CN101976200A - Virtual machine system for input/output equipment virtualization outside virtual machine monitor - Google Patents

Virtual machine system for input/output equipment virtualization outside virtual machine monitor Download PDF

Info

Publication number
CN101976200A
CN101976200A CN2010105097575A CN201010509757A CN101976200A CN 101976200 A CN101976200 A CN 101976200A CN 2010105097575 A CN2010105097575 A CN 2010105097575A CN 201010509757 A CN201010509757 A CN 201010509757A CN 101976200 A CN101976200 A CN 101976200A
Authority
CN
China
Prior art keywords
virtual machine
input
monitor
output
iovm
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN2010105097575A
Other languages
Chinese (zh)
Other versions
CN101976200B (en
Inventor
陈文智
吴卓文
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Zhejiang University ZJU
Original Assignee
Zhejiang University ZJU
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Zhejiang University ZJU filed Critical Zhejiang University ZJU
Priority to CN 201010509757 priority Critical patent/CN101976200B/en
Publication of CN101976200A publication Critical patent/CN101976200A/en
Application granted granted Critical
Publication of CN101976200B publication Critical patent/CN101976200B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Computer And Data Communications (AREA)

Abstract

The invention provides a virtual machine system for input/output equipment virtualization outside a virtual machine monitor. The virtual machine system comprises the virtual machine monitor; the virtual machine monitor is provided with a plurality of input/output virtual machines, and all I/O operations of clients and equipment sharing are processed by the input/output virtual machines; the plurality of input/output virtual machines are managed and dispatched by the virtual machine monitor; and an inter-domain communication mechanism and a memory sharing mechanism are formed between the input/output virtual machines and the virtual machine monitor. Functions of processing and sharing input and output are extracted from the virtual machine monitor based on a processor platform of hardware-aid virtualization technology, and processing, sharing and dispatching of the input and the output are performed in the prerogative client virtual machines running above the virtual machine monitor to finish the I/O virtualization function so that better isolation and safety can be acquired and the burden of the virtual machine monitor can be reduced at the same time.

