CONSERVE: A framework for the selection of techniques for monitoring containers security
Artikel i vetenskaplig tidskrift, 2022

Context: Container-based virtualization is gaining popularity in different domains, as it supports continuous development and improves the efficiency and reliability of run-time environments. Problem: Different techniques are proposed for monitoring the security of containers. However, there are no guidelines supporting the selection of suitable techniques for the tasks at hand. Objective: We aim to support the selection and design of techniques for monitoring container-based virtualization environments. Approach: First, we review the literature and identify techniques for monitoring containerized environments. Second, we classify these techniques according to a set of categories, such as technical characteristic, applicability, effectiveness, and evaluation. We further detail the pros and cons that are associated with each of the identified techniques. Result: As a result, we present CONSERVE, a multi-dimensional decision support framework for an informed and optimal selection of a suitable set of container monitoring techniques to be implemented in different application domains. Evaluation: A mix of eighteen researchers and practitioners evaluated the ease of use, understandability, usefulness, efficiency, applicability, and completeness of the framework. The evaluation shows a high level of interest, and points out to potential benefits.

virtualization

Software and systems engineering

intrusion detection

security

container monitoring

attack analysis

Författare

Rodi Jolak

Göteborgs universitet

Volvo Cars

Thomas Rosenstatter

RISE Research Institutes of Sweden

Nätverk och System

Mazen Mohamad

Göteborgs universitet

Kim Strandberg

Nätverk och System

Volvo Cars

Behrooz Sangchoolie

RISE Research Institutes of Sweden

Nasser Nowdehi

Volvo Cars

Riccardo Scandariato

Technische Universität Hamburg-Harburg (TUHH)

Journal of Systems and Software

0164-1212 (ISSN)

Vol. 186 111158

Datasäkerhet för fordonssystem i en föränderlig miljö - fas 1 (CyReV)

VINNOVA (2018-05013), 2019-04-01 -- 2021-03-31.

Datasäkerhet för fordonssystem i en föränderlig miljö (CyReV fas 2)

VINNOVA (2019-03071), 2019-01-10 -- 2022-03-31.

Styrkeområden

Informations- och kommunikationsteknik

Transport

Ämneskategorier

Inbäddad systemteknik

Datavetenskap (datalogi)

Datorsystem

DOI

10.1016/j.jss.2021.111158

Mer information

Senast uppdaterat

2022-04-12