Coordinated and Secure Server Consolidation Using Virtual Machines

نویسنده

  • Osamu Watanabe
چکیده

Server consolidation using virtual machines (VMs) can improve resource utilization by sharing physical resources. Each VM is isolated from the others for security and VMs can be easily migrated for load balancing. Since there are several VMs in a physical machine, the virtual machine monitor (VMM) multiplexes the physical resources among VMs according to system settings. The administrators determine the system settings and manage the VMs for suspension, resumption, or migration using a privileged VM called the management VM. In this situation, each VM is influenced from VMs coexisting in the same machine. For performance, processes in one VM can compete with processes in other VMs for CPUs because VMs share physical CPUs. For security, due to the privileges of the management VM, sensitive information in the VMs may leak via the management VM. If the attackers intrude in the management VM, they can easily steal sensitive information from the VM’s memory. To address these problems, this thesis proposes coordinated and secure server consolidation. Our VMM provides a system-wide process scheduler called the Monarch scheduler and a secure memory manager called VMCrypt. The design principle of these systems is reducing the functionalities implemented in the VMM. The Monarch scheduler uses the existing process schedulers in guest operating systems (OSes) as a part of it and changes the behaviors of the minimum number of processes. It mediates CPUs among processes in different VMs to achieve system-wide scheduling policies. To control the execution of processes, it suspends and resumes processes by using a technique called direct kernel object manipulation (DKOM). To hide the details of DKOM for various guest OSes, the Monarch scheduler provides a high-level API for writing scheduling policies. On the other hand, VMCrypt

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

A Survey on Techniques of Secure Live Migration of Virtual Machine

Live migration is an essential feature of virtualization that allows transfer of virtual machine from one physical server to another without interrupting the services running in virtual machine. Live migration facilitates workload balancing, fault tolerance, online system maintenance, consolidation of virtual machines etc. Unfortunately the disclosed vulnerabilities with the live migration pose...

متن کامل

Efficient Migration –A Leading Solution for Server Consolidation

Server consolidation of virtual machines is very much essential in a cloud environment for energy conservation and cost cutting . Consolidation can be achieved through live migration of virtual machines. We propose a modified bin packing algorithm for Server Consolidation that avoids unnecessary migrations and minimizes the instantiation of new physical servers. We implement ideas from the Firs...

متن کامل

SERVER CONSOLIDATION Perceived Performance and Virtual Operating Systems

Many businesses are using, or evaluating, virtual Operating Systems in their server centers. Whether used for server consolidation, redundancy, or flexibility, the benefits are too great to ignore. And yet little is known about the performance aspects of these virtual environments; even less is known about proper tuning for user experience. The majority of consolidation projects today are focus...

متن کامل

An Open Trusted Computing Architecture — Secure Virtual Machines Enabling User-Defined Policy Enforcement

Virtualization of computers enables a wide variety of applications ranging from server consolidation to secure sandboxing of malicious content. Today, lack of security of virtual machines is a major obstacle for broad adoption of virtual machine technology. We address this obstacle by an open architecture that adds scalable trusted computing concepts to a virtual machine infrastructure. The pla...

متن کامل

Maximum Migration Time Guarantees in Dynamic Server Consolidation for Virtualized Data Centers

Server consolidation is a vital mechanism in modern data centers in order to minimize expenses with infrastructure. In most cases, server consolidation may require migrating virtual machines between different physical servers. Although the downtime of live-migration is negligible, the amount of time to migrate all virtual machines can be substantial, delaying the completion of the consolidation...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2012