Home > Ask the Security Experts > Platform Security Questions & Answers > Is desktop virtualization a realistic enterprise option?
Ask The Security Expert: Questions & Answers
EMAIL THIS

Is desktop virtualization a realistic enterprise option?

Michael Cobb EXPERT RESPONSE FROM: Michael Cobb

Pose a Question
Other Security Categories
Meet all Security Experts
Become an Expert for this site


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


>
QUESTION POSED ON: 11 January 2008
What kinds of benefits come from virtualization of the desktop specifically, and is it an option that enterprises should seriously consider?

>
EXPERT RESPONSE
Virtualization originated back in the 1960s as a way of making the most of expensive computer resources. However, the arrival of relatively cheap PCs greatly reduced the cost advantages of virtualization, and the technology fell out of favor as a means of delivering IT resources. Today the endless release of upgrades, patches and other updates has made maintaining even a handful of desktop PCs a time-consuming task. Because of the management issues, IT departments are once again looking at virtualization as a way to optimize IT resources.

Early versions of desktop virtualization completely removed the operating system from individual PCs and brought it to the data center, leaving just the input and display at the user's desk. The latest versions of desktop virtualization, dubbed desktop streaming, make full use of an individual PC's power for much of the processing. Each user has a complete operating system and application image running in a virtual machine on their desktop. The arrangement maintains the benefits of central management without dispensing with the desktop's power.

The main benefit of desktop virtualization is that it gives administrators the ability to provision PCs and other client devices with software from a central location. Administrators can deploy standardized desktop images to a variety of users, such as mobile workers who move in and out of the network, employees at branch offices and contractors. Out-of-compliance virtual machines can be quarantined, and those users can be forced to update their system. Desktop virtualization reduces the cost of on-site support, since an administrator can update the patch server, which will in turn automatically update clients when they call the application. The capacity to centrally lock down corporate environments while reducing costs is attractive.

Desktop virtualization may sound like terminal services, where servers run the applications and give users remote access. It is quite different, though. Servers host an entire desktop environment specific to each user. To address load-balancing or fail-over issues, virtualization also adds the ability to move desktop environments and hosted applications as needed. Application streaming provides even greater flexibility: a basic operating system image can be created, and then individual images for each application can be combined as needed on the fly. Application streaming greatly reduces the number of unique desktop images that are needed. It also gives a far better idea of which application licenses are really necessary.

Virtualization does require administrators to think differently about common tasks. A server that goes down can take multiple users down with it. Disk usage needs to be monitored carefully, as users will share the same drive space. By its nature, the technology adds complexity and requires news skills. And be aware that although virtualization makes locking down a network environment that much easier, it doesn't eliminate the threat posed by low-level malware on the host machine, such as keyloggers or rootkits.

More information:

  • Learn why some security experts at VMworld said that desktop virtualization, though useful, has a number of security drawbacks.
  • Check out other news and expert advice about virtualization security.


  • Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


    RELATED CONTENT
    Platform Security
    How to ensure the validity of Microsoft Windows updates
    Can DNS be used to support encryption?
    Are there software tools that can automate the server hardening process?
    How can 'DRAM remanence' compromise encryption keys?
    Should users have a removable boot drive for online banking?
    The unexpected costs of server virtualization?
    Is attack code valuable for vulnerabilities or just a publicity stunt?
    Will the features of Windows Vista SP1 encourage wider adoption of the OS?
    Is a Master Boot Record (MBR) rootkit completely invisible to the OS?
    What are the pros and cons of zero-knowledge penetration tests?

    Virtualization Security
    What risks do application virtualization products pose to enterprise security?
    VMware loses key security execs
    Virtual network tool gives firm view into virtualized environment
    Can virtualized applications interact with each other without explicit permission?
    IBM announcements mark two years of ISS marriage
    McAfee debuts protection for offline virtual environments
    Sourcefire adds VM protection to RNA, new appliance
    Product Review: Altor Networks' Virtual Network Security Analyzer (VNSA) 1.0
    Check Point adds virtual firewall appliance
    Initial virtualization costs could outweigh benefits

    RELATED RESOURCES
    2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
    Search Bitpipe.com for the latest white papers and business webcasts
    Whatis.com, the online computer dictionary



    Search and Browse the Expert Answer Center
    Search and browse more than 25,000 question and answer pairs from more than 250 TechTarget industry experts.
    Browse our Expert Advice



    Find Security Solutions for Your Business
    Targeted Security Channel Tips for Resellers, Integrators and Consultants
    TechTarget Security Media
    Information Security View this month\\'s issue and subscribe today.
    Information Security Decisions Apply online for free conference admission.
    SearchSecurity.com
    HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

    About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
    TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

    TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




    All Rights Reserved, Copyright 2003 - 2008, TechTarget | Read our Privacy Policy
      TechTarget - The IT Media ROI Experts