Description

Outside monitor of virtual machine, carry out the virtualized dummy machine system of input-output device
Technical field
The present invention relates to the Computer Processing technical field, especially relate to a kind of virtual machine technique, wherein Client OS moves in the virtual machine of computing equipment, more particularly, relate to the method for outside monitor of virtual machine, carrying out input and output (I/O) device virtualization in this type of virtual machine environment.
Background technology
In virtualized environment in the past, guest virtual machine (Guest Virtual Machine) abbreviates client computer as, Client OS (Guest Operating Systems) operates in the virtual machine, monitor of virtual machine (Virtual Machine Monitor) is managed all hardware resources, and provide virtual hardware environment to move for Client OS, all virtual machines all operate on the monitor of virtual machine (VMM), and concrete structure as shown in Figure 1.
On the processor platform with the auxiliary Intel Virtualization Technology of hardware, Client OS does not need to revise some responsive instructions and just can directly run among the virtual machine.
By Intel Virtualization Technology, on one group of hardware, can move a plurality of client computer simultaneously, thereby improve the utilization factor of hardware resource, reduced the demands such as space of power consumption and storage equipment simultaneously.All client computer are by monitor of virtual machine (VMM) unified management, and guarantee the isolation between them.
All resources of monitor of virtual machine (VMM) management total system, the I/O request of response and processing All Clients makes that monitor of virtual machine (VMM) software is bulky, and tissue is complicated, and this has all formed the factors of instability to security and isolation.Decompose monitor of virtual machine (VMM) according to function, reduce the complexity and the software volume of monitor of virtual machine (VMM), some comparatively independently function extract as the independent virtual machines operation, this is the direction of present technological improvement.
Summary of the invention
The invention provides a kind of virtualized dummy machine system of input and output (I/O) that outside monitor of virtual machine (VMM), carries out, processor platform based on the Intel Virtualization Technology of hardware auxiliary type, the processing of input and output (I/O) and the function of sharing this part are extracted from monitor of virtual machine (VMM), carry out the processing of input and output (I/O) in the franchise guest virtual machine on running on monitor of virtual machine (VMM), share, scheduling, finish the virtualized function of I/O, this franchise guest virtual machine is called input and output virtual machine (IOVM:I/O Virtual Machine), better isolation and security can be obtained like this, the burden of monitor of virtual machine (VMM) can be reduced simultaneously.
A kind of virtualized dummy machine system of input and output (I/O) that outside monitor of virtual machine (VMM), carries out, processor platform based on the Intel Virtualization Technology of hardware auxiliary type, comprise monitor of virtual machine (VMM), described monitor of virtual machine is provided with several input and output virtual machines (IOVM), comes all the I/O operations and the equipment of processing client to share by input and output virtual machine (IOVM); Several input and output virtual machines (IOVM) are managed and are dispatched by monitor of virtual machine (VMM); Be provided with inter-domain communication mechanism and memory shared mechanism between input and output virtual machine (IOVM) and the monitor of virtual machine (VMM), by communication mechanism and memory shared mechanism between monitor of virtual machine (VMM) management domain, increasing and deleting the memory shared piece all needs monitor of virtual machine (VMM) to examine.
A described input and output virtual machine (IOVM) can provide service for a plurality of guest virtual machines, the different I/O request of a guest virtual machine can be handled by different input and output virtual machines (IOVM), sets by the I/O virtual management program of monitor of virtual machine (VMM).
Described guest virtual machine operates on two different computing machines with the input and output virtual machine (IOVM) that service is provided, and input and output virtual machine (IOVM) provides I/O service by network.
The design of input and output virtual machine of the present invention (IOVM) can be passed through network, crosses over single computer hardware.Make under the situation of needs, can be at the monitor of virtual machine that moves on the local computer (VMM) by network to monitor of virtual machine (VMM) application input and output virtual machines (IOVM) service that operates on other computing machines, and with corresponding I/O demand forwarding in the past, handle by the input and output virtual machine (IOVM) on other computing machines.
