Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
Securing DMA through Virtualization
RISE, Swedish ICT, SICS, Security Lab.ORCID iD: 0000-0003-3434-5640
RISE, Swedish ICT, SICS, Security Lab.ORCID iD: 0000-0001-8003-200x
2012 (English)In: IEEE Conference on Complexity in Engineering, IEEE , 2012, 20, p. 118-123, article id 6242958Conference paper, Published paper (Refereed)
Abstract [en]

We present a solution for preventing guests in a virtualized system from using direct memory access (DMA) to access memory regions of other guests. The principles we suggest, and that we also have implemented, are purely based on software and standard hardware. No additional virtualization hardware such as an I/O Memory Management Unit (IOMMU) is needed. Instead, the protection of the DMA controller is realized with means of a common ARM MMU only. Overhead occurs only in pre- and postprocessing of DMA transfers and is limited to a few microseconds. The solution was designed with focus on security and the abstract concept of the approach was formally verified.

Place, publisher, year, edition, pages
IEEE , 2012, 20. p. 118-123, article id 6242958
Keywords [en]
DMA, virtualization, security, embedded systems, direct memory access, formal verification
National Category
Computer and Information Sciences
Identifiers
URN: urn:nbn:se:ri:diva-24036DOI: 10.1109/CompEng.2012.6242958Scopus ID: 2-s2.0-84866553727ISBN: 978-1-4673-1615-6 (print)ISBN: 978-1-4673-1615-6 (print)OAI: oai:DiVA.org:ri-24036DiVA, id: diva2:1043115
Conference
COMPENG 2012
Projects
TNG SecurityPROSPERAvailable from: 2016-10-31 Created: 2016-10-31 Last updated: 2021-01-13Bibliographically approved

Open Access in DiVA

fulltext(153 kB)1141 downloads
File information
File name FULLTEXT01.pdfFile size 153 kBChecksum SHA-512
ab43856d2b5df0b7e3cd4a6f3f1fa1e071852d76d241dee6c0296593b4a3024f14813e2a80d27d4ec39805431533f6195f4c0b28192acccc282e934fbfb8e6f6
Type fulltextMimetype application/pdf

Other links

Publisher's full textScopus

Authority records

Schwarz, OliverGehrmann, Christian

Search in DiVA

By author/editor
Schwarz, OliverGehrmann, Christian
By organisation
Security Lab
Computer and Information Sciences

Search outside of DiVA

GoogleGoogle Scholar
Total: 1142 downloads
The number of downloads is the sum of all downloads of full texts. It may include eg previous versions that are now no longer available

doi
isbn
urn-nbn

Altmetric score

doi
isbn
urn-nbn
Total: 105 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf