KGSecConfig: A Knowledge Graph Based Approach for Secured Container Orchestrator Configuration

12/21/2021
by   Mubin Ul Haque, et al.
0

Container Orchestrator (CO) is a vital technology for managing clusters of containers, which may form a virtualized infrastructure for developing and operating software systems. Like any other software system, securing CO is critical, but can be quite challenging task due to large number of configurable options. Manual configuration is not only knowledge intensive and time consuming, but also is error prone. For automating security configuration of CO, we propose a novel Knowledge Graph based Security Configuration, KGSecConfig, approach. Our solution leverages keyword and learning models to systematically capture, link, and correlate heterogeneous and multi-vendor configuration space in a unified structure for supporting automation of security configuration of CO. We implement KGSecConfig on Kubernetes, Docker, Azure, and VMWare to build secured configuration knowledge graph. Our evaluation results show 0.98 and 0.94 accuracy for keyword and learning-based secured configuration option and concept extraction, respectively. We also demonstrate the utilization of the knowledge graph for automated misconfiguration mitigation in a Kubernetes cluster. We assert that our knowledge graph based approach can help in addressing several challenges, e.g., misconfiguration of security, associated with manually configuring the security of CO.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
04/19/2020

Dynamic Knowledge Graph-based Dialogue Generation with Improved Adversarial Meta-Learning

Knowledge graph-based dialogue systems are capable of generating more in...
research
09/20/2023

Bravo MaRDI: A Wikibase Powered Knowledge Graph on Mathematics

Mathematical world knowledge is a fundamental component of Wikidata. How...
research
07/02/2019

Knowledge Graph Embedding for Ecotoxicological Effect Prediction

Exploring the effects a chemical compound has on a species takes a consi...
research
01/30/2019

Open Research Knowledge Graph: Next Generation Infrastructure for Semantic Scholarly Knowledge

Despite improved digital access to scholarly knowledge in recent decades...
research
12/23/2020

Design and Implementation of Curriculum System Based on Knowledge Graph

With the fact that the knowledge in each field in university is keeping ...
research
03/07/2023

SKGHOI: Spatial-Semantic Knowledge Graph for Human-Object Interaction Detection

Detecting human-object interactions (HOIs) is a challenging problem in c...

Please sign up or login with your details

Forgot password? Click here to reset