通信学报 ›› 2015, Vol. 36 ›› Issue (9): 169-180.doi: 10.11959/j.issn.1000-436x.2015210

• 学术论文 • 上一篇    下一篇

基于邻接点的VMM动态完整性度量方法

吴涛1,2,3,杨秋松1,2,贺也平1,2   

  1. 1 中国科学院 软件研究所 基础软件国家工程研究中心,北京 100190
    2 中国科学院 软件研究所 计算机科学国家重点实验室,北京 100190
    3 中国科学院大学,北京 100049
  • 出版日期:2015-09-25 发布日期:2017-09-15
  • 基金资助:
    国家科技重大专项核高基金资助项目;国家自然科学青年基金资助项目

Method of dynamic integrity measurement for VMM based on adjacency data

Tao WU1,2,3,Qiu-song YANG1,2,Ye-ping HE1,2   

  1. 1 NFS,Institute of Software,Chinese Academy of Sciences,Beijing 100190,China
    2 State Key Laboratory of Computer Science,Institute of Software,Chinese Academy of Sciences,Beijing 100190,China
    3 University of Chinese Academy of Sciences,Beijing 100049,China
  • Online:2015-09-25 Published:2017-09-15
  • Supported by:
    The National Science and Technology Major Project;The Youth Project of the National Natural Science Foundation of China

摘要:

对于虚拟机监控器的动态完整性度量,由于其位于特权层,且复杂多变,一直是领域内的研究难点。提出了一种基于邻接点的动态完整性度量方法,利用邻接点作为度量模块的宿主,通过面向内存页的完整性模型和评估算法,实现了动态完整性度量。实验表明,能够准确地检测到完整性受到破坏,且仅对计算密集型任务造成适中的性能损耗。

关键词: 虚拟机监控器, 完整性, 动态度量, 邻接点, 度量环

Abstract:

Due to its high privilege and complicated runtime memory,dynamic integrity measurement for VMM (virtual machine monitor) was always a great difficulty in the current study.An innovative method based on the adjacency data was proposed,which used a neighbor as the host of a measurement module.According to an integrity model in memory page granularity and a new improved measurement algorithm,dynamic integrity measurement for VMM was imple-mented.Experimental data shows it could detect the integrity broken accurately,only causing a moderate performance loss for computing intensive tasks.

Key words: VMM, integrity, dynamic measurement, adjacency data, ring of measurement

No Suggested Reading articles found!