Optimized Memory Encryption for VMs Across Multiple Hosts

Recently, virtual machines (VMs) with a large amount of memory are widely used. It is often not easy to migrate such a large-memory VM because VM migration requires one large destination host. To address this issue, split migration divides the memory of a VM into small pieces and transfers them to m...

Full description

Main Authors: Horio, S., Takahashi, K., Kourai, K., Rahim, L.A.
Format: Article
Institution: Universiti Teknologi Petronas
Record Id / ISBN-0: utp-eprints.28844 /
Published: Springer Science and Business Media Deutschland GmbH 2022
Online Access: https://www.scopus.com/inward/record.uri?eid=2-s2.0-85113731740&doi=10.1007%2f978-3-030-84910-8_32&partnerID=40&md5=bd6babf964949ee53aae6edf7c4c2bfc
http://eprints.utp.edu.my/28844/
Tags: Add Tag
No Tags, Be the first to tag this record!
id utp-eprints.28844
recordtype eprints
spelling utp-eprints.288442022-03-17T02:36:56Z Optimized Memory Encryption for VMs Across Multiple Hosts Horio, S. Takahashi, K. Kourai, K. Rahim, L.A. Recently, virtual machines (VMs) with a large amount of memory are widely used. It is often not easy to migrate such a large-memory VM because VM migration requires one large destination host. To address this issue, split migration divides the memory of a VM into small pieces and transfers them to multiple destination hosts. The migrated VM exchanges its memory data between the hosts using remote paging. To prevent information leakage from the memory data in an untrusted environment, memory encryption can be used. However, encryption overhead largely affects the performance of the hosts and the VM. This paper proposes SEmigrate for optimizing the memory encryption in split migration and remote paging. SEmigrate avoids decrypting memory data at most of the destination hosts to reduce the overhead and completely prevent information leakage. Also, it selectively encrypts only the memory data containing sensitive information by analyzing the memory of the guest operating system in a VM. SEmigrate could reduce the CPU utilization during encrypted split migration by 6�20 point and improve the performance of the migrated VM with encrypted remote paging to 1.9 �. © 2022, The Author(s), under exclusive license to Springer Nature Switzerland AG. Springer Science and Business Media Deutschland GmbH 2022 Article NonPeerReviewed https://www.scopus.com/inward/record.uri?eid=2-s2.0-85113731740&doi=10.1007%2f978-3-030-84910-8_32&partnerID=40&md5=bd6babf964949ee53aae6edf7c4c2bfc Horio, S. and Takahashi, K. and Kourai, K. and Rahim, L.A. (2022) Optimized Memory Encryption for VMs Across Multiple Hosts. Lecture Notes in Networks and Systems, 312 . pp. 307-315. http://eprints.utp.edu.my/28844/
institution Universiti Teknologi Petronas
collection UTP Institutional Repository
description Recently, virtual machines (VMs) with a large amount of memory are widely used. It is often not easy to migrate such a large-memory VM because VM migration requires one large destination host. To address this issue, split migration divides the memory of a VM into small pieces and transfers them to multiple destination hosts. The migrated VM exchanges its memory data between the hosts using remote paging. To prevent information leakage from the memory data in an untrusted environment, memory encryption can be used. However, encryption overhead largely affects the performance of the hosts and the VM. This paper proposes SEmigrate for optimizing the memory encryption in split migration and remote paging. SEmigrate avoids decrypting memory data at most of the destination hosts to reduce the overhead and completely prevent information leakage. Also, it selectively encrypts only the memory data containing sensitive information by analyzing the memory of the guest operating system in a VM. SEmigrate could reduce the CPU utilization during encrypted split migration by 6�20 point and improve the performance of the migrated VM with encrypted remote paging to 1.9 �. © 2022, The Author(s), under exclusive license to Springer Nature Switzerland AG.
format Article
author Horio, S.
Takahashi, K.
Kourai, K.
Rahim, L.A.
spellingShingle Horio, S.
Takahashi, K.
Kourai, K.
Rahim, L.A.
Optimized Memory Encryption for VMs Across Multiple Hosts
author_sort Horio, S.
title Optimized Memory Encryption for VMs Across Multiple Hosts
title_short Optimized Memory Encryption for VMs Across Multiple Hosts
title_full Optimized Memory Encryption for VMs Across Multiple Hosts
title_fullStr Optimized Memory Encryption for VMs Across Multiple Hosts
title_full_unstemmed Optimized Memory Encryption for VMs Across Multiple Hosts
title_sort optimized memory encryption for vms across multiple hosts
publisher Springer Science and Business Media Deutschland GmbH
publishDate 2022
url https://www.scopus.com/inward/record.uri?eid=2-s2.0-85113731740&doi=10.1007%2f978-3-030-84910-8_32&partnerID=40&md5=bd6babf964949ee53aae6edf7c4c2bfc
http://eprints.utp.edu.my/28844/
_version_ 1741197159865253888
score 11.62408