Virtualization Security a Focus for Vendors

執筆者
Brian Prince
Brian Prince
Published: Apr 10, 2008
Updated: Feb 2, 2021
2 minute read
eWeek のコンテンツおよび製品のおすすめは、編集上の独立性を保っています。パートナーへのリンクをクリックすると、当社が報酬を得る場合があります。 詳細を見る

Virtualization security is top of mind for some attendees at the RSA Conference held April 7 to 11 in San Francisco, and vendors big and small are taking notice.

IBM kicked off its involvement with the conference by revealing a research project, dubbed “Phantom,” focused on protecting the hypervisor and blocking malicious traffic between virtual machines. Startup Montego Networks used the show to announce integration agreements with companies such as StillSecure and Elitecore Technologies’ Cyberoam to address security in virtual environments.

Interest in security issues remains high; organizers had to literally turn people away from the “Mitigating Virtual Machine Security Vulnerabilities” session because it was too full. But IT professionals still are tasked with sifting through the hype to find what they actually need to be concerned with.

“There are many solutions that are being brought to market that provide nothing more than what their physical counterparts have provided for years-in-line IPS, firewall, patch management, etc.,” John Peterson, chief technology officer of Montego Networks, said in an interview with eWEEK. “Customers’ principal request has been [the] ability to provision network monitoring and policy enforcement between virtual machines.”

Click here for eWEEK.com’s coverage of the RSA Conference.

Montego Networks is pushing its new HyperSwitch, which company officials said integrates policy enforcement, access control and secure switching for virtual networks.

Other companies, such as Altor Networks, are focused on providing visibility and analysis of traffic across virtual switches. Prior to the show, Altor CEO Amir Ben-Efraim said in an interview with eWEEK that traditional network analysis tools were built to tap directly into the physical network or integrate with physical switches. However, these products assume some level of participation in network communication in order to gather information, and network traffic on virtual switches is embedded inside the virtual servers, he said.

“This creates an operational and security blind spot for server and network administrators,” Ben-Efraim said. “Much like in the physical world, operational and security best practices require an effective means to monitor all network activity for unwanted protocols [and] unwanted connections, as well as for security threats.”

Advertisement

Fear of an exploit compromising the hypervisor remains a topic of interest for researchers, enterprises and hackers alike. In the past year, a number of bugs have surfaced affecting a variety of virtualization products. Joe Anthony, program director of security and compliance management for IBM Tivoli, said a hypervisor exploit is the next step for hackers.

“I do fully expect to see that. There [are] definitely different things that have already occurred on a small scale. It is not that big a leap to see the types of exploits that are going on now on a regular server level … occurring within the virtualized environments on a given machine. It’s a very easy next step,” Anthony said.

Brian Prince

Brian Prince

Content Writer
eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

TechnologyAdvice が所有・運営しています。 © 2026 TechnologyAdvice. 無断転載を禁じます

広告主に関する開示:このサイトに掲載されている製品の一部は、TechnologyAdvice が報酬を受け取っている企業のものです。この報酬は、製品がこのサイトのどこにどのように表示されるか(表示される順序など)に影響する場合があります。TechnologyAdvice は、市場で入手可能なすべての企業やすべての種類の製品を掲載しているわけではありません。