Docker Security: Threat Model and Best Practices to Secure a Docker Container

M. Patra, Anisha Kumari, B. Sahoo, A. K. Turuk
{"title":"Docker Security: Threat Model and Best Practices to Secure a Docker Container","authors":"M. Patra, Anisha Kumari, B. Sahoo, A. K. Turuk","doi":"10.1109/iSSSC56467.2022.10051481","DOIUrl":null,"url":null,"abstract":"In recent years, virtualization technologies have seen dramatic growth in their levels of adoption. Because of this, the need for virtualization solutions that are both efficient and secure is becoming increasingly apparent. Virtualization technologies have emerged in the market in various forms, the most prominent of which are container and hypervisor-based virtualization. The demand for smaller development cycles, easier configuration management, continuous deployment and delivery, and cost reductions in cloud infrastructures led to the birth of containers. Containers are more versatile than VMs and give a better overall performance. Container-based virtualization has the potential to deliver a virtual environment that is lighter and more efficient, but it does not come without security problems. Docker is now the market leader among all container solutions. Docker is a platform that provides comprehensive packaging and software delivery. In this research, we analyze the security level of Docker, a well-known representative of container-based approaches. This research will also present Docker secure deployment guidelines. These guidelines will suggest different configurations to deploy Docker containers in a more secure way.","PeriodicalId":334645,"journal":{"name":"2022 IEEE 2nd International Symposium on Sustainable Energy, Signal Processing and Cyber Security (iSSSC)","volume":"19 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-12-15","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 IEEE 2nd International Symposium on Sustainable Energy, Signal Processing and Cyber Security (iSSSC)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/iSSSC56467.2022.10051481","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

In recent years, virtualization technologies have seen dramatic growth in their levels of adoption. Because of this, the need for virtualization solutions that are both efficient and secure is becoming increasingly apparent. Virtualization technologies have emerged in the market in various forms, the most prominent of which are container and hypervisor-based virtualization. The demand for smaller development cycles, easier configuration management, continuous deployment and delivery, and cost reductions in cloud infrastructures led to the birth of containers. Containers are more versatile than VMs and give a better overall performance. Container-based virtualization has the potential to deliver a virtual environment that is lighter and more efficient, but it does not come without security problems. Docker is now the market leader among all container solutions. Docker is a platform that provides comprehensive packaging and software delivery. In this research, we analyze the security level of Docker, a well-known representative of container-based approaches. This research will also present Docker secure deployment guidelines. These guidelines will suggest different configurations to deploy Docker containers in a more secure way.
Docker安全:保护Docker容器的威胁模型和最佳实践
近年来,虚拟化技术的采用水平有了显著的增长。因此,对既高效又安全的虚拟化解决方案的需求变得越来越明显。虚拟化技术以各种形式出现在市场上,其中最突出的是基于容器和管理程序的虚拟化。对更短的开发周期、更简单的配置管理、持续部署和交付以及云基础设施成本降低的需求导致了容器的诞生。容器比vm更通用,并且提供更好的整体性能。基于容器的虚拟化具有交付更轻、更高效的虚拟环境的潜力,但它并非没有安全问题。Docker现在是所有容器解决方案的市场领导者。Docker是一个提供全面打包和软件交付的平台。在本研究中,我们分析了Docker的安全级别,Docker是基于容器的方法的著名代表。本研究还将提出Docker安全部署指南。这些指导方针将建议以更安全的方式部署Docker容器的不同配置。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信