« VMware vs. Vista - Hooking the Kernel | Main | I always suspected this* »

TrackBack

TrackBack URL for this entry:
http://www.typepad.com/services/trackback/6a00d8345207f669e200e550aa0daa8834

Listed below are links to weblogs that reference Virtualization Security Gut-Check:

» The Unbearable Lightness of Being...Virtualized from Rational Survivability
My apologies to Pete Lindstrom for not responding to his comment regarding my virtualization defibrilation post sooner and hat-tip for Rothman for the reminder. Pete was commenting on a snippet from my larger post dealing with the following assertion:T... [Read More]

Comments

Pete:

I think the virtsec shift will mean more NIPS emphasis on layer 7 intelligence versus L4 deep packet architecture. The movement and change in a virtual (esp rack and stack) infrastructure will make static pattern matching and tuning onerous. I talked about this with Tarry Singh at VMworld: http://virtualization.com/video-audio-vodcast-vlog/2008/03/05/video-interview-greg-ness-vp-marketing-with-blue-lane-technologies-vmworld-europe-2008/

Think about the irony of virtualizing a portion of a production infrastructure into a rack and stack only to get it to emulate the old infrastructure left behind. You have neutered the value proposition.

Thats why its important for VMware to articulate improved security capabilities (versus legacy solutions that can now kluge with arrays of agents and sensors).

Greg
Blue Lane

Verify your Comment

Previewing your Comment

This is only a preview. Your comment has not yet been posted.

Working...
Your comment could not be posted. Error type:
Your comment has been posted. Post another comment

The letters and numbers you entered did not match the image. Please try again.

As a final step before posting your comment, enter the letters and numbers you see in the image below. This prevents automated programs from posting comments.

Having trouble reading this image? View an alternate.

Working...

Post a comment