In based on the virtualization system on the processor platform of hardware auxiliary type Intel Virtualization Technology, the I/O request that guest virtual machine produces will be found by monitor of virtual machine (VMM), decide how to distribute corresponding input and output virtual machine (IOVM) according to the type of the I/O of guest virtual machine request with relevant information by monitor of virtual machine (VMM), if on local computer, there is not corresponding available input and output virtual machine (IOVM), perhaps can't on local computer, create new input and output virtual machine (IOVM) again, perhaps I/O device resource deficiency on this machine, perhaps under the situations such as needs of computational resource load balance scheduling, available required input and output virtual machine (IOVM) service of computing machine application that in long-range computing machine, can distribute corresponding input and output virtual machine (IOVM) service by network of local monitor of virtual machine (VMM), if application obtains to satisfy, local monitor of virtual machine (VMM) is just transmitted corresponding I/O request in the past, local monitor of virtual machine (VMM) is transmitted to corresponding guest virtual machine with the result that long-range input and output virtual machine (IOVM) returns again, provide input and output virtual machine (IOVM) to be handled accordingly by input and output virtual machine (IOVM) on the long-range computing machine by network, the input and output virtual machine (IOVM) on the long-range computing machine is finished the process of the result being returned after the corresponding processing local service and has just been finished.
In this process, the branch of input and output virtual machine (IOVM) pairing guest virtual machine is transparent, and whether input and output virtual machine (IOVM) operates on this machine, and guest virtual machine is not known.
Allow which input and output virtual machine (IOVM) come to provide service by deciding of corresponding I/O virtual management program in the monitor of virtual machine (VMM), comprise the input and output virtual machine (IOVM) that moves on the local computer and by input and output virtual machine (IOVM) service of network to other computing machine applications for the guest virtual machine of current proposition I/O request.
Described input and output virtual machine (IOVM) is to operate on the monitor of virtual machine (VMM) as independent clients, the framework of input and output virtual machine (IOVM) comprising: kernel portion, the standard C storehouse, the ICP/IP protocol stack, device model, the rear end drives, inter-domain communication mechanism, memory shared between the territory;
(1) kernel portion of input and output virtual machine (IOVM) is subdivided into a plurality of functional modules, comprises management of process scheduling, interprocess communication, memory management, file system, device drives; These modules are formed the operating system nucleus of input and output virtual machines (IOVM).
(2) I/O that the rear end drives and device model is used to receive and handle from client computer asks.After being intercepted and captured by monitor of virtual machine (VMM) from the I/O operation requests of client computer, be distributed to corresponding input and output virtual machine (IOVM) by monitor of virtual machine (VMM), in input and output virtual machine (IOVM), drive these requests of reception by corresponding rear end, the rear end drives analysis request, decision is to be handled or handled by this locality driving by device model, and finish corresponding I/O operation, and then result is returned to client computer by monitor of virtual machine (VMM).
(3) the standard C storehouse provides basic program run storehouse.
(4) the ICP/IP protocol stack provide network function must protocol stack.
(5) inter-domain communication mechanism is used to handle communication and the data transfer between monitor of virtual machine (VMM) and the input and output virtual machine (IOVM).
Described inter-domain communication mechanism (IDC:Inter-Domain Communication) is present between input and output virtual machine (IOVM) and the monitor of virtual machine (VMM), and the communication between input and output virtual machine (IOVM) and the monitor of virtual machine (VMM) is provided.
Because inter-domain communication mechanism only is present between input and output virtual machine (IOVM) and the monitor of virtual machine (VMM), therefore the destination object for input and output virtual machine (IOVM) inter-domain communication mechanism can only be monitor of virtual machine (VMM), therefore need not the intended target object.For monitor of virtual machine (VMM), can there be one in the system to a plurality of input and output virtual machines (IOVM), therefore, monitor of virtual machine (VMM) need come the destination object of communication mechanism between specified domain according to input and output virtual machine (IOVM) tabulation.
The message content of restriction inter-domain communication mechanism (IDC) is no more than 32 bytes (Byte), is convenient to like this 8 general-purpose registers in the IA32 architecture are used to transmit inter-domain communication mechanism (IDC) message, thus the performance of raising inter-domain communication mechanism (IDC).Because do not comprise general-purpose register and flating point register in the client state territory among the VMCS (Guest-state area), their preservation and recovery are determined by monitor of virtual machine (VMM).Thereby, when producing VM-Exit, VM-Entry, when making that finishing address space between monitor of virtual machine (VMM) and input and output virtual machine (IOVM) switches, the content of general-purpose register can keep, make data can by general-purpose register between monitor of virtual machine (VMM) and input and output virtual machine (IOVM), transmit and also performance very good.
For the transmission of the message that surpasses 32 bytes, use memory shared mechanism between the territory.
(6) memory shared mechanism is used to handle data transfer between monitor of virtual machine (VMM) and the input and output virtual machine (IOVM) between the territory.
