...
首页> 外文期刊>International Journal of Computer Systems Science & Engineering >HyperMonitor: a lightweight multi-platform monitor based on hardware virtualization
【24h】

HyperMonitor: a lightweight multi-platform monitor based on hardware virtualization

机译:HyperMonitor:基于硬件虚拟化的轻量级多平台监视器

获取原文
获取原文并翻译 | 示例
           

摘要

This paper presents the implementation and simulation benchmark of HyperMonitor, a lightweight multi-platform monitor based on hardware virtualization which allows a high-privileged and transparent execution environment to monitor various behaviors in operating systems. Taking advantage of X86 hardware virtualization and self-transparency technology, HyperMonitor provides a unified security monitoring to multiple operating systems including Linux and Windows XP without any modification. Our design is to establish a lightweight monitor which resides completely outside of the guest OS environments with a negligible overhead to the protected Operating Systems. According to the performance experiment result, our approach can effectively monitor applications and unmodified Operating Systems by the cost of only 0.9% average overhead in Windows XP and 2.6% average overhead in Linux. Leveraging hardware virtualization, a tool based on HyperMonitor detects debugging behavior by intercepting debug events on a higher privilege level than the conventional kernel space. In order to study the trend of overhead and achieve a better prediction of experimental results, we use the simulation benchmark to compare the difference between the actual results and the experimental fitting data with the help of least squares model.
机译:本文介绍了HyperMonitor的实现和仿真基准,HyperMonitor是基于硬件虚拟化的轻量级多平台监视器,它允许高特权和透明的执行环境监视操作系统中的各种行为。利用X86硬件虚拟化和自透明技术,HyperMonitor无需更改即可对包括Linux和Windows XP在内的多个操作系统提供统一的安全监控。我们的设计是建立一个轻量级的监视器,该监视器完全位于来宾OS环境之外,而受保护的操作系统的开销却可以忽略不计。根据性能实验结果,我们的方法可以有效监视应用程序和未修改的操作系统,而Windows XP的平均开销仅为Linux的0.9%,Linux的平均开销仅为2.6%。利用硬件虚拟化,基于HyperMonitor的工具可以通过以比常规内核空间更高的特权级别拦截调试事件来检测调试行为。为了研究开销的趋势并更好地预测实验结果,我们使用模拟基准比较最小二乘模型来比较实际结果与实验拟合数据之间的差异。

著录项

  • 来源
  • 作者

    Jing Xiao; Min Zhu;

  • 作者单位

    School of Electronic Information and Electrical Engineering Shanghai Jiao Tong University, Shanghai 200240,China;

    School of Electronic Information and Electrical Engineering Shanghai Jiao Tong University, Shanghai 200240,China;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号