摘要
云计算是一种新兴的计算、存储资源使用模式,由于具备低成本、高效率等优点,得到了业界的广泛应用,但安全性仍然是云计算推广最大的障碍之一。虚拟化作为云计算的关键技术,其安全水平直接影响云环境的安全性,目前对云计算虚拟环境多采用传统的覆盖式验证方法,无法彻底解决正确性问题。文中通过结合形式化方法中的模型检测技术,经过配置采集、需求分析和性质检测3个阶段对虚拟化安全性质进行高覆盖率验证,提供了一种对云计算环境进行安全评估的可行思路。
Cloud computing is an emerging utilization mode for computation and storage resources, and receives wide application in IT fields for its low cost and high efficiency. However, as a key component of cloud computing, the security of virtualization directly affects the security performance of cloud computing. Currently the most frequently-used method for verification of cloud virtual environment is traditionally coverage-based and could not ensure the correctness in theory. By combining model checking technique in formal methods with cloud computing, three steps of configuration gathering, requirement analysis and property verification are performed, thus to complete the highly-covered verification of the virtualization security. Simulation on the virtual environment indicates that this method is feasible and applicable.
出处
《信息安全与通信保密》
2012年第4期64-66,共3页
Information Security and Communications Privacy
基金
保密通信重点实验室基金资助项目(编号:9140C1104011003)
关键词
云计算
虚拟化
形式化方法
模型检测
安全验证技术
cloud computing
virtualization
formal methods
model checking
security verification