Moving from logical sharing of guest OS to physical sharing of deduplication on virtual machine

  • Authors:
  • Kuniyasu Suzaki;Toshiki Yagi;Kengo Iijima;Nguyen Anh Quynh;Cyrille Artho;Yoshihito Watanebe

  • Affiliations:
  • National Institute of Advanced Industrial Science and Technology;National Institute of Advanced Industrial Science and Technology;National Institute of Advanced Industrial Science and Technology;National Institute of Advanced Industrial Science and Technology;National Institute of Advanced Industrial Science and Technology;Alpha Systems Inc.

  • Venue:
  • HotSec'10 Proceedings of the 5th USENIX conference on Hot topics in security
  • Year:
  • 2010

Quantified Score

Hi-index 0.00

Visualization

Abstract

Current OSes include many logical sharing techniques (shared library, symbolic link, etc.) on memory and storage. Unfortunately they cause security and management problems which come from the dynamic management of logical sharing; e.g., search path replacement attack, GOT (Global Offset Table) overwrite attack, Dependency Hell, etc. This paper proposes that self-contained binaries eliminate the problems caused by logical sharing. The memory and storage overheads caused by self-contained binaries are mitigated by physical sharing (memory and disk deduplication). The effect of deduplication was investigated on the KVM virtual machine with KSM (Kernel Samepage Merging) and LBCAS (Loopback Content Addressable Storage).