Is Microsoft working on a VMsafe-like framework?

Posted by virtualization.info Staff   |   Tuesday, May 27th, 2008   |  

The upcoming set of VMware APIs known as VMsafe has the potential to dramatically change the way we secure data centers today.

If the technology will be widely adopted by security vendors it’s clear that VMware competitors will try to replicate the approach or further innovate it. But until a clear, positive answer from the market, the most obvious strategy is to raise some (absolutely legit) security concerns about VMsafe and its capability to expose part of the hypervisor for new attacks.

So far Microsoft didn’t took an official position about the topic but virtualization.info had the opportunity to speak with several representatives who clearly stated how carefully the company is evaluating the security implications of a VMsafe-like approach.
Nonetheless Microsoft may be working to build the internal know-how needed to achieve the task.

Just two months ago in fact Microsoft acquired a small security firm focused on rootkit detection called Komoku.
As Christopher Hoff, Chief Security Architect at Unisys, recently discovered, Komoku did some research in the past, presenting a solution for Xen where virtual machines can do self-diagnosis and self-healing as well as learning to protect against subsequent attacks.

komoku

As a sort of irony, to develop its prototype Komoku took some inspiration from the work of Tal Garfienkel and Mendel Rosenblum (Chief Scientist at VMware), presented in 2002.

The adoption of a VMsafe-like framework could greatly benefit Microsoft: while VMware has to rely on 3rd parties (unless they want to leverage the Determina acquisition in a certain way), Microsoft has an entire portfolio of products to integrate with its upcoming hypervisor.

This may put the Redmond company in a privileged position against both virtualization and security competitors which miss each other to provide an out-of-the-box secure virtual data center.


Labels:

blog comments powered by Disqus


virtualization.info Newest articles
Release: Dell Foglight for Virtualization, free edition 6.5.2

May 21st, 2013

Dell today announced the release of version 6.5.2 of Foglight for Virtualization, free edition. Foglight for Virtualization was known as vOPS Server Explorer, for which virtualization.info covered the release of…

VMware announces more information about vCloud Hybrid Services

May 21st, 2013

In March this year cloudcomputing.info reported that VMware was set to announce the vCloud Hybrid Service. vCloud Hybrid Service provides Infrastructure as a Service (IaaS) from the cloud providing a…

Release: VMTurbo Virtual Health Monitor

May 17th, 2013

On May 14, VMTurbo announced the availability of its free product, a Virtual Health Monitor tool, a monitoring and reporting tool which is an evolution of the community edition of its…

MadeiraCloud raises $1.5M in Series A funding

May 14th, 2013

From China a new wind of changes came to stay, Beijing-based cloud startup focusing on “IDE” for Amazon Web Services MadeiraCloud developer of a graphical monitoring and management product,…

Amazon releases Management Pack for Microsoft System Center 2012 Operations Manager

May 14th, 2013

Amazon last week released a management pack for use with System Center 2012 Operations Manager (OpsMgr). By importing the management pack into OpsMgr, customers can monitor their EC2 instances (Windows…

Google Compute Engine moves to Debian

May 13th, 2013

Since its announcement Google Compute Engine is in the spotlight as a potential competitor of Amazon AWS.
Up to now Compute Engine has been based on customized versions of Ubuntu and CentOS…

Wipro Launches VirtuaDesk

May 8th, 2013

On May 7, Wipro Ltd. a consulting and outsourcing company, announced the release of VirtuaDesk, an IP-based offering from its Advanced Technologies practice. Wipro collaborated with HP for the…

Dell acquires Enstratius

May 6th, 2013

Dell today announced that it has acquired Enstratius, which used to be known as enStratus. Enstratius delivers a private and public cloud management product either available via Software-as-a-Service (SaaS) or…

Paper: Infrastructure-as-a-Service Product Line Architecture Fabric Management Architecture Guide

May 6th, 2013

Microsoft has released a paper titled: "Infrastructure-as-a-Service Product Line Architecture Fabric Management Architecture Guide". The paper which contains 69 pages provides guidance to develop solutions for a Microsoft private cloud…

Paper: Infrastructure-as-a-Service Product Line Architecture Fabric Architecture Guide

May 6th, 2013

Microsoft has released a paper titled:”Infrastructure-as-a-Service Product Line Architecture Fabric Architecture Guide“. The paper which contains 112 pages provides guidance to develop solutions for a Microsoft private cloud infrastructure in…

VMTurbo raises $25M in Series C funding

May 3rd, 2013

On May 1, VMTurbo, provider of management platforms for cloud and virtualized environments  announced to have raised  $25M in Series C funding from Globespan Capital, and previous investors Bain Capital…

Embotics Corporation joins OpenStack Community

May 3rd, 2013

On May 1, Canadian Embotics Corporation announced to have joined the OpenStack community.
Founded in 2006 and headquartered in Ottawa, Canada, Embotics focuses on virtualization and private cloud management software…

Release: Login Virtual Session Indexer 4.0

May 2nd, 2013

Login VSI has released version 4 of its vendor independent Login Virtual Session Indexer (VSI) benchmarking utility. Login VSI measures the performance and scalability of Virtual Desktop Infrastructures (VDI) and…

Microsoft working on DaaS solution hosted on Azure

May 2nd, 2013

Microsoft is building a Desktop as a Service offering running on top of its Cloud platform Azure, Mary Jo Foley from ZDNet reports. The Desktop as a Service offering is…

 
Monthly Archive