Sandnet: Towards High Quality of Deception in Container-based Microservice Architectures

被引:0
|
作者
Osman, Amr [1 ]
Brueckner, Pascal [1 ]
Salah, Hani [1 ]
Fitzek, Frank H. P. [1 ]
Strufe, Thorsten [1 ]
Fischer, Mathias [2 ]
机构
[1] Tech Univ Dresden, Dresden, Germany
[2] Univ Hamburg, Hamburg, Germany
关键词
Network Deception; Decoy Networks; Network Security; Live Network Sandboxing; Honeypots; Honeynets;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Responding to network security incidents requires interference with ongoing attacks to restore the security of services running on production systems. This approach prevents damage, but drastically impedes the collection of threat intelligence and the analysis of vulnerabilities, exploits, and attack strategies. We propose the live confinement of suspicious microservices into a sandbox network that allows to monitor and analyze ongoing attacks under quarantine and that retains an image of the vulnerable and open production network. A successful sandboxing requires that it happens completely transparent to and cannot be detected by an attacker. Therefore, we introduce a novel metric to measure the Quality of Deception (QoD) and use it to evaluate three proposed network deception mechanisms. Our evaluation results indicate that in our evaluation scenario in best case, an optimal QoD is achieved. In worst case, only a small downtime of approx. 3s per microservice (MS) occurs and thus a momentary drop in QoD to 70.26% before it converges back to optimum as the quarantined services are restored.
引用
收藏
页数:7
相关论文
共 50 条
  • [1] Container-based Microservice Architecture for Cloud Applications
    Singh, Vindeep
    Peddoju, Sateesh K.
    [J]. 2017 IEEE INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION AND AUTOMATION (ICCCA), 2017, : 847 - 852
  • [2] Serverless computing for container-based architectures
    Perez, Alfonso
    Molto, German
    Caballer, Miguel
    Calatrava, Amanda
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 83 : 50 - 59
  • [3] HACM: High Availability Control Method in Container-Based Microservice Applications Over Multiple Clusters
    Ramasamy, Boopathi
    Na, Yeonjoo
    Kim, Weonsu
    Chea, Kyoungbeom
    Kim, Jun
    [J]. IEEE ACCESS, 2023, 11 : 3461 - 3471
  • [4] HoneyFactory: Container-Based Comprehensive Cyber Deception Honeynet Architecture
    Yu, Tianxiang
    Xin, Yang
    Zhang, Chunyong
    [J]. ELECTRONICS, 2024, 13 (02)
  • [5] Multi-Objective Optimization of Container-Based Microservice Scheduling in Edge Computing
    Fan, Guisheng
    Chen, Liang
    Yu, Huiqun
    Qi, Wei
    [J]. COMPUTER SCIENCE AND INFORMATION SYSTEMS, 2021, 18 (01) : 23 - 42
  • [6] Towards Container-Based Resource Management for the Internet of Things
    Renner, Thomas
    Meldau, Marius
    Kliem, Andreas
    [J]. 2016 INTERNATIONAL CONFERENCE ON SOFTWARE NETWORKING (ICSN), 2016, : 61 - 65
  • [7] Towards a container-based architecture for CMS data acquisition
    Amoiridis, Vassileios
    Behrens, Ulf
    Bocci, Andrea
    Branson, James
    Brummer, Philipp
    Cano, Eric
    Cittolin, Sergio
    Da Quintanilha, Joao Da Silva Almeida
    Darlea, Georgiana-Lavinia
    Deldicque, Christian
    Dobson, Marc
    Dvorak, Antonin
    Gigi, Dominique
    Glege, Frank
    Gomez-Ceballos, Guillelmo
    Gorniak, Patrycja
    Neven, Gutic
    Hegeman, Jeroen
    Moreno, Guillermo Izquierdo
    James, Thomas Owen
    Karimeh, Wassef
    Kartalas, Miltiadis
    Krawczyk, Rafal Dominik
    Li, Wei
    Long, Kenneth
    Meijers, Frans
    Meschi, Emilio
    Morovic, Srecko
    Orsini, Luciano
    Paus, Christoph
    Petrucci, Andrea
    Pieri, Marco
    Rabady, Dinyar Sebastian
    Racz, Attila
    Rizopoulos, Theodoros
    Sakulin, Hannes
    Schwick, Christoph
    Simelevicius, Dainius
    Tzanis, Polyneikis
    Velez, Cristina Vazquez
    Zejdl, Petr
    Zhang, Yousen
    Zogatova, Dominika
    [J]. 26TH INTERNATIONAL CONFERENCE ON COMPUTING IN HIGH ENERGY AND NUCLEAR PHYSICS, CHEP 2023, 2024, 295
  • [8] An optimal defensive deception framework for the container-based cloud with deep reinforcement learning
    Li, Huanruo
    Guo, Yunfei
    Sun, Penghao
    Wang, Yawen
    Huo, Shumin
    [J]. IET INFORMATION SECURITY, 2022, 16 (03) : 178 - 192
  • [9] Fault-tolerant Permanent Storage for Container-based Fog Architectures
    Bakhshi, Zeinab
    Rodriguez-Navas, Guillermo
    Hansson, Hans
    [J]. 2021 22ND IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL TECHNOLOGY (ICIT), 2021, : 722 - 729
  • [10] Ant Colony Algorithm for Multi-Objective Optimization of Container-Based Microservice Scheduling in Cloud
    Lin, Miao
    Xi, Jianqing
    Bai, Weihua
    Wu, Jiayin
    [J]. IEEE ACCESS, 2019, 7 : 83088 - 83100