{"updated":"2025-01-19T13:38:34.930532+00:00","metadata":{"_oai":{"id":"oai:ipsj.ixsq.nii.ac.jp:00222709","sets":["6164:6165:6617:11072"]},"path":["11072"],"owner":"44499","recid":"222709","title":["異種OS機能連携によるセキュアコンテナ実現に向けた検討"],"pubdate":{"attribute_name":"公開日","attribute_value":"2022-11-28"},"_buckets":{"deposit":"88b1b5ca-a9e1-4bc0-906b-64a4b649eca9"},"_deposit":{"id":"222709","pid":{"type":"depid","value":"222709","revision_id":0},"owners":[44499],"status":"published","created_by":44499},"item_title":"異種OS機能連携によるセキュアコンテナ実現に向けた検討","author_link":["584655","584656","584654"],"item_titles":{"attribute_name":"タイトル","attribute_value_mlt":[{"subitem_title":"異種OS機能連携によるセキュアコンテナ実現に向けた検討"}]},"item_keyword":{"attribute_name":"キーワード","attribute_value_mlt":[{"subitem_subject":"セキュリティ","subitem_subject_scheme":"Other"}]},"item_type_id":"18","publish_date":"2022-11-28","item_language":{"attribute_name":"言語","attribute_value_mlt":[{"subitem_language":"jpn"}]},"item_18_text_3":{"attribute_name":"著者所属","attribute_value_mlt":[{"subitem_text_value":"公立はこだて未来大学"},{"subitem_text_value":"さくらインターネット株式会社さくらインターネット研究所"},{"subitem_text_value":"公立はこだて未来大学"}]},"item_18_text_4":{"attribute_name":"著者所属(英)","attribute_value_mlt":[{"subitem_text_value":"Future University Hakodate","subitem_text_language":"en"},{"subitem_text_value":"SAKURA internet Research Center, SAKURA internet Inc.","subitem_text_language":"en"},{"subitem_text_value":"Future University Hakodate","subitem_text_language":"en"}]},"item_publisher":{"attribute_name":"出版者","attribute_value_mlt":[{"subitem_publisher":"情報処理学会","subitem_publisher_language":"ja"}]},"publish_status":"0","weko_shared_id":-1,"item_file_price":{"attribute_name":"Billing file","attribute_type":"file","attribute_value_mlt":[{"url":{"url":"https://ipsj.ixsq.nii.ac.jp/record/222709/files/IPSJ-ComSys2022003.pdf","label":"IPSJ-ComSys2022003.pdf"},"date":[{"dateType":"Available","dateValue":"2024-11-28"}],"format":"application/pdf","billing":["billing_file"],"filename":"IPSJ-ComSys2022003.pdf","filesize":[{"value":"1.5 MB"}],"mimetype":"application/pdf","priceinfo":[{"tax":["include_tax"],"price":"660","billingrole":"5"},{"tax":["include_tax"],"price":"330","billingrole":"6"},{"tax":["include_tax"],"price":"0","billingrole":"11"},{"tax":["include_tax"],"price":"0","billingrole":"44"}],"accessrole":"open_date","version_id":"bb62d593-adb0-4277-b5a0-9f332eca81ae","displaytype":"detail","licensetype":"license_note","license_note":"Copyright (c) 2022 by the Information Processing Society of Japan"}]},"item_18_creator_5":{"attribute_name":"著者名","attribute_type":"creator","attribute_value_mlt":[{"creatorNames":[{"creatorName":"鈴木, 進太郎"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"中田, 裕貴"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"松原, 克弥"}],"nameIdentifiers":[{}]}]},"item_resource_type":{"attribute_name":"資源タイプ","attribute_value_mlt":[{"resourceuri":"http://purl.org/coar/resource_type/c_5794","resourcetype":"conference paper"}]},"item_18_description_7":{"attribute_name":"論文抄録","attribute_value_mlt":[{"subitem_description":"クラウドサービスにおけるアプリケーション実行環境として広く活用されているコンテナ型仮想化は,不特定多数のユーザが単一のホスト内に同居するため,コンテナ間の隔離を強固にする必要がある.しかし,追加の隔離環境は,堅牢なコンテナ間隔離を実現する代わりに,コンテナの高速な起動という特性やアプリケーション性能が損なわれる.このトレードオフを解消するために,我々は異種 OS 機能連携によって OS カーネルの脆弱性を悪用した攻撃を回避し,異種 OS 固有のセキュリティ機能を利用できるセキュアコンテナの実現を目指している.本稿では,FreeBSD の OS 機能を活用した Linux コンテナ互換実行と FreeBSD 固有のセキュリティ機能の適用について検討し,異種 OS 機能連携による特定 OS カーネルを対象にした攻撃回避の実現可能性について議論する.","subitem_description_type":"Other"}]},"item_18_biblio_info_10":{"attribute_name":"書誌情報","attribute_value_mlt":[{"bibliographicPageEnd":"29","bibliographic_titles":[{"bibliographic_title":"コンピュータシステム・シンポジウム論文集"}],"bibliographicPageStart":"22","bibliographicIssueDates":{"bibliographicIssueDate":"2022-11-28","bibliographicIssueDateType":"Issued"},"bibliographicVolumeNumber":"2022"}]},"relation_version_is_last":true,"weko_creator_id":"44499"},"created":"2025-01-19T01:22:38.824136+00:00","id":222709,"links":{}}