상세 보기
LETTER Understanding File System Operations of a Secure Container Runtime Using System Call Tracing Technique
- Jang, Sunwoo;
- Suh, Young-Kyoon;
- Tak, Byungchul
Citations
WEB OF SCIENCE
0Citations
SCOPUS
0초록
This letter presents a technique that observes system call mapping behavior of the proxy kernel layer of secure container runtimes. We applied it to file system operations of a secure container runtime, gVisor. We found that gVisor's operations can become more expensive than the native by 48x more syscalls for open, and 6x for read and write.
키워드
secure container runtime; system call; gVisor
- 제목
- LETTER Understanding File System Operations of a Secure Container Runtime Using System Call Tracing Technique
- 저자
- Jang, Sunwoo; Suh, Young-Kyoon; Tak, Byungchul
- 발행일
- 2024-02
- 유형
- Article
- 권
- E107
- 호
- 2
- 페이지
- 229 ~ 233
- 언어
- ENG
- 출판사
- IEICE-INST ELECTRONICS INFORMATION COMMUNICATION ENGINEERS
- 발행국가
- 일본
- 분량
- 5 페이지
- ISSN
- E 1745-1361
P 0916-8532