Title | Mechanisms for Mutual Attested Microservice Communication |
Publication Type | Conference Paper |
Year of Publication | 2017 |
Authors | Walsh, Kevin, Manferdelli, John |
Conference Name | Companion Proceedings of the10th International Conference on Utility and Cloud Computing |
Publisher | ACM |
Conference Location | New York, NY, USA |
ISBN Number | 978-1-4503-5195-9 |
Keywords | attestation, composability, mutual authentication, pubcrawl, trustworthiness, trustworthy computing |
Abstract | For systems composed of many rapidly-deployed microservices that cross networks and span trust domains, strong authentication between microservices is a prerequisite for overall system trustworthiness. We examine standard authentication mechanisms in this context, and we introduce new comprehensive, automated, and fine-grained mutual authentication mechanisms that rely on attestation, with particular attention to provisioning and managing secrets. Prototype implementations and benchmark results indicate that mutual attestation introduces only modest overheads and can be made to meet or exceed the performance of common but weaker authentication mechanisms in many scenarios. |
URL | http://doi.acm.org/10.1145/3147234.3148102 |
DOI | 10.1145/3147234.3148102 |
Citation Key | walsh_mechanisms_2017 |