Modern microservices need to quickly face changes both in terms of technology and requirements of users. To address such a challenging scenario, developers and IT operators should be able to concentrate on integration and delivery tasks, possibly without having to deal with security aspects. In this vein, the creation of architectures for supporting the DevOps pipeline is an important goal. Yet, assessing the security of containers is a difficult task, especially when considering distributed or large-scale deployments. To cope with such complexity, this paper presents the design of a hardening module for automatically securing containers. Such a mechanism is part of the framework envisioned in Project Securing Containers - SecCo, which aims at offloading the DevOps software development paradigm from security-related tasks.

Design of a Hardening Module for Automatically Securing Containers

Caviglione L.
2024

Abstract

Modern microservices need to quickly face changes both in terms of technology and requirements of users. To address such a challenging scenario, developers and IT operators should be able to concentrate on integration and delivery tasks, possibly without having to deal with security aspects. In this vein, the creation of architectures for supporting the DevOps pipeline is an important goal. Yet, assessing the security of containers is a difficult task, especially when considering distributed or large-scale deployments. To cope with such complexity, this paper presents the design of a hardening module for automatically securing containers. Such a mechanism is part of the framework envisioned in Project Securing Containers - SecCo, which aims at offloading the DevOps software development paradigm from security-related tasks.
2024
Istituto di Matematica Applicata e Tecnologie Informatiche - IMATI - Sede Secondaria Genova
CI/CD security
Container security
DevSecOps
File in questo prodotto:
File Dimensione Formato  
paper14.pdf

accesso aperto

Descrizione: Design of a Hardening Module for Automatically Securing Containers
Tipologia: Versione Editoriale (PDF)
Licenza: Creative commons
Dimensione 1.07 MB
Formato Adobe PDF
1.07 MB Adobe PDF Visualizza/Apri

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.14243/514685
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 0
  • ???jsp.display-item.citation.isi??? ND
social impact