Linux - Open Source White Papers

Building a MAC-Based Security Architecture for the Xen Open-Source Hypervisor

Overview This paper presents the sHype hypervisor security architecture and examines in detail its mandatory access control facilities. While existing hypervisor security approaches aiming at high assurance have been proven useful for high-security environments that prioritize security over performance and code reuse, the approach aims at commercial security where near-zero performance overhead, non-intrusive implementation, and usability are of paramount importance. sHype enforces strong isolation at the granularity of a virtual machine, thus providing a robust foundation on which higher software layers can enact finer-grained controls. The paper provides the rationale behind the sHype design and describes and evaluates the implementation for the Xen open-source hypervisor.

Further White Paper Details
PublisherIBM File FormatPDF
Date PublishedOctober 2005
FormatWhite Papers   
Topics
  • Featured White Papers
Thin clients switch on digitally excluded

Thin clients switch on digitally excluded

Case study: Digital inclusion project tackles social exclusion in Liverpool more

Renault goes multilingual

Renault goes multilingual

Case study: Translation tech turns docs into 23 languages… more


Quick Sitemap Links: