Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Virtualization for security
Scott Granneman, 2006-04-12

Sometimes we don't really see what our eyes are viewing. That's true with your computer screen, and it's true in nature as well. Oh sure, we can say what we think we're seeing, but we're missing the big story such as the man behind the curtain, to recall a famous phrase from an even more beloved movie.

Comments Mode:
Virtualization for security 2006-04-13
Anonymous (1 replies)
Re: Virtualization for security 2006-04-13
Anonymous (2 replies)
One addition on WindowsInVM 2006-04-13
Nicholas weaver
Virtualization for security 2006-04-13
Anonymous (1 replies)
Re: Virtualization for security 2006-04-15
Anonymous
VMs 2006-04-14
Joachim
Virtualization for security 2006-04-14
Bill (1 replies)
I've been thinking about virtualization for security for some time. However, my need is to be able to better secure domain controllers at remote locations. At the moment, DCs at a remote locations are vulnerable because there is insufficient physical security. If we could virtualize the DC and then restrict access to the virtual machine to domain admins only we securely deploy DCs (and other such infrastructure).

To do this the virtualizing software would need to support encryption of the virtual machine and some form of ACL restricting access (perhaps using certificates). The security would need to robust enough that even if the physical box is compromised the virtual machine is still protected.

Sure this wouldn't prevent someone doing a DOS - there's not much that can if they have physical access to the box. I can even live with the DC being destroyed. I just want to be sure that AD is secure.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/397/33499#33499
Virtualization for security 2006-04-15
Anonymous
Autostart Tutorial 2006-04-17
Joe (1 replies)
Re: Autostart Tutorial 2007-02-21
Anonymous
Virtualization for security 2006-04-17
Anonymous (1 replies)
Re: Virtualization for security 2006-05-02
Anonymous
Host OS? 2006-04-20
elh
Great in theory, but... 2007-10-18
Chris Buechler







 

Privacy Statement
Copyright 2007, SecurityFocus