Amr A. Mohallel
Experimenting with docker: Linux container and baseos attack surfaces
Mohallel, Amr A.; Bass, Julian; Dehghantaha, Ali
Abstract
Linux containers showed great superiority when compared to virtual machines and hypervisors in terms of networking, disk and memory management, start-up and compilation speed, and overall processing performance. In this research, we are questioning whether it is more secure to run services inside Linux containers than running them directly on a host base operating system or not. We used Docker v1.10 to conduct a series of experiments to assess the attack surface of hosts running services inside Docker containers compared to hosts running the same services on the base operating system represented in our paper as Debian Jessie. Our vulnerability assessment shows that using Docker containers increase the attack surface of a given host, not the other way around.
Presentation Conference Type | Conference Paper (published) |
---|---|
Start Date | Oct 10, 2016 |
End Date | Oct 13, 2016 |
Online Publication Date | Feb 16, 2017 |
Publication Date | 2017 |
Deposit Date | Dec 18, 2023 |
Publisher | Institute of Electrical and Electronics Engineers |
DOI | https://doi.org/10.1109/i-Society.2016.7854163 |
You might also like
Managing non‐functional requirements in agile software development
(2021)
Journal Article
An architecture governance approach for Agile development by tailoring the Spotify model
(2021)
Journal Article
Overcoming team boundaries in agile software development
(2021)
Journal Article
Scrum for product innovation : a longitudinal embedded case study
(2018)
Journal Article