SeCoNetBench: A modular framework for secure container networking benchmarks
Publikation: Beitrag in Buch/Konferenzbericht/Sammelband/Gutachten › Beitrag in Konferenzband › Beigetragen
Beitragende
Abstract
Container security, especially in the quest for controlled access and secured communication between containers, has spawned a multitude of implementations, based on various concepts and design choices. They are characterized by very different performance properties, which so far have not comprehensively been benchmarked nor compared in a fair manner. The emerging paradigm of moving execution to edge clouds requires both: efficiency in the light of ephemeral containers and mobility, and security in the face of resource sharing between various tenants at hosts of various providers. In this paper we introduce SeCoNetBench, a modular benchmarking platform for container network security, and compare the most prominent frameworks for access control and network isolation in the container ecosystem. The results demonstrate that trade-offs have to be made during infrastructure deployment, and we provide guidelines for designing high-performance secure container networking platforms in adversarial settings.
Details
Originalsprache | Englisch |
---|---|
Titel | Proceedings - 4th IEEE European Symposium on Security and Privacy Workshops, EUROS and PW 2019 |
Seiten | 21-28 |
Seitenumfang | 8 |
ISBN (elektronisch) | 9781728130262 |
Publikationsstatus | Veröffentlicht - 1 Juni 2019 |
Peer-Review-Status | Nein |
Externe IDs
Scopus | 85071924606 |
---|