Главная
Study mode:
on
1
Google Cloud
2
Disclaimer
3
Background
4
Threat Model
5
Protect the guest kernel at runtime
6
Why hypervisor as another security layer?
7
Overall Plan - Boot Time: Guest
8
Overall Plan - Boot Time: Hypervisor
9
Overall Plan - Run Time
10
Performance Impact
11
Technical challenges
12
Example
13
Changes needed for KVM/QEMU
14
For the Future
15
Other security considerations
16
Summary
Description:
Explore a comprehensive conference talk on protecting guest kernels in cloud environments using hypervisor-based integrity. Delve into Google's approach to enhancing cloud security, covering topics such as threat modeling, runtime protection, and the role of hypervisors as an additional security layer. Learn about the overall plan for both boot time and runtime security, performance impacts, technical challenges, and necessary changes for KVM/QEMU implementation. Gain insights into future developments and other security considerations in this informative presentation by Ning Yang and Forrest Yuan Yu from Google.

Hypervisor-Based Integrity: Protecting Guest Kernels in Cloud Environments

Linux Foundation
Add to list
0:00 / 0:00