Securing CHEESEHub: A Cloud-based, Containerized Cybersecurity Education Platform

被引:0
|
作者
Lambert, Mike [1 ]
Kalyanam, Rajesh [2 ]
Kooper, Rob [1 ]
Yang, Baijian [3 ]
机构
[1] Univ Illinois, Natl Ctr Supercomp Applicat, Urbana, IL 61801 USA
[2] Purdue Univ, Res Comp, W Lafayette, IN USA
[3] Purdue Univ, Dept Comp & Informat Technol, W Lafayette, IN USA
基金
美国国家科学基金会;
关键词
cybersecurity; containers; cloud computing; Kubernetes;
D O I
10.1145/3437359.3465584
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
The Cyber Human Ecosystem for Engaged Security Education (CHEESEHub) is an open web platform that hosts community-contributed containerized demonstrations of cybersecurity concepts. In order to maximize flexibility, scalability, and utilization, CHEESEHub is currently hosted in a Kubernetes cluster on the Jetstream academic cloud. In this short paper, we describe the security model of CHEESEHub and specifically the various Kubernetes security features that have been leveraged to secure CHEESEHub. This ensures that the various cybersecurity exploits hosted in the containers cannot be misused, and that potential malicious users of the platform are cordoned off from impacting not just other legitimate users, but also the underlying hosting cloud. More generally, we hope that this article will provide useful information to the research computing community on a less discussed aspect of cloud deployment: the various security features of Kubernetes and their application in practice.
引用
收藏
页数:4
相关论文
共 50 条
  • [1] A Cloud-based platform for the emulation of complex cybersecurity scenarios
    Furfaro, Angelo
    Piccolo, Antonio
    Parise, Andrea
    Argento, Luciano
    Sacca, Domenico
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 89 : 791 - 803
  • [2] NEARBY Platform for Detecting Asteroids in Astronomical Images Using Cloud-based Containerized Applications
    Bacu, Victor
    Sabou, Adrian
    Stefanut, Teodor
    Gorgan, Dorian
    Vaduvescu, Ovidiu
    [J]. 2018 IEEE 14TH INTERNATIONAL CONFERENCE ON INTELLIGENT COMPUTER COMMUNICATION AND PROCESSING (ICCP), 2018, : 371 - 376
  • [3] Access management and Data path prediction for securing cloud-based services and enhancing cybersecurity solutions
    Abdulkader, Omar
    Bamhdi, Alwi M.
    Thayananthan, Vijey
    Jambi, Kamal
    Al-Rami, Bandar
    [J]. INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2018, 18 (10): : 11 - 18
  • [4] A cloud-based experiment platform for computer-based education
    Liu, Yu
    Li, Bo
    Niu, Jianwei
    Cao, Qinghua
    [J]. 2014 IEEE/ACM 7TH INTERNATIONAL CONFERENCE ON UTILITY AND CLOUD COMPUTING (UCC), 2014, : 626 - 629
  • [5] UZEP: A CLOUD-BASED DISTANCE EDUCATION PLATFORM FOR HIGHER EDUCATION INSTITUTIONS
    Kaynak, Dr. Baran
    Tuna, Osman
    Ozbek, Ugur
    Aksoy, Ali
    Ozmen, Ahmet
    Horzum, M. Baris
    Gol, Burak
    [J]. TURKISH ONLINE JOURNAL OF DISTANCE EDUCATION, 2023, 24 (04): : 220 - 237
  • [6] Containerized cloud-based honeypot deception for tracking attackers
    Priya, V. S. Devi
    Chakkaravarthy, S. Sibi
    [J]. SCIENTIFIC REPORTS, 2023, 13 (01)
  • [7] Containerized cloud-based honeypot deception for tracking attackers
    V. S. Devi Priya
    S. Sibi Chakkaravarthy
    [J]. Scientific Reports, 13
  • [8] A CLOUD-BASED PLATFORM SUPPORTING GEOSPATIAL COLLABORATION FOR GIS EDUCATION
    Cheng, Xiaoqiang
    Gui, Zhipeng
    Hu, Kai
    Gao, Shuang
    Shen, Ping
    Wu, Huayi
    [J]. ISPRS Workshop of Commission VI 1-3, Advances in Web-based Education Services, 2015, 46 (W1): : 1 - 4
  • [9] Design of Cloud-Based Education Resource Operation and Open Platform
    Wang Yafei
    Wang Xin
    Qin Xiaoya
    Peng Jiusheng
    [J]. INFORMATION TECHNOLOGY APPLICATIONS IN INDUSTRY II, PTS 1-4, 2013, 411-414 : 432 - +
  • [10] Towards Adaptive Cloud-based Platform for Robotic Assistants in Education
    Magyar, Gergely
    Cadrik, Tomas
    Vircikova, Maria
    Sincak, Peter
    [J]. 2014 IEEE 12TH INTERNATIONAL SYMPOSIUM ON APPLIED MACHINE INTELLIGENCE AND INFORMATICS (SAMI), 2014, : 285 - 289