A Continuous Certification Methodology for DevOps

被引:5
作者
Anisetti, Marco [1 ]
Ardagna, Claudio A. [1 ]
Gaudenzi, Filippo [1 ]
Damiani, Ernesto [2 ]
机构
[1] Univ Milan, Milan, Italy
[2] Khalifa Univ, Abu Dhabi, U Arab Emirates
来源
11TH INTERNATIONAL CONFERENCE ON MANAGEMENT OF DIGITAL ECOSYSTEMS (MEDES) | 2019年
基金
欧盟地平线“2020”;
关键词
Assurance; Certification; DevOps;
D O I
10.1145/3297662.3365827
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The cloud paradigm has revolutionized the way in which software systems are designed, managed, and maintained. With the advent of the microservice architecture, this trend was brought to the extreme, pushing the whole software development process towards unification of software development (Dev) and software operation (Ops). This rapid evolution has not immediately found counterparts in assurance techniques, where the evaluation of the non-functional behavior of a software system and of the software development process are completely decoupled. In this paper, we put forward the idea that next-generation assurance techniques, and more specifically certification techniques, must evaluate a software system throughout the whole development process. To this aim, we define a continuous certification scheme for DevOps that evaluates the software artifacts produced at each stage of the development process. We then present the assurance framework managing our certification scheme and experimentally evaluate the continuous certification scheme in a real DevOps scenario.
引用
收藏
页码:205 / 212
页数:8
相关论文
共 25 条
[1]   Modeling time, probability, and configuration constraints for continuous cloud service certification [J].
Anisetti, M. ;
Ardagna, C. A. ;
Damiani, E. ;
El Ioini, N. ;
Gaudenzi, F. .
COMPUTERS & SECURITY, 2018, 72 :234-254
[2]  
Anisetti M., 2017, IEEE TSC
[3]   Test-Based Security Certification of Composite Services [J].
Anisetti, Marco ;
Ardagna, Claudio ;
Damiani, Ernesto ;
Polegri, Gianluca .
ACM TRANSACTIONS ON THE WEB, 2019, 13 (01)
[4]  
Anisetti Marco, 2015, P IEEE CLOUD 2015
[5]  
Anisetti Marco, 2011, P SCC 2011
[6]  
[Anonymous], 2016, P 31 ANN ACM S APPL
[7]   From Security to Assurance in the Cloud: A Survey [J].
Ardagna, Claudio A. ;
Asal, Rasool ;
Damiani, Ernesto ;
Quang Hieu Vu .
ACM COMPUTING SURVEYS, 2015, 48 (01)
[8]  
Baharom Fauziah, 2011, P ICEEI 2011
[9]  
Bass Len, 2015, P RELENG
[10]   Francois Raynaud on DevSecOps [J].
Carter, Kim .
IEEE SOFTWARE, 2017, 34 (05) :93-96