Analysis of Docker Security

作者: Thanh Nhan Bui

DOI:

关键词: Linux kernelOrder (exchange)Host (network)VirtualizationComputer securitySecurity levelContainer (abstract data type)Virtual machineOperating systemComputer scienceInternal security

摘要: … In this paper, we analyze the security level of Docker [17], a … internal security of Docker, and (2) how Docker interacts with … security of Docker based on the level of isolation Docker can …

参考文章(12)
Pradeep Padala, Zhikui Wang, Kang G. Shin, Sharad Singhal, Xiaoyun Zhu, Performance Evaluation of Virtualization Technologies for Server Consolidation ,(2007)
Wayne Salamon, Chris Vance, Stephen Smalley, Implementing SELinux as a Linux Security Module ,(2003)
M. G. Xavier, M. V. Neves, F. D. Rossi, T. C. Ferreto, T. Lange, C. A. F. De Rose, Performance Evaluation of Container-Based Virtualization for High Performance Computing Environments parallel, distributed and network-based processing. pp. 233- 240 ,(2013) , 10.1109/PDP.2013.41
Benjamin R. Anderson, Amy K. Joines, Thomas E. Daniels, Xen worlds Proceedings of the 14th annual ACM SIGCSE conference on Innovation and technology in computer science education - ITiCSE '09. ,vol. 41, pp. 293- 297 ,(2009) , 10.1145/1562877.1562967
Wes Felter, Alexandre Ferreira, Ram Rajamony, Juan Rubio, An updated performance comparison of virtual machines and Linux containers international symposium on performance analysis of systems and software. pp. 171- 172 ,(2015) , 10.1109/ISPASS.2015.7095802
Elena Reshetova, Janne Karhunen, Thomas Nyman, N. Asokan, Security of OS-Level Virtualization Technologies nordic conference on secure it systems. pp. 77- 93 ,(2014) , 10.1007/978-3-319-11599-3_5
Stephen Soltesz, Herbert Pötzl, Marc E. Fiuczynski, Andy Bavier, Larry Peterson, Container-based operating system virtualization: a scalable, high-performance alternative to hypervisors european conference on computer systems. ,vol. 41, pp. 275- 287 ,(2007) , 10.1145/1272996.1273025
Virgil Gligor, Perry Wagle, Calton Pu, Steve Beattie, Crispin Cowan, Greg Kroah-Hartman, SubDomain: Parsimonious Server Security usenix large installation systems administration conference. pp. 355- 368 ,(2000)
Nathan Regola, Jean-Christophe Ducom, Recommendations for Virtualization Technologies in High Performance Computing ieee international conference on cloud computing technology and science. pp. 409- 416 ,(2010) , 10.1109/CLOUDCOM.2010.71
Scott Shenker, Ali Ghodsi, Matei Zaharia, Andy Konwinski, Anthony D. Joseph, Benjamin Hindman, Ion Stoica, Randy Katz, Mesos: a platform for fine-grained resource sharing in the data center networked systems design and implementation. pp. 295- 308 ,(2011) , 10.5555/1972457.1972488