Securely Launching Virtual Machines on Trustworthy Platforms in a Public Cloud

Aslam, Mudassar and Gehrmann, Christian and Rasmusson, Lars and Björkman, Mats (2012) Securely Launching Virtual Machines on Trustworthy Platforms in a Public Cloud. In: International Conference on Cloud Computing and Services Science, CLOSER 2012, 18 - 21 April 2012, Porto, Portugal. (In Press)

PDF - Published Version


In this paper we consider the Infrastructure-as-a-Service (IaaS) cloud model which allows cloud users to run their own virtual machines (VMs) on available cloud computing resources. IaaS gives enterprises the possibility to outsource their process workloads with minimal effort and expense. However, one major problem with existing approaches of cloud leasing, is that the users can only get contractual guarantees regarding the integrity of the offered platforms. The fact that the IaaS user himself or herself cannot verify the provider promised cloud platform integrity, is a security risk which threatens to prevent the IaaS business in general. In this paper we address this issue and propose a novel secure VM launch protocol using Trusted Computing techniques. This protocol allows the cloud IaaS users to securely bind the VM to a trusted computer configuration such that the clear text VM only will run on a platform that has been booted into a trustworthy state. This capability builds user confidence and can serve as an important enabler for creating trust in public clouds. We evaluate the feasibility of our proposed protocol via a full scale system implementation and perform a system security analysis.

Item Type:Conference or Workshop Item (Paper)
ID Code:5205
Deposited By:Mudassar Aslam
Deposited On:06 Mar 2012 10:58
Last Modified:17 Jan 2013 11:17

Repository Staff Only: item control page