Secure serverless computing using dynamic information flow control

Secure serverless computing using dynamic information flow control
复制标题

DOI:
10.1145/3276488
复制
发表时间:
2018-02
影响因子:
--
通讯作者:
Kalev Alpernas;C. Flanagan;Sadjad Fouladi;L. Ryzhyk;Shmuel Sagiv;Thomas Schmitz;Keith Winstein
Kalev Alpernas;C. Flanagan;Sadjad Fouladi;L. Ryzhyk;Shmuel Sagiv;Thomas Schmitz;Keith Winstein
中科院分区:
--
文献类型:
--
作者:
Kalev Alpernas;C. Flanagan;Sadjad Fouladi;L. Ryzhyk;Shmuel Sagiv;Thomas Schmitz;Keith Winstein

文献摘要

相似文献

无服务器计算的兴起提供了重新思考云安全的机会。我们提出了一种使用新形式的动态信息流控制(IFC)来保护无服务器系统的方法。我们表明,在无服务器应用程序中,大多数现有IFC系统中的终止通道可以通过多个并发请求任意放大,需要更强的终止敏感的非干扰保证,我们使用无服务器进程的静态标签和持久性数据的动态分面标签相结合来实现。我们在AWS Lambda和OpenWhisk无服务器平台的JavaScript之上描述了这种方法的实现,并提出了三个现实的案例研究,表明它可以以适度的开销实施重要的IFC安全属性。
The rise of serverless computing provides an opportunity to rethink cloud security. We present an approach for securing serverless systems using a novel form of dynamic information flow control (IFC). We show that in serverless applications, the termination channel found in most existing IFC systems can be arbitrarily amplified via multiple concurrent requests, necessitating a stronger termination-sensitive non-interference guarantee, which we achieve using a combination of static labeling of serverless processes and dynamic faceted labeling of persistent data. We describe our implementation of this approach on top of JavaScript for AWS Lambda and OpenWhisk serverless platforms, and present three realistic case studies showing that it can enforce important IFC security properties with modest overhead.