Oracle® VM Server for SPARC 3.2 Security Guide

Exit Print View

Updated: March 2015
 
 

Securing the Execution Environment

Oracle VM Server for SPARC has several attack targets in the execution environment. Figure 1–2 shows a simple Oracle VM Server for SPARC configuration where the control domain provides network and disk services to a guest domain. These services are implemented by means of daemons and kernel modules that run in the control domain. The Logical Domains Manager assigns Logical Domain Channels (LDCs) for each service and a client to facilitate a point-to-point communication between them. An attacker might exploit an error in any of the components to break the isolation of the guest domains. For example, an attacker might execute arbitrary code in the service domain or might disrupt normal operations on the platform.

Figure 1-2  Sample of Oracle VM Server for SPARC Environment

image:Graphic shows a common Oracle VM Server for SPARC environment with control domain providing services and hardware resources to a guest domain.