocial Rehabilitation is one of the fields which is usually overshadowed and ignored by physical rehabilitation or its importance does not receive proper attention. This research attempts to study some lessons learned from Psychosocial Rehabilitation based on disaster experiences in Iran. M...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2009