【24h】

Framework to Secure Docker Containers

机译:框架固定码头容器

获取原文

摘要

Docker is one the key component for application deployment using CI/CD pipelines. Wherever containers are going ot be used, Docker engine is always the first choice but on other hand security of the Docker images using which application is going to be deployed is always a concern. In cloud computing, validation of the Docker images security is a paramount. Containers virtualization which is based on operating system virtualization is not secure as hypervisor virtualization. In this paper we are proposing a framework which uses an architecture including plugins, CI/CD pipeline to deploy the application to ensure the security of application bundled as a Docker image. It is going to be referred from the starting of application development till the deployment including plugin for Docker build, bundling the application in form of images along with required libraries, pushing the images to Docker registry. Jenkin jobs are going to be used for getting the build and then for deployment. For validation, we came up with vulnerable Docker images and validated against our architecture having proposed model to compare the results. In later sections, we have also considered the containers security measures.
机译:Docker是使用CI / CD管道应用部署的关键组件。无论使用容器是否要使用OT OT,Docker引擎始终是第一个选择,但在使用哪个应用程序部署的Docker图像的其他手中始终是一个问题。在云计算中,Docker图像安全性的验证是至关重要的。基于操作系统虚拟化的集装箱虚拟化并不安全为虚拟机管理程序虚拟化。在本文中,我们提出了一种使用包含插件,CI / CD管道的架构的框架来部署应用程序,以确保将应用程序捆绑为码头图像。它将从应用程序开发开始,直到部署包括用于Docker构建的插件,以图像形式捆绑应用程序以及所需的库,将图像推向Docker注册表。 Jenkin作业将用于获得构建,然后用于部署。为了验证,我们提出了易受攻击的Docker图像,并针对具有所提出的模型的架构验证,以比较结果。在后期的部分中,我们还考虑了容器的安全措施。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号