Assessing the Impact of Intra-Cloud Live Migration on Anomaly Detection

Shirazi, N.-u.-h., Simpson, S., Marnerides, A. K. , Watson, M., Mauthe, A. and Hutchison, D. (2014) Assessing the Impact of Intra-Cloud Live Migration on Anomaly Detection. In: 2014 IEEE 3rd International Conference on Cloud Networking (CloudNet), Luxembourg, 08-10 Oct 2014, pp. 52-57. ISBN 9781479927302 (doi: 10.1109/CloudNet.2014.6968968)

Full text not currently available from Enlighten.

Abstract

Virtualized cloud environments have emerged as a necessity within modern unified ICT infrastructures and have established themselves as a reliable backbone for numerous always-on services. `Live' intra-cloud virtual-machine (VM) migration is a widely used technique for efficient resource management employed within modern cloud infrastructures. Despite the benefits of such functionality, there are still several security issues which have not yet been thoroughly assessed and quantified. We investigate the impact of live virtual-machine migration on state-of-the-art anomaly detection (AD) techniques (namely PCA and K-means), by evaluating live migration under various attack types and intensities. We find that the performance for both detectors degrades as shown by their Receiver Operating Characteristics (ROC) curves when intra-cloud live migration is initiated while VMs are under a netscan (NS) or a denial-of-service (DoS) attack.

Item Type:Conference Proceedings
Status:Published
Refereed:Yes
Glasgow Author(s) Enlighten ID:Marnerides, Dr Angelos
Authors: Shirazi, N.-u.-h., Simpson, S., Marnerides, A. K., Watson, M., Mauthe, A., and Hutchison, D.
College/School:College of Science and Engineering > School of Computing Science
ISBN:9781479927302
Published Online:01 December 2014

University Staff: Request a correction | Enlighten Editors: Update this record