Vulnerability Analysis and Security Research of Docker Container

Vulnerability Analysis and Security Research of Docker Container
复制标题

Docker容器的漏洞分析与安全研究

DOI:
--
复制
发表时间:
2020
期刊:
International Conference on Information Systems and Computer Aided Education
影响因子:
--
通讯作者:
Li Zheng
Li Zheng
中科院分区:
--
文献类型:
--
作者:
Wenhao Jiang;Li Zheng

文献摘要

被引文献

相似文献

Docker是一种开源应用程序集装箱引擎,使用户能够打包应用程序并依靠软件包到便携式容器中。但是,Docker也对安全感到担忧。本文从Docker漏洞的四个方面开始,包括文件系统隔离,过程和通信隔离,设备管理和主机资源约束,网络隔离和图像传输。与Linux内核的安全模块进行交互,以增强Docker的安全性,并采取积极有效的措施来增强Docker的安全性。本文介绍了当前Docker安全研究的一般图片,探索并研究了Docker安全研究的发展趋势,并为更好地应用Docker在生产中提供了良好的基础。
Docker is an open source application container engine that enables users to pack applications and rely on packages to portable containers. However, Docker also has concerns about security. This paper starts from four aspects of Docker vulnerability, including file system isolation, process and communication isolation, device management and host resource constraints, network isolation and image transmission. Interact with the security module of Linux kernel to enhance the security of Docker, and take active and effective measures to enhance the security of Docker. This paper presents a general picture of current Docker security research, explores and looks into the development trend of Docker security research, and lays a good foundation for the better application of Docker in production.