Invention Grant
- Patent Title: Kernel-based power consumption and isolation and defense against emerging power attacks
-
Application No.: US15638694Application Date: 2017-06-30
-
Publication No.: US11669426B2Publication Date: 2023-06-06
- Inventor: Xing Gao , Zhongshu Gu , Mehmet Kayaalp , Dimitrios Pendarakis
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agent Jeffrey S. LaBaw; David H. Judson
- Main IPC: G06F11/30
- IPC: G06F11/30 ; G06F1/3203 ; G06F1/3234 ; G06F21/81 ; G06F21/53 ; G06F9/455 ; G06F11/34 ; G06F21/75 ; G06F1/3206 ; G06F1/3296 ; H04L9/40

Abstract:
A system and method for achieving power isolation across different cloud tenants and workloads is provided. The system includes a model of per-workload power consumption and an approach for attributing power consumption for each container. It allows a cloud provider to detect abnormally high power usage caused by specific containers and/or tenants, and to neutralize the emerging power attacks that exploit information leakages in the public container cloud. The approach also enables the provider to bill tenants for their specific power usage. Thus, the technique herein provides a mechanism that operates to attribute power consumption data for each container to defend against emerging power attacks, as well as to make it feasible to develop a cloud billing model based on power usage. The mechanism defends against emerging power attacks in container cloud offerings by implementing in a power-based namespace workflow in an OS kernel. The namespace workflow partitions the power consumption information for each container.
Public/Granted literature
- US20190004917A1 Kernel-based power consumption and isolation and defense against emerging power attacks Public/Granted day:2019-01-03
Information query