Memory shared mechanism only is present between monitor of virtual machine (VMM) and the input and output virtual machine (IOVM) between described territory.Need the collaborative design of monitor of virtual machine (VMM) and input and output virtual machine (IOVM), make the realization ratio be present in memory shared mechanism between territory between input and output virtual machine (IOVM) and the monitor of virtual machine (VMM) be easier to and efficient higher, be convenient to realize data sharing.
The memory address space that the needs of input and output virtual machine (IOVM) are shared is mapped to the memory address space of monitor of virtual machine (VMM), realizes memory shared between the territory.Memory shared zone between a plurality of territories can be arranged, can regulate and limit the maximum upper limit of the size of memory shared between total territory according to memory source.
Under the support of hardware auxiliary type Intel Virtualization Technology processor platform, external unit relevant the function that I/O handles and I/O is shared from monitor of virtual machine (VMM), extract, be put in the input and output virtual machine (IOVM) and move.
Major technique effect of the present invention comprises:
1. by proposing the design of input and output virtual machines (IOVM), outside monitor of virtual machine (VMM), carry out virtual (the I/O Virtualization) of input-output device.Input and output virtual machine (IOVM) operates on the monitor of virtual machine (VMM) as franchise virtual machine.The I/O request of client computer is transmitted to input and output virtual machine (IOVM) by monitor of virtual machine (VMM) and handles, and the I/O of client computer request is handled by monitor of virtual machine (VMM) in the implementation in the past of Intel Virtualization Technology.Better isolation and security can be obtained like this, the burden of monitor of virtual machine (VMM) can be reduced simultaneously
2. input and output virtual machine of the present invention (IOVM) has by network provides I/O the ability of service, make the I/O request of client computer handle and on different computing machines, to finish by network cooperation with I/O, make I/O handle and to reach the purpose of crossing over single computer hardware, the I/O of dummy machine system in the past handles the computer hardware resource that is subject to this machine, and provide the input and output virtual machine (IOVM) of I/O service can break through the restriction of the computer hardware resource of this machine by network, for example, when the hard drive space of this machine free time can not satisfy the I/O demand, monitor of virtual machine (VMM) can be by network to required input and output virtual machine (IOVM) service of long-range computing machine application, if application obtains to satisfy, local monitor of virtual machine (VMM) is just transmitted corresponding I/O request in the past, after treating that input and output virtual machine (IOVM) on the remote computer is finished dealing with, local monitor of virtual machine (VMM) is transmitted to corresponding guest virtual machine with the result that long-range input and output virtual machine (IOVM) returns again.
3. the present invention proposes method for communicating between monitor of virtual machine (VMM) and the input and output virtual machine (IOVM), comprise memory shared mechanism between inter-domain communication mechanism (IDC) and territory, inter-domain communication mechanism (IDC) uses general-purpose register to come Data transmission when producing VM-Exit, VM-Entry, because do not comprise general-purpose register and flating point register in the client state territory (Guest-state area) among the VMCS (Virtual-Machine Control Structure), their preservation and recovery are determined by monitor of virtual machine (VMM).Thereby, when producing VM-Exit, VM-Entry, when making that finishing address space between monitor of virtual machine (VMM) and input and output virtual machine (IOVM) switches, the content of general-purpose register can keep, make data can by general-purpose register between monitor of virtual machine (VMM) and input and output virtual machine (IOVM), transmit and also performance very good.
Memory shared mechanism is the memory address space that memory address space that the needs with input and output virtual machine (IOVM) are shared is mapped to monitor of virtual machine (VMM) between the territory, realizes memory shared between the territory.The part that needs in the memory address of part that will be shared in the memory address of input and output virtual machine (IOVM) and monitor of virtual machine (VMM) to share is pointed to a physical memory, makes memory shared between the two avoid copy, obtains higher efficient.
Description of drawings
Fig. 1 is that the structure of the dummy machine system of prior art is formed synoptic diagram.
Fig. 2 is that the structure of dummy machine system of the present invention is formed synoptic diagram.
Fig. 3 provides the structure of the dummy machine system of service to form synoptic diagram by network for the present invention.
Fig. 4 is the configuration diagram of input and output virtual machine of the present invention (IOVM).
Fig. 5 is that client computer I/O request of the present invention obtains the process flow diagram that input and output virtual machines (IOVM) are handled.
Fig. 6 is the synoptic diagram of the memory address space mapping of memory shared mechanism between territory of the present invention.
Fig. 7 is the flow process that monitor of virtual machine of the present invention (VMM) distributes input and output virtual machines (IOVM).
Embodiment
As shown in Figure 2, a kind of virtualized dummy machine system of input and output (I/O) that outside monitor of virtual machine (VMM), carries out, based on the processor platform of the Intel Virtualization Technology of hardware auxiliary type:
