Abstract:
In virtualized environment, the service capabilities on each domain are separated from each other due to isolation. In order to coordinate the service capabilities each domain may have, the inter-domain service process split mechanism under virtualization is introduced. Two kinds of service split methods are proposed. Based on Kernel Virtual Machine(KVM), two basic mechanisms are implemented for those methods: an inter-domain communication and a simple inter-domain Remote Procedure Call(RPC) mechanism. An application of text encrypting/decrypting across domains is presented, thus demonstrates that the model can be used to create new security-concerned application in virtualized environment.
Key words:
service process split mechanism,
inter-domain communication,
inter-domain Remote Procedure Call(RPC)
摘要: 在虚拟化环境下,各虚拟域上的服务能力是相互隔离的而不能获得联系和协同。针对该问题,提出虚拟化下的域间服务过程分离机制。定义2种类型的服务分离过程,并基于KVM的虚拟化环境,实现支持这2种服务分离过程所必需的关键技术,即域间通信和域间远程过程调用技术。实际应用场景表明,该机制能达到服务联系和协同的目标,为在虚拟化下构建可能的安全应用提供基础支持。
关键词:
服务过程分离机制,
域间通信,
域间远程过程调用
CLC Number:
SHU Chang, TUN Qiang-Bei, TAN Yu-Song. Research on Inter-domain Service Process Split Mechanism Under Virtualization[J]. Computer Engineering, 2010, 36(17): 270-273.
舒畅, 吴庆波, 谭郁松. 虚拟化下域间服务过程分离机制的研究[J]. 计算机工程, 2010, 36(17): 270-273.