Show simple item record

dc.contributor.authorSæther, Didrik
dc.date.accessioned2018-10-19T07:42:47Z
dc.date.available2018-10-19T07:42:47Z
dc.date.issued2018-10-18
dc.date.submitted2018-10-17T22:00:03Z
dc.identifier.urihttps://hdl.handle.net/1956/18649
dc.description.abstractWith a constantly increasingly number of services in modern software systems (SOA and micro services), managing such service infrastructure becomes a challenge. Docker Swarm is a popular service orchestration solution that addressed this issue. This makes it a target for attacks, as the orchestrator is entrusted with critical information for a system. This thesis investigates the security of Docker Swarm and the underlying technologies used for providing a secure orchestration service. Despite the increasing popularity of Docker Swarm, the security properties of it are poorly understood. The security mechanisms that underpin Docker Swarm are not well documented if at all described. The custom protocols used in Docker Swarm for joining a swarm and rotating manager keys lack public security evaluation. This thesis aims to improve our understanding of the high-level security features of Docker Swarm by exploring several attack vectors that are likely to be pursued by a real-world attacker, such as MITM and DoS attacks. Results of investigation show that Docker Swarm provides a secure platform for service orchestration, as it is resilient towards selected high level attacks and follows best security practices.en_US
dc.language.isoengeng
dc.publisherThe University of Bergenen_US
dc.subjectPKIeng
dc.subjectDistributed architectureeng
dc.subjectDocker Swarmeng
dc.subjectSecurityeng
dc.subjectMTLSeng
dc.titleSecurity in Docker Swarm: orchestration service for distributed software systemsen_US
dc.typeMaster thesis
dc.date.updated2018-10-17T22:00:03Z
dc.rights.holderCopyright the Author. All rights reserveden_US
dc.description.degreeMasteroppgave i informatikken_US
dc.description.localcodeINF399
dc.subject.nus754199eng
fs.subjectcodeINF399
fs.unitcode12-12-0


Files in this item

Thumbnail

This item appears in the following Collection(s)

Show simple item record