Journal of University of Science and Technology of China ›› 2011, Vol. 41 ›› Issue (10): 907-914.DOI: 10.3969/j.issn.0253-2778.2011.10.011

Previous Articles     Next Articles

Research of security technology based on virtualization

LAI Yingxu   

  1. College of Computer Science, Beijing University of Technology, Beijing 100124, China
  • Received:2011-04-28 Revised:2011-06-27 Online:2011-10-31 Published:2011-10-31

Abstract: A universal architecture based on Xen was presented, which had traditional security tools transplanted on it and in the meantime guarantees their functions, such as memory and file system scanning, and active defense. Since most components of the security tools are transplanted out of a protected virtual machine, the architecture provides higher security than traditional ones. Whats more, it uses paravirtuliation I/O technology to minimize the cost of the virtual machines. Finally, this architecture allows current security technologies based on virtual machines to be integrated into itself conveniently, with no need for the operation system and application running on it to be modified.

Key words: virtual machine, isolated execution, memory protection, VM introspection, paravirtualization