Safety inspection and repair tool, method and equipment for Docker container

A docker container and security inspection technology, applied in the computer field, can solve the problems of long time and low efficiency, and achieve the effect of ensuring security and improving the efficiency of security inspection.

Pending Publication Date: 2021-04-06
北京浪潮数据技术有限公司
View PDF0 Cites 1 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] The purpose of this application is to provide a security inspection and repair tool, method, device, and readable storage medium for a Docker container to solve the problem that the current security inspection of the Docker container is based on manual implementation, takes a long time, and has low efficiency

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Safety inspection and repair tool, method and equipment for Docker container
  • Safety inspection and repair tool, method and equipment for Docker container
  • Safety inspection and repair tool, method and equipment for Docker container

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0041] The following introduces the embodiment of a security inspection and repair tool for a Docker container provided by the present application, see figure 1 , embodiment one includes:

[0042] The security check module is used to scan and repair Docker containers for vulnerabilities;

[0043] The security configuration module is used to configure the security of the daemon process and logs of the Docker container;

[0044] The security audit module is used to audit the usage of the daemon process, files and directories of the Docker container;

[0045] A resource limit module, used to set system resources used by Docker containers;

[0046] The access control module is used to set the access authority of the daemon process of the Docker container.

[0047] As a specific implementation manner, this embodiment may further include:

[0048] The security specification update module is used to update the security specification of the Docker container.

[0049] As mentioned...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a safety inspection and repair tool for a Docker container. The safety inspection and repair tool comprises a safety inspection module, a safety configuration module, a safety auditing module, a resource limiting module and an access control module. Through division cooperation of the sum of the modules, the tool automatically detects security holes of the Docker container and performs security configuration, security audit, resource limitation and access control on the Docker container, so that the security check efficiency of the Docker container is remarkably improved, and the security of the Docker container is ensured. In addition, the invention further provides a Docker container safety checking and repairing method and device and a readable storage medium, and the technical effect of the Docker container safety checking and repairing method and device corresponds to the technical effect of the tool.

Description

technical field [0001] The present application relates to the field of computer technology, in particular to a security check and repair tool, method, device and readable storage medium for a Docker container. Background technique [0002] Docker is an advanced LXC-based container engine open sourced by the PaaS provider dotCloud. The source code is hosted on Github, based on the go language and open source under the Apache2.0 protocol. Docker has been very popular since 2013, whether it is from the code activity on github, or Redhat's integration of Docker support in RHEL6.5, and even Google's Compute Engine also supports docker to run on it. [0003] Docker provides great convenience for the project, but as an application, Docker itself has code defects in its implementation. CVE officially records more than 20 vulnerabilities in the historical versions of Docker. Attack methods commonly used by hackers mainly include code execution, privilege escalation, information lea...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F21/57G06F9/455
CPCG06F9/45558G06F21/577G06F2009/45587
Inventor 李永杰
Owner 北京浪潮数据技术有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products