Title
SecMon: A Secure Introspection Framework for Hardware Virtualization
Abstract
With the fusion of cloud computing and virtualization technology, system security under virtualization becomes a key point in recent research. As a foundational technology to construct a secure system, virtual machine introspection receives more attention than ever. Almost all of the existing virtual machine monitors take the privileged virtual machine (Domain-0) as the monitoring machine, which ignore the threats brought by Domain-0 because of its huge code base of user-level tools. Besides, para-virtualized machines cannot provide the basic support for popular security applications of Windows operating system. This paper proposes a secure monitoring framework based on hardware virtualization. We use Windows operating system to build a monitoring virtual machine in hardware virtual machine domain, and set up monitoring mechanism in it. In addition, the security of the Windows monitoring machine itself is ensured all through its lifetime-bootstrap and runtime. The experiments show our secure monitoring system performs well in the secure monitoring process. The performance overhead it brings is considered to be acceptable.
Year
DOI
Venue
2013
10.1109/PDP.2013.48
PDP
Keywords
Field
DocType
windows operating system,virtualization,windows monitoring machine,paravirtualized machines,system security,existing virtual machine monitor,secure system,secure monitoring process,user interfaces,hardware virtual machine domain,privileged virtual machine,virtual machine monitoring,secure monitoring system,hardware virtualization-based secure monitoring framework,computerised monitoring,virtual machines,user-level tools,operating systems (computers),para-virtualized machine,secure introspection framework,computer bootstrapping,virtualisation,static metrics,monitoring machine,cloud computing,hardware virtualization,hardware virtual machine,domain-0,virtual machine introspection,secure monitoring framework,secmon
Virtualization,Microsoft Windows,Virtual machine,Computer science,Full virtualization,Application virtualization,Distributed computing,Hardware virtualization,Parallel computing,User interface,Operating system,Cloud computing,Embedded system
Conference
ISSN
ISBN
Citations 
1066-6192 E-ISBN : 978-0-7695-4939-2
978-0-7695-4939-2
2
PageRank 
References 
Authors
0.40
11
7
Name
Order
Citations
PageRank
Xiaolong Wu112818.86
Yunwei Gao2101.91
Xinhui Tian362.48
Ying Song416011.36
Bing Guo56421.04
Baiming Feng642.12
Yuzhong Sun725228.01