Guest virtual machine A has produced an I/O request, is caught by VMM, and VMM distributes IOVM 1 to handle this I/O request according to the type and the relevant information of this I/O request.
Another I/O request that guest virtual machine A produces is caught by VMM, and VMM distributes IOVM 2 to handle this I/O request according to the type and the relevant information of this I/O request.
The I/O request that guest virtual machine B produces is caught by VMM, and VMM distributes IOVM 2 to handle this I/O request according to the type and the relevant information of this I/O request.
A plurality of I/O request from a guest virtual machine can be handled by the IOVM more than 1 or 1.Can handle by same IOVM from the I/O request of client computer A with from the I/O request of client computer B.I/O request by VMM decision client computer by which IOVM is handled.
This dummy machine system needs the processor of the Intel Virtualization Technology of hardware auxiliary type, for example the processor of the support VT technology of Intel company.
As shown in Figure 3, need be under the situation of other computing machine application input and output virtual machines (IOVM) service by network, the I/O request of guest virtual machine B is caught by VMM 1, serve to the VMM 2 application input and output virtual machines (IOVM) that operate on other computing machines by network by VMM 1, if apply for successfully, then VMM 1 is given to VMM 2 by network with corresponding I/O request, VMM 2 determines to distribute IOVM 2 to handle corresponding I/O request again, after IOVM 2 finishes dealing with the result returned to VMM 2, the result that VMM 2 will carry out by network again turns back to VMM 1, and VMM 1 returns to the result guest virtual machine B again.
As shown in Figure 4, the framework of IOVM comprises a plurality of modules: memory shared, standard C storehouse, ICP/IP protocol stack, rear end drive and device model between kernel, inter-domain communication, territory.
The IOVM kernel is subdivided into a plurality of submodules, comprising: management of process and scheduling, interprocess communication, memory management, driver, file system.The basic function of this several submodule complete operation system comprises: the establishment of process, management and scheduling, termination; The distribution of internal memory and recovery; Drive external unit; File system provides the management function of the tissue and the bibliographic structure of establishment, modification, deleted file and file.
Memory shared between inter-domain communication and territory is used for the data transfer between VMM and the IOVM and shares.
The standard C storehouse provides program run required basic C Runtime Library.The ICP/IP protocol stack provides corresponding network service required function.
After the I/O operation requests of client computer is intercepted and captured by VMM, be distributed to corresponding IOVM by VMM, drive these requests of reception by corresponding rear end in IOVM, the rear end drives analyzes these I/O requests, and decision is to be handled or handled by this locality driving by device model.
As shown in Figure 6, the memory address space that the needs of input and output virtual machine (IOVM) are shared is mapped to the memory address space of monitor of virtual machine (VMM), realizes memory shared between the territory.Memory shared zone between a plurality of territories can be arranged, can regulate and limit the maximum upper limit of the size of memory shared between total territory according to memory source.
Workflow of the present invention is:
After the hardware check, monitor of virtual machine (VMM) starts earlier, and monitor of virtual machine (VMM) starts to finish restarts at least one input and output virtual machine (IOVM) afterwards, and then starts one or more guest virtual machine according to demand.Monitor of virtual machine (VMM) can dynamically increase or reduce the quantity of input and output virtual machine (IOVM) according to the demand of guest virtual machine, but has an input and output virtual machine (IOVM) at least in operation.
Wherein, the flow process of client computer I/O request acquisition input and output virtual machines (IOVM) processing as shown in Figure 5.Guest virtual machine produces the I/O request; VMM catches the I/O request of guest virtual machine; VMM is according to the type and the relevant information of the I/O request of guest virtual machine, and which IOVM decision distributes to is gone to handle; VMM is transmitted to the I/O of guest virtual machine request the IOVM of appointment; IOVM handles the I/O request of guest virtual machine, and the result is returned to VMM; VMM verifies the result that IOVM returns, and it is transmitted to corresponding guest virtual machine, if authentication failed is done corresponding abnormality processing; Guest virtual machine obtains the result that I/O handles.
Wherein, monitor of virtual machine (VMM) ask to distribute input and output virtual machine (IOVM) according to the I/O of guest virtual machine flow process as shown in Figure 7.VMM is according to the type and the relevant information of the I/O request of client computer, and which IOVM decision distributes to is gone to handle; Can distribute the IOVM on this machine to handle? be to specify certain IOVM on this machine to handle; , according to the remote I/O server list, do not seek the remote computer that corresponding IOVM service can be provided successively; Find suitable I/O server? be that certain IOVM on the assigning remote computing machine handles; Not, return type and the relevant information of VMM according to the I/O request of client computer, which IOVM decision distributes to is gone to handle.

