Barcelona, Spain
October 25-28, 2016

Event Details

Please note: All times listed below are in Central Time Zone


A Survey of Container Security in 2016: A Security Update on Container Platforms

As the use of containers continues unabated, including in OpenStack projects like Kolla, Magnum, Kuryr, and others, it's important for developers and operators alike to understand where we stand in 2016 on container security. We had reviewed Docker engine security in a public cloud context at the OpenStack Tokyo Summit in 2015. A year has passed, and we want to look more broadly across the container ecosystem at recent security improvements and remaining open items.

We'll bring attendees up to speed on the core aspects of container security, and talk about ongoing work occurring in upstream open source communities since the Tokyo Summit. We'll also look at reports like the NCC Group report covering LXC, rkt, and Docker, noting valuable recommendations and topics along the way.

We will also discuss our own open source work to improve container security and to provide tools for improving application security for operators and developers alike.


What can I expect to learn?

Attendees will learn how isolation and secure capabilities are being added to various container execution platforms like LXC, rkt, and Docker, and what they should know about remaining weaknesses across these platforms as well as improvements that are underway for both host isolation, application isolation, and application security principles.

Wednesday, October 26, 11:25am-12:05pm (9:25am - 10:05am UTC)
Difficulty Level: Intermediate
IBM
Phil is a Senior Technical Staff Member with IBM's Cloud Open Technologies team. The Open Technology team leads IBM's strategy and involvement in key cloud open source technologies, including Docker, Cloud Foundry, and Openstack. Phil is a core contributor and maintainer on the Docker engine project and is a leader and expert within IBM on container and cloud... FULL PROFILE
IBM
Salman Baset is working as a Research Staff Member at IBM T. J. Watson Research Center. His recent work at IBM has been focused on Docker security, securing IBM Containers service, as well as securing customer workloads running inside containers. His expertise also includes cloud performance, where he led the design and implementation of SPEC IaaS Cloud 2016, the first industry standard cloud... FULL PROFILE