Posts Tagged “virtual environment security”

There is a lot of talk right now about security for virtual machines. My post from last week was about a company generating NetFlow data from virtual switches. Now at least two significant efforts are being announced at RSA. First, Solera Networks is releasing a free beta of a virtual network tap. Their premise is that buying virtual equivalents of IDS, IPS, etc is wasteful and expensive to enterprises. The virtual tap interfaces with Solera’s line of packet capture devices and closes the gap in network visibility in virtual environments. This approach seems stronger than Montego’s approach (NetFlow only). Solera provides the entire packet stream allowing you to do pretty much anything.

The second big announcement is from IBM, who is announcing “Phantom”, a hypervisor security layer.  This layer will let admins in virtual environments lock down the virtualized environment outside the VM instances allowing a single point of configuration to lock down a host of virtualized servers or clients. This will be a technology to keep an eye on in the coming months.

As usual, the security industry is catching up with a technology (this time around VM) that has been around for a considerable amount of time. This attention to virtual environment security is welcome but as usual a bit late in the game. The securtiy industry  is still not keeping pace with technology advances. I don’t expect it to catch up anytime soon.

Comments 1 Comment »