Claims (6)

1. one kind is carried out the virtualized dummy machine system of input-output device outside monitor of virtual machine, and the processor platform based on the Intel Virtualization Technology of hardware auxiliary type comprises monitor of virtual machine, it is characterized in that:
Operation has several input and output virtual machines and several guest virtual machines on the described monitor of virtual machine, comes all the I/O operations and the equipment of processing client virtual machine to share by the input and output virtual machine; Several input and output virtual machines and several guest virtual machines are managed and are dispatched by monitor of virtual machine, are provided with communication mechanism and memory shared mechanism between input and output virtual machine and the monitor of virtual machine.
2. dummy machine system according to claim 1 is characterized in that: described guest virtual machine and provide the input and output virtual machine of service to operate on the same computing machine, the input and output virtual machine provides I/O service for guest virtual machine.
3. dummy machine system according to claim 1 is characterized in that: described guest virtual machine operates on two different computing machines with the input and output virtual machine that service is provided, and the input and output virtual machine provides I/O service by network for guest virtual machine.
4. dummy machine system according to claim 1 is characterized in that: the framework of described input and output virtual machine comprises: kernel portion, and the standard C storehouse, the ICP/IP protocol stack, device model, the rear end drives, inter-domain communication mechanism, memory shared mechanism between the territory;
Described kernel portion comprises management of process scheduling, interprocess communication, memory management, file system, device drives;
The I/O that described rear end drives and device model is used to receive and handle from the client computer virtual machine asks, after the I/O of guest virtual machine operation requests is intercepted and captured by monitor of virtual machine, be distributed to corresponding input and output virtual machine by monitor of virtual machine, in the input and output virtual machine, drive these requests of reception by corresponding rear end, the rear end drives analysis request, decision is to be handled or handled by this locality driving by device model, and finish corresponding I/O operation, and then result returned to monitor of virtual machine, monitor of virtual machine is verified the result, if checking returns to guest virtual machine by monitor of virtual machine then with the result, if authentication failed then monitor of virtual machine do corresponding abnormality processing and turn back to guest virtual machine again;
Described standard C storehouse provides basic program run storehouse;
Described ICP/IP protocol stack provides network function required protocol stack;
Memory shared is used to handle communication and the data transfer between monitor of virtual machine and the input and output virtual machine between described inter-domain communication mechanism and territory.
5. dummy machine system according to claim 1 is characterized in that: described inter-domain communication mechanism comprises:
8 general-purpose registers in the IA32 architecture are used to transmit inter-domain communication mechanism message;
The message content of restriction inter-domain communication mechanism is no more than 32 bytes;
When between monitor of virtual machine and input and output virtual machine, producing VM-Exit, VM-Entry, when finishing the address space switching, the content of general-purpose register can keep, and makes data to transmit between monitor of virtual machine and input and output virtual machine by general-purpose register.
6. dummy machine system according to claim 1 is characterized in that: memory shared mechanism between described territory comprises:
The memory address space that the input and output virtual machine is shared needs is mapped to the memory address space of monitor of virtual machine, realizes memory shared between the territory;
Memory shared only is present between monitor of virtual machine and the input and output virtual machine between the territory;
Between input and output virtual machine and the monitor of virtual machine memory shared piece between a plurality of territories can be arranged, but the summation of the size of memory shared piece must not be greater than the maximum upper limit of memory shared quantity between the territory of setting in the system between the territory;
The input and output virtual machine can only be visited the internal memory in the memory shared piece between oneself territory, can not visit the internal memory in the memory shared piece between the territory of other input and output virtual machines;
Memory shared piece between all territory in management and the register system in the monitor of virtual machine.
CN 201010509757 2010-10-15 2010-10-15 Virtual machine system for input/output equipment virtualization outside virtual machine monitor Active CN101976200B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 201010509757 CN101976200B (en) 2010-10-15 2010-10-15 Virtual machine system for input/output equipment virtualization outside virtual machine monitor

