Virtual machine static measurement method and device based on built-in security architecture

A technology of security measurement and security system, applied in the direction of program control device, software simulation/interpretation/simulation, program control design, etc., to achieve the effect of ensuring security, solving tampering, and enhancing security

Active Publication Date: 2020-09-08
INST OF INFORMATION ENG CHINESE ACAD OF SCI
View PDF3 Cites 9 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

In addition, there are also requirements for high-security storage of measurement information, which poses new challenges to the static measurement of virtual machines

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Virtual machine static measurement method and device based on built-in security architecture

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0033] The following will clearly and completely describe the technical solutions in the embodiments of the present invention with reference to the drawings in the embodiments of the present invention. It should be understood that the described embodiments are only a part of the present invention, but not all embodiments. Based on the embodiments of the present invention, all other embodiments obtained by those skilled in the art without making creative efforts belong to the protection scope of the present invention.

[0034] A specific example of implementing the present invention is as follows, a method for static measurement of a virtual machine based on a built-in security architecture, the steps of which include:

[0035] 1) During the startup process of the physical host, the security independent device measures the security of the host system and virtualization software to ensure the trustworthiness of the host system / virtualization software;

[0036] 2) The host syste...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to a virtual machine static measurement method and device based on a built-in safe architecture. The method comprises the steps of in the starting process of a physical host, enabling safe independent equipment to carry out safety measurement on a host machine system and virtualization software to ensure credibility of the host machine system and the virtualization software;enabling the host machine system and the virtualization software to determine a to-be-measured virtual machine core file; analyzing the virtual machine mirror image file, extracting the content of theto-be-measured virtual machine core file, performing security measurement on the content, and generating a measurement value; if judging that the virtual machine is started for the first time, indicating that the metric value serves as a reference value to be stored in the safe independent equipment, and the virtual machine is started; and if judging that the virtual machine is not started for the first time, verifying the metric value and a reference value in the safe independent equipment, cancelling starting of the virtual machine if verification fails, and starting the virtual machine ifverification succeeds. According to the invention, the extension of the static measurement mechanism of the virtual machine to the virtual machine can be realized, and the security of the virtual machine is enhanced.

Description

technical field [0001] The invention relates to the field of trusted computing, in particular to a method and device for static measurement of a virtual machine based on a security priority architecture. Background technique [0002] With the rapid development of informatization, cloud computing has gradually attracted people's attention, and more and more enterprises have deployed their production environments on cloud platforms. Cloud computing, a paid service model, allows enterprises to invest only with relatively low monthly fees, without the need for a one-time investment, and without taking up too much working capital, thereby alleviating the pressure of insufficient funds for enterprises; without considering cost depreciation issues, and Can obtain the latest hardware platform and the best solution in time. With the increase of users on the cloud, the security of the cloud platform has gradually become the focus of attention. In cloud computing, the security of clo...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F9/455
CPCG06F9/45558G06F2009/45587G06F2009/45591
Inventor 张伟娟贾晓启武希耀孙慧琪杜海超黄庆佳唐静白璐周梦婷赵崇明解亚敏孟丹
Owner INST OF INFORMATION ENG CHINESE ACAD OF SCI
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products