Analysing Flow Security Properties in Virtualised Computing Systems

04/11/2020
by   Chunyan Mu, et al.
0

This paper studies the problem of reasoning about flow security properties in virtualised computing networks with mobility from perspective of formal language. We propose a distributed process algebra CSP_4v with security labelled processes for the purpose of formal modelling of virtualised computing systems. Specifically, information leakage can come from observations on process executions, communications and from cache side channels in the virtualised environment. We describe a cache flow policy to identify such flows. A type system of the language is presented to enforce the flow policy and control the leakage introduced by observing behaviours of communicating processes and behaviours of virtual machine (VM) instances during accessing shared memory cache.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
07/03/2018

On the Incomparability of Cache Algorithms in Terms of Timing Leakage

Modern computer architectures rely on caches to reduce the latency gap b...
research
01/04/2019

Information flow in a distributed security setting

Information flow security is classically formulated in terms of the abse...
research
01/24/2018

An Algebraic Approach for Reasoning About Information Flow

This paper concerns the analysis of information leaks in security system...
research
02/02/2023

An Attack on The Speculative Vectorization: Leakage from Higher Dimensional Speculation

This paper argues and shows that speculative vectorization, where a loop...
research
09/29/2021

Seeds of SEED: A Side-Channel Resilient Cache Skewed by a Linear Function over a Galois Field

Consider a set-associative cache with p^n sets and p^n ways where p is p...
research
02/25/2018

Secure Serverless Computing Using Dynamic Information Flow Control

The rise of serverless computing provides an opportunity to rethink clou...
research
03/14/2021

Imperative process algebra with abstraction

This paper introduces an imperative process algebra based on ACP (Algebr...

Please sign up or login with your details

Forgot password? Click here to reset