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 201010509757 CN101976200B (en) 2010-10-15 2010-10-15 Virtual machine system for input/output equipment virtualization outside virtual machine monitor

Publications (2)

Publication Number Publication Date
CN101976200A true CN101976200A (en) 2011-02-16
CN101976200B CN101976200B (en) 2013-05-08

Family

ID=43576088

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 201010509757 Active CN101976200B (en) 2010-10-15 2010-10-15 Virtual machine system for input/output equipment virtualization outside virtual machine monitor

Country Status (1)

Country Link
CN (1) CN101976200B (en)

Cited By (18)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102270153A (en) * 2011-08-12 2011-12-07 曙光信息产业(北京)有限公司 Method and device for sharing encrypted card in virtual environment
CN102591702A (en) * 2011-12-31 2012-07-18 华为技术有限公司 Virtualization processing method, related device and computer system
CN103593225A (en) * 2013-10-30 2014-02-19 浙江大学 Method for multiplexing Binder IPC mechanism by multiple Android systems in mobile virtualization scene
CN103838634A (en) * 2014-03-18 2014-06-04 上海电机学院 Method and system for dispatching number of virtual machines based on internal storage resource supplying
CN104133670A (en) * 2014-06-30 2014-11-05 中国科学院信息工程研究所 Intelligent terminal security GUI (Graphical User Interface) generation method on the basis of virtual isolation technology
CN104321781A (en) * 2012-06-29 2015-01-28 英特尔公司 Method, system, and device for securely handling virtual function driver communications with a physical function driver
CN104850451A (en) * 2015-05-15 2015-08-19 北京北信源软件股份有限公司 Method for realizing inter-process communication between virtual machine and administrative domain
CN104866407A (en) * 2015-06-23 2015-08-26 山东中孚信息产业股份有限公司 Monitoring system and method in virtual machine environment
CN105718211A (en) * 2014-12-19 2016-06-29 富士施乐株式会社 Information processing apparatus and information processing method
CN107291526A (en) * 2016-03-31 2017-10-24 天津青创科技有限公司 A kind of BIOS and monitor of virtual machine interactive system
CN107341115A (en) * 2017-06-30 2017-11-10 联想(北京)有限公司 Virutal machine memory access method, system and electronic equipment
CN107357629A (en) * 2017-07-10 2017-11-17 成都虫洞奇迹科技有限公司 A kind of virtual machine based on internal memory online analyzing is without agent monitors method and device
CN109426545A (en) * 2017-08-31 2019-03-05 阿里巴巴集团控股有限公司 A kind of data communications method and device
CN109858288A (en) * 2018-12-26 2019-06-07 中国科学院信息工程研究所 Realize the method and apparatus of secure virtual machine isolation
CN111459620A (en) * 2020-04-08 2020-07-28 孙宇霖 Information scheduling method from security container operating system to virtual machine monitor
CN111522692A (en) * 2020-04-20 2020-08-11 浙江大学 Multi-operating system input and output equipment redundancy guarantee system based on virtual machine
CN113626148A (en) * 2021-08-03 2021-11-09 浙江中电远为科技有限公司 Terminal virtual machine generation system and method based on hybrid virtualization
CN116401020A (en) * 2023-06-07 2023-07-07 四川大学 KVM virtual machine I/O filter framework implementation method, system and storage medium

