Defending against Co-residence Attack in Energy-Efficient Cloud: An Optimization based Real-time Secure VM Allocation Strategy

by   Lu Cao, et al.

Resource sharing among users serves as the foundation of cloud computing, which, however, may also cause vulnerabilities to diverse co-residence attacks launched by malicious virtual machines (VM) residing in the same physical server with the victim VMs. In this paper, we aim to defend against such co-residence attacks through a secure, workload-balanced, and energy-efficient VM allocation strategy. Specifically, we model the problem as an optimization problem by quantifying and minimizing three key factors: (1) the security risks, (2) the power consumption and (3) the unbalanced workloads among different physical servers. Furthermore, this work considers a realistic environmental setting by assuming a random number of VMs from different users arriving at random timings, which requires the optimization solution to be continuously evolving. As the optimization problem is NP-hard, we propose to first cluster VMs in time windows, and further adopt the Ant Colony Optimization (ACO) algorithm to identify the optimal allocation strategy for each time window. Comprehensive experimental results based on real world cloud traces validates the effectiveness of the proposed scheme.


page 1

page 2

page 3

page 4


A Secure and Multi-objective Virtual Machine Placement Framework for Cloud Data Centre

To facilitate cost-effective and elastic computing benefits to the cloud...

an intelligent security centered resource-efficient resource management model for cloud computing environments

This paper proposes a conceptual model for a secure and performance-effi...

A proactive autoscaling and energy-efficient VM allocation framework using online multi-resource neural network for cloud data center

This work proposes an energy-efficient resource provisioning and allocat...

Energy Efficient Algorithms based on VM Consolidation for Cloud Computing: Comparisons and Evaluations

Cloud Computing paradigm has revolutionized IT industry and be able to o...

Defending against Contagious Attacks on a Network with Resource Reallocation

In classic network security games, the defender distributes defending re...

Predict-and-Critic: Accelerated End-to-End Predictive Control for Cloud Computing through Reinforcement Learning

Cloud computing holds the promise of reduced costs through economies of ...

Please sign up or login with your details

Forgot password? Click here to reset