Secure static detection method and device for containerized deployment application

A security detection and static detection technology, applied in computer security devices, program control devices, instruments, etc., can solve problems such as inability to detect security risks, and achieve the effect of flexible adjustment, avoiding security risks, and achieving uniformity

Active Publication Date: 2021-03-26
CCB FINTECH CO LTD
View PDF5 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

It can be seen that the existing methods cannot detect the related security risks caus

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Secure static detection method and device for containerized deployment application
  • Secure static detection method and device for containerized deployment application
  • Secure static detection method and device for containerized deployment application

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0035] In order to better understand the present invention, the technical solutions in the embodiments of the present invention will be described in connection with the drawings in the embodiments of the present invention, and the embodiments described herein will be clearly understood. It is an embodiment of the invention, not all of the embodiments. Based on the embodiments in the present invention, those of ordinary skill in the art will belong to the scope of the invention in the present invention without making in the pre-creative labor premise.

[0036] Those skilled in the art will appreciate that embodiments of the present invention can be provided as a method, system, or computer program product. Accordingly, the present invention can be in the form of a fully hardware embodiment, a full software embodiment, or a combination of software and hardware aspects. Moreover, the present invention can be in the form of a computer program product implemented in one or more compute...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a security static detection method and device for containerized deployment application. The method comprises the following steps: acquiring a preset security detection rule; and according to the security detection rule, adopting a static code scanning method to detect environment configuration of a first container and configuration information of an application deployed ina second container, wherein a logic code of the application is deployed in the first container. The logic code of the application is deployed in the first container, the configuration file of the application is deployed in the second container, strong binding of the configuration file and the logic code is decoupled, uniformity and standardization of security detection are achieved, flexible adjustment of the logic code and container resources of the application is better supported. According to the invention, security detection after modification can be carried out on the configuration file involved in the containerized deployment application, and related security risks of the running application due to adjustment of related configurations can be avoided.

Description

Technical field [0001] The present invention relates to the field of safety testing, and in particular, there is a safety static detection method and apparatus for container deployment applications. Background technique [0002] Currently applied safety detection methods for commonly used static code scans. Static code scan focuses on the detection of the risk contents such as language specification, cryptographic text, SQL variables in the application logic code. At present, the static code scanning method is mainly detected by the application's profile before applying the deployment. The application logic code will not be checked again when the application logic code is deployed. It can be seen that the existing method cannot detect security risks in the application run due to the adjustment of the configuration file. Inventive content [0003] In order to solve at least one of the above-described background techniques, a safe static detection method and apparatus for containe...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): G06F9/455G06F21/56
CPCG06F9/45558G06F21/562G06F2009/45587G06F2009/45591G06F2221/033
Inventor 崔杰杨永刘禹邢磊舒展
Owner CCB FINTECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products