The adoption of containers in complex software systems is rapidly increasing, due to their flexibility that facilitates integration, scalability, and dynamic deployment. However, assessing the security of container-based applications remains challenging in distributed and heterogeneous environments: The scale and diversity of deployment scenarios call for sophisticated security evaluation and verification techniques. In this paper, we present Project SecCo (Securing Containers), whose aim is to develop an innovative framework for the systematic integration of security assessment services into the Continuous Integration and Continuous Delivery (CI/CD) DevOps pipeline. The framework orchestrates automatic services to prevent and reduce vulnerabilities in the design, implementation, and deployment phases, and to mitigate runtime attacks. This allows developers and IT operators to focus on integration and delivery, reducing security management tasks. Finally, the paper highlights the main research challenges for realizing this vision.
From Edge to Cloud: Securing Distributed Containerized Applications
Benedetti G.;Baldo M.;Miculan M.;Riccio V.;
2025-01-01
Abstract
The adoption of containers in complex software systems is rapidly increasing, due to their flexibility that facilitates integration, scalability, and dynamic deployment. However, assessing the security of container-based applications remains challenging in distributed and heterogeneous environments: The scale and diversity of deployment scenarios call for sophisticated security evaluation and verification techniques. In this paper, we present Project SecCo (Securing Containers), whose aim is to develop an innovative framework for the systematic integration of security assessment services into the Continuous Integration and Continuous Delivery (CI/CD) DevOps pipeline. The framework orchestrates automatic services to prevent and reduce vulnerabilities in the design, implementation, and deployment phases, and to mitigate runtime attacks. This allows developers and IT operators to focus on integration and delivery, reducing security management tasks. Finally, the paper highlights the main research challenges for realizing this vision.| File | Dimensione | Formato | |
|---|---|---|---|
|
From_Edge_to_Cloud_Securing_Distributed_Containerized_Applications.pdf
non disponibili
Licenza:
Non pubblico
Dimensione
596.48 kB
Formato
Adobe PDF
|
596.48 kB | Adobe PDF | Visualizza/Apri Richiedi una copia |
I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.


