Securing Serverless Computing: Challenges, Solutions, and Opportunities

被引:7
|
作者
Li, Xing [3 ]
Leng, Xue [1 ,2 ]
Chen, Yan [4 ]
机构
[1] Xidian Univ, Hangzhou Inst Technol, Xian, Peoples R China
[2] Xidian Univ, Sch Cyber Engn, Xian, Peoples R China
[3] Zhejiang Univ, Hangzhou, Peoples R China
[4] Northwestern Univ, Evanston, IL USA
来源
IEEE NETWORK | 2023年 / 37卷 / 02期
关键词
Security; Serverless computing; Containers; Computational modeling; Virtualization; Monitoring; Task analysis;
D O I
10.1109/MNET.005.2100335
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Serverless computing is a new cloud service model that reduces both cloud providers' and consumers' costs through agile development, operation, and charging mechanisms. It has been widely applied since its emergence. Nevertheless, some characteristics of serverless computing, such as fragmented application boundaries, have raised new security challenges. Considerable literature has been committed to addressing these challenges. Commercial and open-source serverless platforms implement many security measures to enhance serverless environments. This article presents the first survey of serverless security that considers both the literature and industrial security measures. We summarize the primary security challenges, analyze corresponding solutions from the literature and industry, and identify potential research opportunities. Then, we conduct a gap analysis of the academic and industrial solutions, as well as commercial and open- source serverless platforms' security capabilities. Finally, we present a complete picture of current serverless security research.
引用
收藏
页码:166 / 173
页数:8
相关论文
共 50 条
  • [1] Serverless Computing: A Survey of Opportunities, Challenges, and Applications
    Shafiei, Hossein
    Khonsari, Ahmad
    Mousavi, Payam
    ACM COMPUTING SURVEYS, 2022, 54 (11S)
  • [2] Challenges and Opportunities for Efficient Serverless Computing at the Edge
    Gadepalli, Phani Kishore
    Peach, Gregor
    Cherkasova, Ludmila
    Aitken, Rob
    Parmer, Gabriel
    2019 IEEE 38TH INTERNATIONAL SYMPOSIUM ON RELIABLE DISTRIBUTED SYSTEMS (SRDS 2019), 2019, : 261 - 266
  • [3] Serverless Computing: State-of-the-Art, Challenges and Opportunities
    Li, Yongkang
    Lin, Yanying
    Wang, Yang
    Ye, Kejiang
    Xu, Chengzhong
    IEEE TRANSACTIONS ON SERVICES COMPUTING, 2023, 16 (02) : 1522 - 1539
  • [4] VALVE: Securing Function Workflows on Serverless Computing Platforms
    Datta, Pubali
    Kumar, Prabuddha
    Morris, Tristan
    Grace, Michael
    Rahmati, Amir
    Bates, Adam
    WEB CONFERENCE 2020: PROCEEDINGS OF THE WORLD WIDE WEB CONFERENCE (WWW 2020), 2020, : 939 - 950
  • [5] Mobile Edge Computing: Opportunities, solutions, and challenges
    Ahmed, Ejaz
    Rehmani, Mubashir Husain
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2017, 70 : 59 - 63
  • [6] Securing Fog Computing for Internet of Things Applications: Challenges and Solutions
    Ni, Jianbing
    Zhang, Kuan
    Lin, Xiaodong
    Shen, Xuemin
    IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2018, 20 (01): : 601 - 628
  • [7] Securing Cellular Infrastructure Challenges and Opportunities
    Traynor, Patrick
    IEEE SECURITY & PRIVACY, 2009, 7 (04) : 77 - 79
  • [8] Challenges and Opportunities of Amazon Serverless Lambda Services in Bioinformatics
    Crespo-Cepeda, Rodrigo
    Agapito, Giuseppe
    Luis Vazquez-Poletti, Jose
    Cannataro, Mario
    ACM-BCB'19: PROCEEDINGS OF THE 10TH ACM INTERNATIONAL CONFERENCE ON BIOINFORMATICS, COMPUTATIONAL BIOLOGY AND HEALTH INFORMATICS, 2019, : 663 - 668
  • [9] An Empirical Study on Challenges of Application Development in Serverless Computing
    Wen, Jinfeng
    Chen, Zhenpeng
    Liu, Yi
    Lou, Yiling
    Ma, Yun
    Huang, Gang
    Jin, Xin
    Liu, Xuanzhe
    PROCEEDINGS OF THE 29TH ACM JOINT MEETING ON EUROPEAN SOFTWARE ENGINEERING CONFERENCE AND SYMPOSIUM ON THE FOUNDATIONS OF SOFTWARE ENGINEERING (ESEC/FSE '21), 2021, : 416 - 428
  • [10] Challenges and Opportunities in Securing the Industrial Internet of Things
    Serror, Martin
    Hack, Sacha
    Henze, Martin
    Schuba, Marko
    Wehrle, Klaus
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2021, 17 (05) : 2985 - 2996