Magnetic disc file operation monitoring system and monitoring method based on Xen hardware virtualization

A hardware virtualization and disk file technology, applied in hardware monitoring and other directions, can solve problems such as inability to monitor disk operations and file operations in real time, lack of log information, etc., to enhance monitoring functions and practicability, reduce performance loss, Overcome the effect of not being able to monitor file operations in real time

Inactive Publication Date: 2013-11-20
XIDIAN UNIV
View PDF3 Cites 34 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

These typical monitoring technologies or monitoring tools have the following shortcomings: the implementation and deployment of File-system integrity tools depends on intrusion detection tools, and the fact that the database of intrusion detection tools must be updated regularly makes real-time monitoring impossible. Ability to monitor disk operations and file operations in real time, and lacks necessary log information
Existing monitoring technologies cannot meet the above requirements at the same time

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Magnetic disc file operation monitoring system and monitoring method based on Xen hardware virtualization
  • Magnetic disc file operation monitoring system and monitoring method based on Xen hardware virtualization
  • Magnetic disc file operation monitoring system and monitoring method based on Xen hardware virtualization

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0056] The present invention will be further described below in conjunction with the accompanying drawings.

[0057] 1. Overall structure design

[0058] The disk file operation monitoring system based on Xen hardware virtualization consists of four basic modules: monitoring module, information sending module, monitoring module and security module.

[0059] Realize the disk file operation monitoring of full virtual Linux, the deployment position of the monitoring module determines the quality of the whole system. Deploy the monitoring module in domO, you can monitor the disk operation through Xen’s block device front-end driver, Xenbus and event channel. To operate the front-end driver and event channel, you need to call a hypercall, and each hypercall will cause a switch from ring3 to ring0. Frequent switching will increase the cost of system overhead; on the other hand, since the monitoring is implemented through the front and back ends of the block device, file operations ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

Provided is a magnetic disc file operation monitoring system based on Xen hardware full virtualization. The magnetic disc file operation monitoring system comprises a supervision module, an information sending module, a monitoring module and a safety module. The supervision module obtains behavior information through interception of magnetic disc file operations of a full-virtualization user operation system so as to achieve the purpose of supervision. The information sending module and the monitoring module enable the behavior information to be transmitted from a domU to a domO. The safety module guarantees operation safety of the information sending module and the monitoring module. The invention provides a monitoring method which includes the steps of intercepting and replacing call of the magnetic disc file operation system in full virtualization, determining types of monitored files, determining whether the files need to be monitored in the operation process, comprehensively determining whether a behavior needs to be monitored according to operation types, the file types and process information, obtaining the behavior information, obtaining an operation target absolute path, sending information, performing information monitoring, and detecting whether the supervision module and the information sending module are attacked when codes are operated, wherein the supervision module and the information sending module are operated under the domU. According to the magnetic disc file operation monitoring system and the monitoring method based on Xen hardware virtualization, real-time monitoring is achieved, and I/O efficiency of an Xen full-virtualization network is improved.

Description

technical field [0001] The invention relates to the technical field of computer virtualization, and further relates to the field related to the Linux kernel and the field of system security. The present invention can be used on the Xen hardware virtualization platform that client operating system is the operating system of Linux or Unix class, realizes the real-time monitoring to the disk file operation of hardware virtualization client operating system in domO, for running on the virtualization platform The disk files of the operating system and the entire virtualization platform provide security. Background technique [0002] In the computer world, "virtualization" is everywhere. Xen is an open source virtual machine project initiated by Cambridge University professor Ian Pratt. Due to its superior performance and open source, it is widely favored by the industry and is considered to be one of the most promising virtualization solutions in the future. The security issues...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F11/34
Inventor 王照羽杨超马建峰黄为张驰侯琬婷
Owner XIDIAN UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products