Thin Hypervisor-Based Security Architectures for Embedded Platforms

Virtualization has grown increasingly popular, thanks to its benefits of isolation, management, and utilization, supported by hardware advances. It is also receiving attention for its potential to support security, through hypervisor-based services and advanced protections supplied to guests. Today,...

Full description

Bibliographic Details
Main Author: Douglas, Heradon
Format: Others
Language:English
Published: SICS 2010
Subjects:
Online Access:http://urn.kb.se/resolve?urn=urn:nbn:se:ri:diva-23667
id ndltd-UPSALLA1-oai-DiVA.org-ri-23667
record_format oai_dc
spelling ndltd-UPSALLA1-oai-DiVA.org-ri-236672020-12-02T05:27:51ZThin Hypervisor-Based Security Architectures for Embedded PlatformsengDouglas, HeradonSICSStockholm, Sweden2010Computer and Information SciencesData- och informationsvetenskapVirtualization has grown increasingly popular, thanks to its benefits of isolation, management, and utilization, supported by hardware advances. It is also receiving attention for its potential to support security, through hypervisor-based services and advanced protections supplied to guests. Today, virtualization is even making inroads in the embedded space, and embedded systems, with their security needs, have already started to benefit from virtualization’s security potential. In this thesis, we investigate the possibilities for thin hypervisor-based security on embedded platforms. In addition to significant background study, we present implementation of a low-footprint, thin hypervisor capable of providing security protections to a single FreeRTOS guest kernel on ARM. Backed by performance test results, our hypervisor provides security to a formerly unsecured kernel with minimal performance overhead, and represents a first step in a greater research effort into the security advantages and possibilities of embedded thin hypervisors. Our results show that thin hypervisors are both possible and beneficial even on limited embedded systems, and sets the stage for more advanced investigations, implementations, and security applications in the future. SVAMPStudent thesisinfo:eu-repo/semantics/bachelorThesistexthttp://urn.kb.se/resolve?urn=urn:nbn:se:ri:diva-23667application/pdfinfo:eu-repo/semantics/openAccess
collection NDLTD
language English
format Others
sources NDLTD
topic Computer and Information Sciences
Data- och informationsvetenskap
spellingShingle Computer and Information Sciences
Data- och informationsvetenskap
Douglas, Heradon
Thin Hypervisor-Based Security Architectures for Embedded Platforms
description Virtualization has grown increasingly popular, thanks to its benefits of isolation, management, and utilization, supported by hardware advances. It is also receiving attention for its potential to support security, through hypervisor-based services and advanced protections supplied to guests. Today, virtualization is even making inroads in the embedded space, and embedded systems, with their security needs, have already started to benefit from virtualization’s security potential. In this thesis, we investigate the possibilities for thin hypervisor-based security on embedded platforms. In addition to significant background study, we present implementation of a low-footprint, thin hypervisor capable of providing security protections to a single FreeRTOS guest kernel on ARM. Backed by performance test results, our hypervisor provides security to a formerly unsecured kernel with minimal performance overhead, and represents a first step in a greater research effort into the security advantages and possibilities of embedded thin hypervisors. Our results show that thin hypervisors are both possible and beneficial even on limited embedded systems, and sets the stage for more advanced investigations, implementations, and security applications in the future. === SVAMP
author Douglas, Heradon
author_facet Douglas, Heradon
author_sort Douglas, Heradon
title Thin Hypervisor-Based Security Architectures for Embedded Platforms
title_short Thin Hypervisor-Based Security Architectures for Embedded Platforms
title_full Thin Hypervisor-Based Security Architectures for Embedded Platforms
title_fullStr Thin Hypervisor-Based Security Architectures for Embedded Platforms
title_full_unstemmed Thin Hypervisor-Based Security Architectures for Embedded Platforms
title_sort thin hypervisor-based security architectures for embedded platforms
publisher SICS
publishDate 2010
url http://urn.kb.se/resolve?urn=urn:nbn:se:ri:diva-23667
work_keys_str_mv AT douglasheradon thinhypervisorbasedsecurityarchitecturesforembeddedplatforms
_version_ 1719363337310961664