Cross-VM covert channel risk assessment for cloud computing: An automated capacity profiler

Rui Zhang, Wen Qi, Jianping Wang

Research output: Chapters, Conference Papers, Creative and Literary WorksRGC 32 - Refereed conference paper (with host publication)peer-review

2 Citations (Scopus)

Abstract

Cross-VM covert channels leverage physical resources shared between co-resident virtual machines, like CPU cache, memory bus, and disk bus, to leak information. The capacity of cross-VM covert channels varies on different cloud platforms. Thus, it is hard for cloud service providers to estimate the risk of information leakage caused by cross-VM covert channels on their own platforms. In this paper, we develop an Auto Profiling Framework of Covert Channel Capacity (APFC3) to automatically profile the maximum capacities of various cross-VM covert channels on different cloud platforms. The framework consists of automated parameter tuning for various cross-VM covert channels to achieve high data rate and automated capacity estimation of those cross-VM covert channels. We evaluate the proposed framework by constructing fine-tuned cross-VM covert channels on different virtualization platforms and comparing the optimized achievable data rate with the estimated maximum capacity computed using the proposed framework. The experiments show that in most cases, the capacity estimated using APFC3 is very close to the achieved data rate of constructed covert channels with fine-tuned parameters.
Original languageEnglish
Title of host publicationProceedings - International Conference on Network Protocols, ICNP
PublisherIEEE Computer Society
Pages25-36
ISBN (Print)9781479962044
DOIs
Publication statusPublished - 9 Dec 2014
Event22nd IEEE International Conference on Network Protocols, ICNP 2014 - Research Triangle, United States
Duration: 21 Oct 201424 Oct 2014

Publication series

Name
ISSN (Print)1092-1648

Conference

Conference22nd IEEE International Conference on Network Protocols, ICNP 2014
PlaceUnited States
CityResearch Triangle
Period21/10/1424/10/14

Research Keywords

  • Capacity estimation
  • Cross-VM covert channel
  • Shannon entropy

Fingerprint

Dive into the research topics of 'Cross-VM covert channel risk assessment for cloud computing: An automated capacity profiler'. Together they form a unique fingerprint.

Cite this