发明名称 Security driver for hypervisors and operating systems of virtualized datacenters
摘要 A system and method for efficient security protocols in a virtualized datacenter environment are contemplated. In one embodiment, a system is provided comprising a hypervisor coupled to one or more protected virtual machines (VMs) and a security VM. Within a private communication channel, a split kernel loader provides an end-to-end communication between a paravirtualized security device driver, or symbiont, and the security VM. The symbiont monitors kernel-level activities of a corresponding guest OS, and conveys kernel-level metadata to the security VM via the private communication channel. Therefore, the well-known semantic gap problem is solved. The security VM is able to read all of the memory of a protected VM, detect locations of memory compromised by a malicious rootkit, and remediate any detected problems.
申请公布号 US8387046(B1) 申请公布日期 2013.02.26
申请号 US20090411628 申请日期 2009.03.26
申请人 SYMANTEC CORPORATION;MONTAGUE BRUCE;SAWHNEY SANJAY;CONOVER MATTHEW;CHIUEH TZI-CKER 发明人 MONTAGUE BRUCE;SAWHNEY SANJAY;CONOVER MATTHEW;CHIUEH TZI-CKER
分类号 G06F9/00 主分类号 G06F9/00
代理机构 代理人
主权项
地址