SGER: Prototyping Application-Specific Kernel Virtual Machines for Networking
SGER: Prototyping Application-Specific Kernel Virtual Machines for Networking
批准号:
0504159
负责人:
Matthew Blaze
金额:
$0.0万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2005
资助国家:
美国
项目状态:
已结题
起止时间:
2005-08-15 至 2007-01-31
中文摘要
在网络研究中对综合服务的渴望常常导致某些专门应用的服务提供严重不足。虽然应用程序可以直接用额外的代码进行补偿,但是在具有严格接口(例如,操作系统)的受保护地址空间中放置许多必要的资源可能会使有效的补偿变得困难(如果不是不可能的话)。这里提出的实验研究,在多个受限虚拟机(MrVM)中,采用了一种高风险但潜在的非常有前途的方法来解决这个问题。基本概念是构造一个特定于应用程序的虚拟机服务的补充,以嵌入到传统的操作系统中。通过这种方式,可以满足特定于应用程序的需求,同时对MrVM解释的限制将应用程序彼此隔离,也将应用程序与共享服务隔离。
英文摘要
The desire for integrated services in networking research often results in significant shortfalls in service provision for some specialized applications. While the applications may be able to directly compensate with additional code, the placement of many necessary resources in protected address spaces with rigid interfaces (e.g., the operating system) may make effective compensation difficult if not impossible in practice. The experimental research proposed here, in Multiple restricted Virtual Machines (MrVM), takes a high-risk but potentially very promising approach to addressing this problem. The basic notion is to construct an application-specific complement of virtual machine services to embed into a conventional operating system. In this way, the application-specific requirements can be met, while the restrictions placed on MrVM interpretation insulate applications from each other and from the shared services.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
TC: Medium: Collaborative Research: Security Services in Open Telecommunications Networks
-
批准号:0905434
-
项目类别:Standard Grant
-
资助金额:$36.0万
-
财政年份:2009
-
负责人:Matthew Blaze
-
依托单位:
CT-ISG: Isotropic Cryptography
-
批准号:0627579
-
项目类别:Standard Grant
-
资助金额:$0.0万
-
财政年份:2006
-
负责人:Matthew Blaze
-
依托单位:
CT-ISG: Trustworthy Network Eavesdropping and Countermeasures (TNEC)
-
批准号:0524047
-
项目类别:Standard Grant
-
资助金额:$0.0万
-
财政年份:2005
-
负责人:Matthew Blaze
-
依托单位:
海外基金