Title
From virtualization security issues to cloud protection opportunities: An in-depth analysis of system virtualization models
Abstract
Virtualization methods and techniques play an important role in the development of cloud infrastructures and their services. They enable the decoupling of virtualized resources from the underlying hardware, and facilitate their sharing amongst multiple users. They contribute to the building of elaborated cloud services that are based on the instantiation and composition of these resources. Different models may support such a virtualization, including virtualization based on type-I and type-II hypervisors, OS-level virtualization, and unikernel virtualization. These virtualization models pose a large variety of security issues, but also offer new opportunities for the protection of cloud services. In this article, we describe and compare these virtualization models, in order to establish a reference architecture of cloud infrastructure. We then analyze the security issues related to these models from the reference architecture, by considering related vulnerabilities and attacks. Finally, we point out different recommendations with respect to the exploitation of these models for supporting cloud protection.
Year
DOI
Venue
2020
10.1016/j.cose.2020.101905
Computers & Security
Keywords
DocType
Volume
Security management,System virtualization,OS-Level virtualization,Cloud infrastructures,Unikernel
Journal
97
ISSN
Citations 
PageRank 
0167-4048
1
0.35
References 
Authors
0
4
Name
Order
Citations
PageRank
Maxime Compastié110.35
Remi Badonnel215422.43
Olivier Festor366585.40
Ruan He411.71