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101076781A (en) * 2004-12-10 2007-11-21 英特尔公司 System and method for releasing privilege of virtual machine monitoring program component
CN101425046A (en) * 2008-10-28 2009-05-06 北京航空航天大学 Method for implementing distributed I/O resource virtualizing technique
CN101706757A (en) * 2009-09-21 2010-05-12 中国科学院计算技术研究所 I/O system and working method facing multi-core platform and distributed virtualization environment

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101076781A (en) * 2004-12-10 2007-11-21 英特尔公司 System and method for releasing privilege of virtual machine monitoring program component
CN101425046A (en) * 2008-10-28 2009-05-06 北京航空航天大学 Method for implementing distributed I/O resource virtualizing technique
CN101706757A (en) * 2009-09-21 2010-05-12 中国科学院计算技术研究所 I/O system and working method facing multi-core platform and distributed virtualization environment

Cited By (30)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102270153A (en) * 2011-08-12 2011-12-07 曙光信息产业(北京)有限公司 Method and device for sharing encrypted card in virtual environment
US9244715B2 (en) 2011-12-31 2016-01-26 Huawei Technologies Co., Ltd. Virtualization processing method and apparatuses, and computer system
CN102591702B (en) * 2011-12-31 2015-04-15 华为技术有限公司 Virtualization processing method, related device and computer system
CN102591702A (en) * 2011-12-31 2012-07-18 华为技术有限公司 Virtualization processing method, related device and computer system
CN104321781A (en) * 2012-06-29 2015-01-28 英特尔公司 Method, system, and device for securely handling virtual function driver communications with a physical function driver
CN104321781B (en) * 2012-06-29 2017-04-19 英特尔公司 Method, system, and device for securely handling virtual function driver communications with a physical function driver
CN103593225A (en) * 2013-10-30 2014-02-19 浙江大学 Method for multiplexing Binder IPC mechanism by multiple Android systems in mobile virtualization scene
CN103593225B (en) * 2013-10-30 2016-10-05 浙江大学 The method of many android system multiplexing Binder IPC mechanism in mobile virtual scene
CN103838634A (en) * 2014-03-18 2014-06-04 上海电机学院 Method and system for dispatching number of virtual machines based on internal storage resource supplying
CN103838634B (en) * 2014-03-18 2017-02-22 上海电机学院 Method and system for dispatching number of virtual machines based on internal storage resource supplying
CN104133670A (en) * 2014-06-30 2014-11-05 中国科学院信息工程研究所 Intelligent terminal security GUI (Graphical User Interface) generation method on the basis of virtual isolation technology
CN104133670B (en) * 2014-06-30 2017-06-09 中国科学院信息工程研究所 A kind of safe GUI generation methods of intelligent terminal based on virtual isolation technology
CN105718211A (en) * 2014-12-19 2016-06-29 富士施乐株式会社 Information processing apparatus and information processing method
CN104850451A (en) * 2015-05-15 2015-08-19 北京北信源软件股份有限公司 Method for realizing inter-process communication between virtual machine and administrative domain
CN104850451B (en) * 2015-05-15 2017-12-22 北京北信源软件股份有限公司 A kind of method for realizing virtual machine and management domain interprocess communication
CN104866407A (en) * 2015-06-23 2015-08-26 山东中孚信息产业股份有限公司 Monitoring system and method in virtual machine environment
CN107291526A (en) * 2016-03-31 2017-10-24 天津青创科技有限公司 A kind of BIOS and monitor of virtual machine interactive system
CN107341115B (en) * 2017-06-30 2021-07-16 联想(北京)有限公司 Virtual machine memory access method and system and electronic equipment
CN107341115A (en) * 2017-06-30 2017-11-10 联想(北京)有限公司 Virutal machine memory access method, system and electronic equipment
CN107357629A (en) * 2017-07-10 2017-11-17 成都虫洞奇迹科技有限公司 A kind of virtual machine based on internal memory online analyzing is without agent monitors method and device
CN109426545A (en) * 2017-08-31 2019-03-05 阿里巴巴集团控股有限公司 A kind of data communications method and device
CN109858288A (en) * 2018-12-26 2019-06-07 中国科学院信息工程研究所 Realize the method and apparatus of secure virtual machine isolation
CN109858288B (en) * 2018-12-26 2021-04-13 中国科学院信息工程研究所 Method and device for realizing safety isolation of virtual machine
CN111459620A (en) * 2020-04-08 2020-07-28 孙宇霖 Information scheduling method from security container operating system to virtual machine monitor
CN111522692A (en) * 2020-04-20 2020-08-11 浙江大学 Multi-operating system input and output equipment redundancy guarantee system based on virtual machine
CN111522692B (en) * 2020-04-20 2023-05-30 浙江大学 Multi-operating-system input and output equipment redundancy guarantee system based on virtual machine
CN113626148A (en) * 2021-08-03 2021-11-09 浙江中电远为科技有限公司 Terminal virtual machine generation system and method based on hybrid virtualization
CN113626148B (en) * 2021-08-03 2024-02-09 浙江中电远为科技有限公司 Terminal virtual machine generation system and method based on hybrid virtualization
CN116401020A (en) * 2023-06-07 2023-07-07 四川大学 KVM virtual machine I/O filter framework implementation method, system and storage medium
CN116401020B (en) * 2023-06-07 2023-08-11 四川大学 KVM virtual machine I/O filter framework implementation method, system and storage medium

Also Published As

Publication number Publication date
CN101976200B (en) 2013-05-08

Similar Documents

Publication Publication Date Title
CN101976200B (en) Virtual machine system for input/output equipment virtualization outside virtual machine monitor
Shu et al. Cloud-integrated cyber-physical systems for complex industrial applications
Lagar-Cavilla et al. Snowflock: rapid virtual machine cloning for cloud computing
CN105579959B (en) Hardware accelerator virtualization
CN102609298B (en) Based on network interface card virtualization system and the method thereof of hardware queue expansion
US10733019B2 (en) Apparatus and method for data processing
EP2425339B1 (en) Methods and apparatus to get feedback information in virtual environment for server load balancing
CN107707622B (en) Method and device for accessing desktop cloud virtual machine and desktop cloud controller
US20130047165A1 (en) Context-Aware Request Dispatching in Clustered Environments
CN102479100B (en) A kind of general calculation entironment virtual machine platform and creation method thereof
CN102262557A (en) Method for constructing virtual machine monitor by bus architecture and performance service framework
US20230127141A1 (en) Microservice scheduling
Zhang et al. Container-VM-PM architecture: A novel architecture for docker container placement
CN103942087A (en) Virtual machine thermal migration method, related device and cluster computing system
US9092260B1 (en) Sync point coordination providing high throughput job processing across distributed virtual infrastructure
US20130054861A1 (en) Pessimistic interrupt affinity for devices
US8914803B2 (en) Flow control-based virtual machine request queuing
Agostinho et al. A cloud computing environment for supporting networked robotics applications
US20100064301A1 (en) Information processing device having load sharing function
Tsakalozos et al. Hint-based execution of workloads in clouds with nefeli
Diab et al. Dynamic sharing of GPUs in cloud systems
CN109829546B (en) Platform as-a-service cloud server and machine learning data processing method thereof
CN115617456A (en) Method and device for hybrid operation of virtual machine and container, electronic equipment and readable storage medium
CN105653347B (en) A kind of server, method for managing resource and virtual machine manager
Nandugudi et al. Network function virtualization: through the looking-glass

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant