CSpace  > 中国科学院计算技术研究所期刊论文  > 英文
Secure Outsourcing of Virtual Appliance
Xia, Yubin1; Liu, Yutao1; Guan, Haibing2; Chen, Yunji3; Chen, Tianshi3; Zang, Binyu1; Chen, Haibo1
2017-07-01
发表期刊IEEE TRANSACTIONS ON CLOUD COMPUTING
ISSN2168-7161
卷号5期号:3页码:390-404
摘要Computation outsourcing using virtual appliance is getting prevalent in cloud computing. However, with both hardware and software being controlled by potentially curious or even malicious cloud operators, it is no surprise to see frequent reports of security accidents, like data leakages or abuses. This paper proposes Kite, a hardware-software framework that guards the security of tenant's virtual machine (VM), in which the outsourced computation is encapsulated. Kite only trusts the processor and makes no security assumption on external memory, devices, or hypervisor. Unlike prior hardware-based approaches, Kite retains transparency with existing VM and requires few changes to the (untrusted) hypervisor by introducing VM-Shim mechanism. Each VM-Shim instance runs in between its VM and the hypervisor, which only transfers necessary information designated by the VM to the hypervisor and external environments. Kite also considers the high-level semantic of interaction between VM and hypervisor to defend against attacks through legitimate operations or interfaces. We have implemented a prototype of Kite's secure processor in a QEMU-based full-system emulator and its software components on real machine. Evaluation shows that the performance overhead of Kite ranges from 0.5-14.0 percent on simulated platform and 0.4-7.3 percent on real hardware.
关键词Computer architecture virtual machine secure processor cloud computing security computation outsourcing
DOI10.1109/TCC.2015.2469657
收录类别SCI
语种英语
资助项目National Natural Science Foundation of China[61303011] ; Ministry of Education of China[20130073120040] ; Ministry of Education of China[ZXZY037003] ; Shanghai Science and Technology Development Funds[12QA1401700] ; Shanghai Committee of Science and Technology Funds[14511100900] ; foundation for the Author of National Excellent Doctoral Dissertation of PR China[TS0220103006] ; Zhangjiang Hi-Tech program[201501-YP-B108-012] ; Singapore NRF (CREATE E2S2)
WOS研究方向Computer Science
WOS类目Computer Science, Information Systems ; Computer Science, Software Engineering ; Computer Science, Theory & Methods
WOS记录号WOS:000416650800003
出版者IEEE-INST ELECTRICAL ELECTRONICS ENGINEERS INC
引用统计
被引频次:3[WOS]   [WOS记录]     [WOS相关记录]
文献类型期刊论文
条目标识符http://119.78.100.204/handle/2XEOYT63/6415
专题中国科学院计算技术研究所期刊论文_英文
通讯作者Xia, Yubin
作者单位1.Shanghai Jiao Tong Univ, Inst Parallel & Distributed Syst, Shanghai, Peoples R China
2.Shanghai Jiao Tong Univ, Dept Comp Sci, Shanghai, Peoples R China
3.Chinese Acad Sci, Inst Comp Technol, Beijing, Peoples R China
推荐引用方式
GB/T 7714
Xia, Yubin,Liu, Yutao,Guan, Haibing,et al. Secure Outsourcing of Virtual Appliance[J]. IEEE TRANSACTIONS ON CLOUD COMPUTING,2017,5(3):390-404.
APA Xia, Yubin.,Liu, Yutao.,Guan, Haibing.,Chen, Yunji.,Chen, Tianshi.,...&Chen, Haibo.(2017).Secure Outsourcing of Virtual Appliance.IEEE TRANSACTIONS ON CLOUD COMPUTING,5(3),390-404.
MLA Xia, Yubin,et al."Secure Outsourcing of Virtual Appliance".IEEE TRANSACTIONS ON CLOUD COMPUTING 5.3(2017):390-404.
条目包含的文件
条目无相关文件。
个性服务
推荐该条目
保存到收藏夹
查看访问统计
导出为Endnote文件
谷歌学术
谷歌学术中相似的文章
[Xia, Yubin]的文章
[Liu, Yutao]的文章
[Guan, Haibing]的文章
百度学术
百度学术中相似的文章
[Xia, Yubin]的文章
[Liu, Yutao]的文章
[Guan, Haibing]的文章
必应学术
必应学术中相似的文章
[Xia, Yubin]的文章
[Liu, Yutao]的文章
[Guan, Haibing]的文章
相关权益政策
暂无数据
收藏/分享
所有评论 (0)
暂无评论
 

除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。