

Since the cloud computing is very dependent on the Internet connection, a malicious intruder can issue an attack on the cloud services from a remote site through the network to obtain benefits. In the cloud environment, in order to avoid attacks from malicious intruders, the most common solution is to use the firewall. Furthermore, the intrusion detection system is also often used to identify in depth the attack events. Two types of the intrusion detection system, HIDS and NIDS, are popularly used in defending the different kinds of attacks. This paper proposes an integrated intrusion detection system prototype conducted on the virtual machine manager (Hypervisor-Based Integrated Intrusion Detection System, HIIDS) that can keep the advantages of both HIDS and NIDS systems, and also can effectively solve the integration problems. The proposed prototype has two contributions. First, it timely monitors the communications among the virtual machines and Hypervisor to detect the possible inside threats. Second, the proposed system achieves a high practicality. Compared to other Hypervisor-based IDSs, our system can be easier realized and implemented.