Run Time Container Security Hardening Using A Proposed Model Of Security Control Map
Dharmanandana Reddy Pothula, Krishna Mohan Kumar, V. Sanil Kumar · 2019 Global Conference for Advancement in Technology (GCAT) · 2019
Container technology shifted the cloud industry to a new level of operations and it comes with a cost to make it more secure! Security vulnerabilities solutions are very critical for not only public clouds but also private cloud setups where the attack originates within the cloud environments itself. Various methods are derived and being implemented in the domain of container security vulnerabilities but it is getting more complex as the cloud usage grows exponentially.This paper starts with a common understanding of container security and uses cases to illustrate security vulnerabilities in general. A detailed analysis of the vulnerabilities impact and container security is presented which will layout the controls, best practices and securing techniques. For Hardening security of runtime containers a security controls map is proposed. To give further insight the result from some experiments we have done in our lab is presented here with the control map proposed in comparison to the container deployments default.