SHARE
Follow this article on Twitter Facebook LinkedIn Bookmark and Share
Home >> Security >> Security Products, Practices and Infrastructure

VMware unveils security developer tool

VMware unveils security developer tool

By:  Rafael Ruffolo  On: 27 Feb 2008 For: ComputerWorld Canada Creator

McAfee VP says VMsafe makes it possible to develop security monitoring software that was not possible in the physical servers. But an Info-Tech analyst warns virtualization can make security more complicated

“On the negative side though, there is the fact that you have a physical machine running a hypervisor full of virtual machines. This brings the added complexity of having to worry about more than one layer of security,” Sloan said.

And because of this, Sloan is hopeful that VMware’s API can be a positive first step for improving virtualization security. With the biggest security headaches around virtualized infrastructure stemming from companies having too many unmanaged virtual machines, Sloan said the API should help address one of the most overlooked areas of virtualization: security management.

“That’s where the security problems come into play when companies replace physical server sprawl with virtual server sprawl,” Sloan said. “Virtualizing all your machines doesn’t do anything to make it easier to manage them from a security standpoint. So, the VMsafe may actually provide a good catch-up in terms of addressing this area at the hypervisor layer.”

David Senf, director of security and software research at IDC Canada, agreed, saying that while sandboxing security measures inside virtual machines is still a must, the fact that vendors can now go underneath the hypervisor should ease the concerns of any enterprise that has been on the fence about virtualization.

“A virtual machine could run firewall software, for example, in a sort of 'software appliance' for additional security, but remember that this only deals with a subset of all potential attacks,” Senf said. “Just because applications are nestled in the seeming safety of a virtual machine does not guarantee security from all threats.”

Senf said that firms need to actively consider additional IT security and policy management issues that come about from desktop and from server virtualization.










Sign up for our Newsletters












Print |  Views: 947   |   Rating:offoffoffoffoff  (0 votes)
Rate this article on a scale of
1 to 5 stars,5 being the best.




Rafael Ruffolo Rafael Ruffolo was a senior writer for ComputerWorld Canada from 2006 to 2011. He was the winner of a Kenneth R. Wilson award for business journalism in 2009.

Related Content

Montego aims to secure traffic between virtual machines
Montego aims to secure traffic between virtual machinesHyperSwitch lets customers enforce policies for data transmission within the virtual network, so they can defend against viruses or control what types of content can be passed among users and virtual machines
Security vendors on board with VMsafe
Security vendors on board with VMsafeVirtualization security technology offers APIs for building security products with visibility into virtual machines, VMware says
Virtualization boosts security threat
Virtualization boosts security threatAs IT managers increasingly turn to virtualization to reduce the number of servers they have to deal with, they may unknowingly also be increasing their security problems
BlackHat USA 2008 - Day 1 Review
welcome to our first security insider posting from the blackhat conference here in las vegas. my colleague tadd axon and i will be doing our best over the next few days to post some highlights of the conference. for those of you not familiar with the event, blackhat takes a deep look at emerging threats and security research. if you want a good close look into the future, this is the place to
Questions about Conficker
over the weekend i was interviewed by cbc’s sunday evening news show about conficker and the possibly grim outlook for pc users everywhere on april 1. maybe not my best interview, but what bugs me now is that i was just a little too late to provide more detail on how you can tell who’s been infected.
Zenoss adds VMware monitoring
the latest version of agentless network management suite zenoss enterprise has number of enhancements, including native vmware monitoring across the full virtualization infrastructure lifecycle. zenoss 2.3 now lets enterprise it staff and cloud services providers to monitor their virtual and physical it infrastructures with a single, integrat
blog comments powered by Disqus