Dependable virtual platform and construction method thereof, data migration method among platforms

A virtual platform and virtualization platform technology, applied in data migration between platforms, trusted virtual platform and its construction field, can solve the problems of increased code volume in the management domain, difficult flexible deployment and rapid migration, increased possibility of being attacked, etc. , to achieve the effect of improving security, flexible operation and deployment mechanism, and rapid platform migration

Inactive Publication Date: 2013-06-05
INST OF SOFTWARE - CHINESE ACAD OF SCI
View PDF9 Cites 47 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0007] What the present invention aims to solve is the problem that the amount of management domain codes in the existing trusted virtual platform construction method continues to increase and the possibility of being attacked is increased due to excessive reliance on the management domain, and it is not easy to flexibly deploy and quickly migrate

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Dependable virtual platform and construction method thereof, data migration method among platforms
  • Dependable virtual platform and construction method thereof, data migration method among platforms
  • Dependable virtual platform and construction method thereof, data migration method among platforms

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0046] The method of the present invention is mainly realized by the following virtualization platform functional components: trusted service domain, management process, communication engine, migration engine and so on. see figure 1 , the user virtual machine of the virtualization platform uses the shared communication mechanism provided by the virtual machine monitor VMM to transmit data with the management domain dom0, and the trusted service domain is an independent lightweight functional domain, which uses the management domain to realize data forwarding. While ensuring its own security, it provides trusted services such as trust chain construction, data encapsulation storage, and remote certification for multiple user virtual machines.

[0047] 1. Trusted service domain

[0048] The trusted service domain is an independent functional domain on the virtualization platform, running a reduced microkernel system (MiniOS), which includes trusted service processing processes a...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a dependable virtual platform and a construction method thereof, a data migration method among platforms. The dependable virtual platform comprises a hardware security chip, a virtual machine monitor (VMM), an administrative domain, a user domain and a dependable serving domain (TSD), wherein an expanded trust chain is used by the TSD for users to establish dependable operating environment. The construction method includes: building the TSD; then establishing secure communication mechanisms between the managing domain and the TSD and between the managing domain and a domestic user domain; accomplishing calls of security application of the user domain to a dependable function by the user domain through interaction with the managing domain, accomplishing transmission and treatments of dependable orders by the managing domain through the interaction of the TSD; interacting a source platform migration engine and a goal platform migration engine; migrating migration data which is produced and based on the hardware security chip and the TSD to a goal platform, and recovering data on the goal platform, accomplishing quick migration of the TSD and a virtual machine. The dependable virtual platform and the construction method thereof, the data migration method among platforms are capable of improving safety of dependable service and providing flexible operation and deployment mechanisms for the platforms.

Description

technical field [0001] The invention relates to a trusted virtual platform and a construction method thereof, in particular to a trusted virtual platform based on a trusted service domain, a construction method thereof, and a data migration method between platforms, belonging to the technical field of information security. Background technique [0002] At present, the rapid development and application of cloud services based on virtualization technology has further promoted and used the virtualization platform, and its security issues have also become the focus of attention of users. In the new computing environment supported by virtualization technology (such as Infrastructure as a Service, facility as a service IaaS cloud), resources and services are provided in the form of virtual machines, and users lose control over their data and cannot use local resources like The same implementation of security management cannot ensure the reliability of its data and services. At th...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06H04L29/08
Inventor 常德显冯伟邵建雄杨波
Owner INST OF SOFTWARE - CHINESE ACAD OF SCI
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products