Blockchain-based decentralized content trust for docker images

被引:0
作者
Quanqing Xu
Chao Jin
Mohamed Faruq Bin Mohamed Rasid
Bharadwaj Veeravalli
Khin Mi Mi Aung
机构
[1] A*STAR,Data Storage Institute
来源
Multimedia Tools and Applications | 2018年 / 77卷
关键词
Trust; Docker; Blockchain; Multimedia; Internet of things;
D O I
暂无
中图分类号
学科分类号
摘要
It is feasible to deploy Docker containers in IoT (Internet of Things) devices because their runtime overhead is almost zero. Default Docker installation does not verify an image authenticity. Authentication is vital for users to trust that the image is not malicious or tampered with. As Docker is currently a popular choice for developers, tightening its security is a priority for system administrators and DevOps engineers. Docker recently deployed Notary as a solution to verify authenticity of their images. Notary is a viable solution, but it has some potential threats. This paper specifically addresses its vulnerability towards Denial-of-Service (DoS) attacks, and propose a potential solution: blockchain-based Decentralized Docker Trust (DDT). The proposed solution involves decentralizing the trust via a blockchain. The solution greatly reduces the risk of DoS and at the same time provides a signature verification service for Docker images. We demonstrate the proposed blockchain-based solution’s scalability and efficiency by conducting performance evaluation. At the same time, we also implemented a system prototype of Decentralized Docker Trust (DDT), and conducted performance evaluation for it on Amazon Web Services (AWS) across multiple data centers.
引用
收藏
页码:18223 / 18248
页数:25
相关论文
共 18 条
  • [1] Chang V(2015)Towards a big data system disaster recovery in a private cloud Ad Hoc Netw 35 65-82
  • [2] Chang V(2017)A cybernetics social cloud J Syst Softw 124 195-211
  • [3] Chang V(2016)A model to compare cloud and non-cloud storage of big data Futur Gener Comput Syst 57 56-76
  • [4] Wills G(2016)Cloud computing adoption framework: a security framework for business clouds Futur Gener Comput Syst 57 24-41
  • [5] Chang V(2014)Docker: lightweight linux containers for consistent development and deployment Linux J 2014 2-2814
  • [6] Kuo YH(2016)A scalable framework for provisioning large-scale iot deployments ACM Trans. Internet Technol. (TOIT) 16 11-86
  • [7] Ramachandran M(2016)Building a large-scale object-based active storage platform for data analytics in the internet of things J Supercomput 72 2796-undefined
  • [8] Merkel D(2014)Towards trust and trust building in a selected cloud gaming virtual community Int J Org Collect Intell (IJOCI) 4 64-undefined
  • [9] Vögler M(undefined)undefined undefined undefined undefined-undefined
  • [10] Schleicher JM(undefined)undefined undefined undefined undefined-undefined