For Security & Risk Professionals (Length: 9 pages)

October 16, 2009

Fear Of A Hyperjacked Planet

Hypervisor Security Flaws Get Press, But Operational Risks Matter More

by Andrew Jaquith

with Robert Whiteley, Alex Crumb, Margaret Ryan


Executive Summary (This is a document excerpt)

Asked to do more with less, CIOs are using virtualization to pack more services into fewer physical boxes, reduce energy consumption, and provide greater flexibility. But security and risk professionals worry that in the headlong rush to embrace virtualization, their companies may have failed to secure their new virtual infrastructures. Chief among these concerns include hyperjacking and the risks of deploying virtual machines (VMs) in the demilitarized zone (DMZ). Forrester feels hyperjacking fears are overblown. The real risks are operational. Virtual infrastructures can be kept secure by: 1) segregating administrative, hypervisor, and live-migration traffic away from production traffic; 2) keeping VMs with different security classifications on separate physical hosts; and 3) enforcing zone boundaries with separate hardware.

Buy Risk-Free

Download and print PDF immediately. Price: US $499

Our Money-Back Guarantee: If you are not completely satisfied, return it for a full refund within three weeks of your online purchase.

Already a Forrester Client?
Log in to read this document.

Add to cart

QUESTIONS

item1. What are security and risk professionals' primary concerns about virtualization?

item2. Are hypervisors secure?

item3. What kinds of attacks against virtual servers are possible?

item4. Are virtualized servers riskier than their physical counterparts?

item5. How important are traditional network zoning concepts in virtualized networks?

item6. What are prudent practices for deploying virtual servers?

item7. My infrastructure team wants to deploy virtual servers in the DMZ. Should we?

Find Documents In Related Categories

This document falls under the following categories. Click on a link below to find similar documents.

Analyst: Andrew Jaquith
Technology: Infrastructure Security, IT Infrastructure & Operations, Security & Risk, Security Operations, Systems Management
Geography: Asia Pacific, Europe, North America

Archived Teleconference:
corner border corner
Ratings and Comments
Rating: 10 out of 10
based on 1 ratings across all roles.
corner border corner