Real security in virtual systems: A proposed model for a comprehensive approach to securing virtualized environments.
Corporate adoption of new server virtualization technologies offered by VMWare, Microsoft, the open source community (Xen) and others raises both new opportunities and new risks for system security. Security issues of virtualization have received some attention in trade periodicals and journals, but...
Saved in:
| Main Author: | |
|---|---|
| Other Authors: | , |
| Format: | article |
| Published: |
2008
|
| Online Access: | http://hdl.handle.net/10725/17619 https://doi.org/10.48009/2_iis_2008_385-395 http://libraries.lau.edu.lb/research/laur/terms-of-use/articles.php https://www.iacis.org/iis/iis_articles.php?volume=9&issue=2 |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
| Summary: | Corporate adoption of new server virtualization technologies offered by VMWare, Microsoft, the open source community (Xen) and others raises both new opportunities and new risks for system security. Security issues of virtualization have received some attention in trade periodicals and journals, but a comprehensive and authoritative understanding of virtualized system security under current models of information security has yet to be developed. Such an understanding requires that some fundamental questions be asked: What is the place of virtualized system components in security models as they are currently understood? How should the implementation of virtualization be expected to affect security planning under such models? Our paper presents a first attempt to address these questions. We present an integrated model of system security highlighting the effects of virtualization. We then use this model to analyze security impacts of virtualization within the overall system security context, and present suggestions for further research to formalize security in systems incorporating virtualization. |
|---|