Font Size: a A A

Information Security Features Of The Virtual Machine System Research

Posted on:2011-08-27Degree:MasterType:Thesis
Country:ChinaCandidate:S Q WenFull Text:PDF
GTID:2208360308967313Subject:Software engineering
Abstract/Summary:PDF Full Text Request
The image file is widely used to store the data of virtual memory in the current technology of the virtual machine. Although the virtual machine is recognized to provide a good isolation which is the mainly guarantee for the security of the virtual machine system between the host and the custom OS, the image file stored in the host OS is actually insecurity. In this paper, the security problems which may threaten to the image file are discussed, and the effect of the whole virtual machine system are analyzed. Thereby, a research project is proposed to solve the security weakness of the image file and to promote the security of the whole virtual machine system.Based on the source code of the representative virtual machine-Virtualbox and the reference of the other virtual machine technology, a storage configuration of the image file and a process of the image file operated by the virtual machine system are obtained. Moreover, a full set of novel scheme of the security image file is proposed after the analysis of the defection of three programs, including the traditional encryption of the file, the transparent calculation system of the virtual machine, and the transparent encryption of the file, which are used to enhance the security of the image file in the virtual machine. The mainly idea of the scheme is that adopting a transparent encryption in the progress of the virtual machine system to solve the security weakness of the image file, thus enhancing the security of the virtual system. This scheme not only achieves the security level of the three programs, but also abandons their weakness completely. This scheme is realized in Virtualbox and tested by the I/O performance. In order to reduce the influence of the transparent encryption, a multi-thread technology is also used to improve the performance of this scheme. Being proved by the result of the compared test, the I/O performance of the virtual machine is improved .So the scheme can be used in the high-security-required area.Considering the difference between the demand of the security and the I/O performance in various application areas of virtual machine, the higher level of security is not necessary and the lower I/O performance is possible to be unacceptable. Thus this paper proposed two methods that using a lower level of system security to enhance the I/O performance. Therefore, we composed an integrated and valuable virtual machine security image file scheme that can be used in many field of application.
Keywords/Search Tags:virtual machine, security image file scheme, transparent encryption algorithm, I/O performance, multi-thread
PDF Full Text Request
Related items