Secure reincarnation of compromised servers using xen based time-forking virtual machines

Zahid Anwar, Roy H. Campbell

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

Mission-critical Telecom servers are being ported from their safe PSTN haven to the Internet to cator to the VoIP user base increasing failures due to greater susceptibility to attacks. Virtual Machines are becoming increasing popular for deploying servers because they allow check-pointing and live migration facilities. The challenges are dealing with non-virtual state elements, like ongoing network communications that can't be check-pointed, and recovering state changed between failure and the last checkpoint. Other complications include dependence on human intervention and precise timing so as not to revert to an unhealthy VM already in the state of compromise. This paper describes a Xen based middleware that pervasively detects terminated VM Servers and reincarnates them in a safe state such that they don't lose connectivity to their network clients. It also attempts to isolate messages that caused the failure and generates rules to disallow them from effecting the newly reincarnated VM in the future. Since it essentially allows a VM to start a new life from a point in time before it got compromised, we dubbed it: A Time-Forking Virtual machine (TFVM) following the Copenhagen school's "Many Worlds Theory" that postulates that every historical event forks a new universe for every possible outcome. Currently TFVM works in the context of our particular application but we discuss how to extend our model to allow reincarnation of generalized services.

Original languageEnglish (US)
Title of host publicationProceedings - Fifth Annual IEEE International Conference on Pervasive Computing and Communications Workshops, PerCom Workshops 2007
Pages477-482
Number of pages6
DOIs
StatePublished - 2007
Event5th Annual IEEE International Conference on Pervasive Computing and Communications Workshops, PerCom Workshops 2007 - White Plains, NY, United States
Duration: Mar 19 2007Mar 23 2007

Publication series

NameProceedings - Fifth Annual IEEE International Conference on Pervasive Computing and Communications Workshops, PerCom Workshops 2007

Other

Other5th Annual IEEE International Conference on Pervasive Computing and Communications Workshops, PerCom Workshops 2007
Country/TerritoryUnited States
CityWhite Plains, NY
Period3/19/073/23/07

ASJC Scopus subject areas

  • Computer Networks and Communications
  • Hardware and Architecture
  • Software

Fingerprint

Dive into the research topics of 'Secure reincarnation of compromised servers using xen based time-forking virtual machines'. Together they form a unique fingerprint.

Cite this