WEKO3
-
RootNode
アイテム
Design of Function for Tracing Diffusion of Classified Information for IPC on KVM
https://ipsj.ixsq.nii.ac.jp/records/174658
https://ipsj.ixsq.nii.ac.jp/records/174658916fdef2-2d2e-4382-b0e7-a804271bb528
名前 / ファイル | ライセンス | アクション |
---|---|---|
![]() |
Copyright (c) 2016 by the Information Processing Society of Japan
|
|
オープンアクセス |
Item type | Journal(1) | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
公開日 | 2016-09-15 | |||||||||||||
タイトル | ||||||||||||||
タイトル | Design of Function for Tracing Diffusion of Classified Information for IPC on KVM | |||||||||||||
タイトル | ||||||||||||||
言語 | en | |||||||||||||
タイトル | Design of Function for Tracing Diffusion of Classified Information for IPC on KVM | |||||||||||||
言語 | ||||||||||||||
言語 | eng | |||||||||||||
キーワード | ||||||||||||||
主題Scheme | Other | |||||||||||||
主題 | [特集:社会の変革に挑戦するセキュリティ技術とプライバシー保護技術(推薦論文)] information leakage prevention, inter-process communication, virtualization | |||||||||||||
資源タイプ | ||||||||||||||
資源タイプ識別子 | http://purl.org/coar/resource_type/c_6501 | |||||||||||||
資源タイプ | journal article | |||||||||||||
著者所属 | ||||||||||||||
Graduate School of Natural Science and Technology, Okayama University | ||||||||||||||
著者所属 | ||||||||||||||
Graduate School of Natural Science and Technology, Okayama University | ||||||||||||||
著者所属 | ||||||||||||||
Graduate School of Natural Science and Technology, Okayama University | ||||||||||||||
著者所属 | ||||||||||||||
Graduate School of Natural Science and Technology, Okayama University | ||||||||||||||
著者所属(英) | ||||||||||||||
en | ||||||||||||||
Graduate School of Natural Science and Technology, Okayama University | ||||||||||||||
著者所属(英) | ||||||||||||||
en | ||||||||||||||
Graduate School of Natural Science and Technology, Okayama University | ||||||||||||||
著者所属(英) | ||||||||||||||
en | ||||||||||||||
Graduate School of Natural Science and Technology, Okayama University | ||||||||||||||
著者所属(英) | ||||||||||||||
en | ||||||||||||||
Graduate School of Natural Science and Technology, Okayama University | ||||||||||||||
著者名 |
Shota, Fujii
× Shota, Fujii
× Masaya, Sato
× Toshihiro, Yamauchi
× Hideo, Taniguchi
|
|||||||||||||
著者名(英) |
Shota, Fujii
× Shota, Fujii
× Masaya, Sato
× Toshihiro, Yamauchi
× Hideo, Taniguchi
|
|||||||||||||
論文抄録 | ||||||||||||||
内容記述タイプ | Other | |||||||||||||
内容記述 | The leaking of information has increased in recent years. To address this problem, we previously proposed a function for tracing the diffusion of classified information in a guest OS using a virtual machine monitor (VMM). This function makes it possible to grasp the location of classified information and detect information leakage without modifying the source codes of the guest OS. The diffusion of classified information is caused by a file operation, child process creation, and inter-process communication (IPC). In a previous study, we implemented the proposed function for a file operation and child process creation excluding IPC using a kernel-based virtual machine (KVM). In this paper, we describe the design of the proposed function for IPC on a KVM without modifying the guest OS. The proposed function traces the local and remote IPCs inside the guest OS from the outside so as to trace the information diffusion. Because IPC with an outside computer might cause information leakage, tracing the IPCs enables the detection of such a leakage. We also report the evaluation results including the traceability and performance of the proposed function. ------------------------------ This is a preprint of an article intended for publication Journal of Information Processing(JIP). This preprint should not be cited. This article should be cited as: Journal of Information Processing Vol.24(2016) No.5 (online) DOI http://dx.doi.org/10.2197/ipsjjip.24.781 ------------------------------ |
|||||||||||||
論文抄録(英) | ||||||||||||||
内容記述タイプ | Other | |||||||||||||
内容記述 | The leaking of information has increased in recent years. To address this problem, we previously proposed a function for tracing the diffusion of classified information in a guest OS using a virtual machine monitor (VMM). This function makes it possible to grasp the location of classified information and detect information leakage without modifying the source codes of the guest OS. The diffusion of classified information is caused by a file operation, child process creation, and inter-process communication (IPC). In a previous study, we implemented the proposed function for a file operation and child process creation excluding IPC using a kernel-based virtual machine (KVM). In this paper, we describe the design of the proposed function for IPC on a KVM without modifying the guest OS. The proposed function traces the local and remote IPCs inside the guest OS from the outside so as to trace the information diffusion. Because IPC with an outside computer might cause information leakage, tracing the IPCs enables the detection of such a leakage. We also report the evaluation results including the traceability and performance of the proposed function. ------------------------------ This is a preprint of an article intended for publication Journal of Information Processing(JIP). This preprint should not be cited. This article should be cited as: Journal of Information Processing Vol.24(2016) No.5 (online) DOI http://dx.doi.org/10.2197/ipsjjip.24.781 ------------------------------ |
|||||||||||||
書誌レコードID | ||||||||||||||
収録物識別子タイプ | NCID | |||||||||||||
収録物識別子 | AN00116647 | |||||||||||||
書誌情報 |
情報処理学会論文誌 巻 57, 号 9, 発行日 2016-09-15 |
|||||||||||||
ISSN | ||||||||||||||
収録物識別子タイプ | ISSN | |||||||||||||
収録物識別子 | 1882-7764 |