Security Analysis and Threats Detection Techniques on Docker Container

Security Analysis and Threats Detection Techniques on Docker Container
复制标题

Docker容器安全分析与威胁检测技术

DOI:
--
复制
发表时间:
2019
期刊:
International Conference on Innovative Computing and Cloud Computing
影响因子:
--
通讯作者:
Cheng Huang
Cheng Huang
中科院分区:
--
文献类型:
--
作者:
Delu Huang;Handong Cui;Shihao Wen;Cheng Huang

文献摘要

被引文献

相似文献

Docker Container Technology是一种新兴的虚拟化技术,尽管Docker Container Technology比传统的虚拟化技术(Virtual Machine)在开发和部署的阶段中具有很高的效率。释放图像,以保护主机计算机或本地码头容器的安全性免受恶意码头容器的攻击,必须检测到码头图像中存在的潜在威胁并在主机计算机中运行Docker容器实例时发现风险。本文对Docker现有的安全机制进行了详细的分析,Docker用户必须面对的主要威胁。
Docker container technology is an emerging virtualization technology which has a very high efficiency in the phases of development and deployment. Although Docker container technology shows better convenience than traditional virtualization technology—virtual machine, it suffers the poor security due to the unmatured auditing procedures of Docker image releasing. Thus, to protect the security of host computer or local Docker containers from the attacks of malicious Docker containers, it is necessary to detect the potential threats existing in Docker images and find the risks when Docker container instances run in the host computer. This paper gives a detailed analysis on Docker’s existing security mechanisms and the main threats Docker users must face. Finally, the corresponding threats detection techniques for Docker images and Docker container instances are presented, and the experiment result proves the effectivity of the proposed detection framework.