通信学报 ›› 2014, Vol. 35 ›› Issue (Z2): 94-105.doi: 10.3969/j.issn.1000-436x.2014.z2.013

• 学术论文 • 上一篇    下一篇

云计算环境下可信虚拟机管理模型

周振吉,吴礼发,洪征,赖海光,郑成辉   

  1. 解放军理工大学 指挥信息系统学院,江苏 南京210007
  • 出版日期:2014-11-25 发布日期:2017-06-19
  • 基金资助:
    江苏省自然科学基金资助项目;江苏省自然科学基金资助项目

Trusted virtual machine management model for cloud computing

Zhen-ji ZHOU,Li-fa WU,Zheng HONG,Hai-guang LAI,Cheng-hui ZHENG   

  1. Institute of Command Information System,PLA University of Science and Technology,Nanjing 210007,China
  • Online:2014-11-25 Published:2017-06-19
  • Supported by:
    The Natural Science Foundation of Jiangsu Province;The Natural Science Foundation of Jiangsu Province

摘要:

为了解决云计算环境下虚拟机管理存在的管理域特权过于集中和用户策略易被恶意篡改等问题,提出了一种可信虚拟机管理模型。模型首先对虚拟机管理域进行了细粒度的划分,赋予管理员和用户不同的管理特权,防止管理员随意访问用户的数据;利用可信计算技术建立可信通道分发用户策略,防止管理员恶意篡改用户策略。安全性分析与实验测试表明,该模型可以有效保护用户数据和用户策略的安全性。

关键词: 云计算, 可信计算, 虚拟机管理

Abstract:

For virtual machine in cloud computing,the authorization of manager domain is too centralized to be secure,and the strategies of tenants can be easily falsified.In view of the two problems,a trusted virtual machine management Model for cloud computing infrastructure is proposed.The model provides fine grained manager domain of virtual machine in which both managers and tenants are strictly constrained when they operate on other tenant domains.The sensitive code and data in tenant virtual machine cannot be accessed or falsified without permission.The model creates a trustable tunnel between tenant and system domain,and distributes tenant strategies using the tunnel in a secure way.Security analysis and experimental results show the model ensures the security of tenant data and tenant strategies effectively.

Key words: cloud computing, trusted computing, virtual machine management

No Suggested Reading articles found!