• Complex
  • Title
  • Keyword
  • Abstract
  • Scholars
  • Journal
  • ISSN
  • Conference
搜索

Author:

Han, Y. (Han, Y..) | Li, C. (Li, C..) | Zhang, J. (Zhang, J..) | Wang, Y. (Wang, Y..) | Yu, L. (Yu, L..) | Cao, Y. (Cao, Y..) | Shen, H. (Shen, H..) | Hou, W. (Hou, W..) | Luo, H. (Luo, H..)

Indexed by:

EI Scopus SCIE

Abstract:

Hybrid deployment of containers with different kernel types offers a novel solution for cloud service providers. While extensive research has been conducted on shared kernel containers, the security risks associated with diverse kernel types in hybrid deployment scenarios present more complex challenges. Establishing trusted relationships from hardware to containers for hybrid deployment has become a primary concern. Additional challenges include the lack of measurement and communication methods for independent kernel containers and insufficient dynamic measurement capabilities for containers. To address these issues, we propose a novel approach of achieving secure hybrid deployment of containers through the provision of trusted assurance in three layers: container infrastructure, container application environment, and container runtime. We propose the corresponding measurement schemes for each trust layer. Through functional verification and performance evaluation, we demonstrate that our architecture exhibits improved feasibility and effectiveness. © 2024 Elsevier Ltd

Keyword:

Kata containers Container trust Cloud computing TEE Trusted Measurement Docker

Author Community:

  • [ 1 ] [Han Y.]College of Computer Science, Beijing University of Technology, Beijing, 100124, China
  • [ 2 ] [Han Y.]Beijing Key Laboratory of Trusted Computing, Beijing, 100124, China
  • [ 3 ] [Li C.]Ant Group, Beijing, China
  • [ 4 ] [Zhang J.]College of Computer Science, Beijing University of Technology, Beijing, 100124, China
  • [ 5 ] [Zhang J.]Beijing Key Laboratory of Trusted Computing, Beijing, 100124, China
  • [ 6 ] [Wang Y.]College of Computer Science, Beijing University of Technology, Beijing, 100124, China
  • [ 7 ] [Wang Y.]Beijing Key Laboratory of Trusted Computing, Beijing, 100124, China
  • [ 8 ] [Yu L.]College of Computer Science, Beijing University of Technology, Beijing, 100124, China
  • [ 9 ] [Yu L.]Beijing Key Laboratory of Trusted Computing, Beijing, 100124, China
  • [ 10 ] [Cao Y.]College of Computer Science, Beijing University of Technology, Beijing, 100124, China
  • [ 11 ] [Cao Y.]Beijing Key Laboratory of Trusted Computing, Beijing, 100124, China
  • [ 12 ] [Shen H.]The School of Engineering and Technology, Central Queensland University, Australia
  • [ 13 ] [Hou W.]Ant Group, Beijing, China
  • [ 14 ] [Luo H.]Ant Group, Beijing, China

Reprint Author's Address:

Email:

Show more details

Related Keywords:

Source :

Computers and Security

ISSN: 0167-4048

Year: 2025

Volume: 148

5 . 6 0 0

JCR@2022

Cited Count:

WoS CC Cited Count:

SCOPUS Cited Count:

ESI Highly Cited Papers on the List: 0 Unfold All

WanFang Cited Count:

Chinese Cited Count:

30 Days PV: 21

Affiliated Colleges:

Online/Total:350/10523258
Address:BJUT Library(100 Pingleyuan,Chaoyang District,Beijing 100124, China Post Code:100124) Contact Us:010-67392185
Copyright:BJUT Library Technical Support:Beijing Aegean Software Co., Ltd.