首页    期刊浏览 2024年07月08日 星期一
登录注册

文章基本信息

  • 标题:TrustOSV: Building Trustworthy Executing Environment with Commodity Hardware for a Safe Cloud
  • 本地全文:下载
  • 作者:Wang, Xiaoguang ; Qi, Yong ; Dai, Yuehua
  • 期刊名称:Journal of Computers
  • 印刷版ISSN:1796-203X
  • 出版年度:2014
  • 卷号:9
  • 期号:10
  • 页码:2303-2314
  • DOI:10.4304/jcp.9.10.2303-2314
  • 语种:English
  • 出版社:Academy Publisher
  • 摘要:The Infrastructure as a Service (IaaS) cloud computing model is widely used in current IT industry, providing the cloud users virtual machines as the executing environment. However, current executing environment the cloud provided is not trustworthy. For a user's executing environment faces threats from malicious cloud users who aim at attacking the underlying virtualization software (virtual machine monitor, VMM, or hypervisor). In this paper, we first make an analysis of the potential threats to a commodity hypervisor, and then propose architecture to build a more trustworthy executing environment for IaaS cloud. The main ideas of our architecture are: removing interaction between hypervisor and the exposed executing environment, enhancing platform data secrecy as well as providing feature rich environment attestation. To prove the effectiveness of our architecture, we build a prototype system, named TrustOSV, which can host multiple trustworthy isolated computing environments on multi-core x86 hardware. The final evaluation shows that TrustOSV can provide enhanced security guarantees to the exposed VMs at modest cost.
  • 关键词:Safe cloud computing;tiny-hypervisor;trustworthy executing environment
国家哲学社会科学文献中心版权所有