Addressing the Most Common Security Risks in Data Center Virtualization Projects

G00173434

Analyst(s):

Purchase this Document

Price: $95.00 USD (PAGES: 9)

You will need to create an account on Gartner.com.

Summary

Virtualization isn't inherently insecure, but in many cases, it is being deployed insecurely. Here, we summarize the most frequently occurring security risks associated with virtualization and provide specific advice to address each risk.

Table of Contents

  • What You Need to Know
  • Analysis
    • Risk: Information Security Isn't Initially Involved in the Virtualization Projects
    • Recommendations
    • Risk: A Compromise of the Virtualization Layer Could Result in the Compromise of All Hosted Workloads
    • Recommendations
    • Risk: The Lack of Visibility and Controls on Internal Virtual Networks Created for VM-to-VM Communications Blinds Existing Security Policy Enforcement Mechanisms
    • Recommendations
    • Risk: Workloads of Different Trust Levels Are Consolidated Onto a Single Physical Server Without Sufficient Separation
    • Recommendations
    • Risk: Adequate Controls on Administrative Access to the Hypervisor/VMM Layer and to Administrative Tools Are Lacking
    • Recommendations
    • Risk: There Is a Potential Loss of SOD for Network and Security Controls
    • Recommendations
© 2010 Gartner, Inc. and/or its Affiliates. All Rights Reserved. Reproduction and distribution of this publication in any form without prior written permission is forbidden. The information contained herein has been obtained from sources believed to be reliable. Gartner disclaims all warranties as to the accuracy, completeness or adequacy of such information. Although Gartners research may discuss legal issues related to the information technology business, Gartner does not provide legal advice or services and its research should not be construed or used as such. Gartner shall have no liability for errors, omissions or inadequacies in the information contained herein or for interpretations thereof. The opinions expressed herein are subject to change without notice.

Not a Gartner Client?

Want more research like this?
Learn the benefits of becoming a Gartner client.

Contact us online

  Research

More  

Why Gartner

Gartner delivers the technology-related insight you need to make the right decisions, every day.

Find out more