Pretražite po imenu i prezimenu autora, mentora, urednika, prevoditelja

Napredna pretraga

Pregled bibliografske jedinice broj: 1226863

CI/CD TOOLSET SECURITY


Dakić, Vedan; Redžepagić, Jasmin; Bašić, Matej
CI/CD TOOLSET SECURITY // Annals of DAAAM for ... & proceedings of the ... International DAAAM Symposium ... (2022) doi:10.2507/33rd.daaam.proceedings.xxx (znanstveni, prihvaćen)


CROSBI ID: 1226863 Za ispravke kontaktirajte CROSBI podršku putem web obrasca

Naslov
CI/CD TOOLSET SECURITY

Autori
Dakić, Vedan ; Redžepagić, Jasmin ; Bašić, Matej

Vrsta, podvrsta
Radovi u časopisima, znanstveni

Izvornik
Annals of DAAAM for ... & proceedings of the ... International DAAAM Symposium ... (2022)

Status rada
Prihvaćen

Ključne riječi
CI/CD ; Kubernetes ; Openshift ; Gitlab ; Jenkins ; ArgoCD

Sažetak
Modern application development has redefined the way teams develop their solutions. Instead of using their workstations for building code, a lot of teams have resorted to using microservices for CI/CD systems. CI stands for continuous integration while CD denotes continuous delivery. Combined these two things mean that using a CI/CD system code goes into building and testing cycle as soon as the developer submits it. Since the whole system is inevitably complex, almost all the systems are using a combination of technologies to manage both the building and delivery part as well as underlying services that make building possible. In this space technologies such as Kubernetes or OpenShift are becoming a norm. From the security perspective this creates a whole new problem since such a system has to be deeply integrated into the core of the business network, and any potential threat to the CI/CD infrastructure is immediately a threat to the whole internal infrastructure. CI/CD tools need to have advanced privileges, they have to be able to access code repositories, user directories, complete development environments and even bare metal servers in order to optimize the delivery process. This means that attack surface in such a system is enormous and exploiting it means gaining access to large part of the business infrastructure. Securing such a heterogenous system is a big task and, in this paper, we address most important challenges

Izvorni jezik
Engleski

Znanstvena područja
Računarstvo, Temeljne tehničke znanosti, Interdisciplinarne tehničke znanosti



POVEZANOST RADA


Ustanove:
Visoko učilište Algebra, Zagreb

Profili:

Avatar Url Jasmin Redžepagić (autor)

Avatar Url Vedran Dakić (autor)

Poveznice na cjeloviti tekst rada:

doi www.daaam.info

Citiraj ovu publikaciju:

Dakić, Vedan; Redžepagić, Jasmin; Bašić, Matej
CI/CD TOOLSET SECURITY // Annals of DAAAM for ... & proceedings of the ... International DAAAM Symposium ... (2022) doi:10.2507/33rd.daaam.proceedings.xxx (znanstveni, prihvaćen)
Dakić, V., Redžepagić, J. & Bašić, M. (2022) CI/CD TOOLSET SECURITY. Prihvaćen za objavljivanje u Annals of DAAAM for ... & proceedings of the ... International DAAAM Symposium .... [Preprint] doi:10.2507/33rd.daaam.proceedings.xxx.
@unknown{unknown, author = {Daki\'{c}, Vedan and Red\v{z}epagi\'{c}, Jasmin and Ba\v{s}i\'{c}, Matej}, year = {2022}, DOI = {10.2507/33rd.daaam.proceedings.xxx}, keywords = {CI/CD, Kubernetes, Openshift, Gitlab, Jenkins, ArgoCD}, journal = {Annals of DAAAM for ... and proceedings of the ... International DAAAM Symposium ...}, doi = {10.2507/33rd.daaam.proceedings.xxx}, title = {CI/CD TOOLSET SECURITY}, keyword = {CI/CD, Kubernetes, Openshift, Gitlab, Jenkins, ArgoCD} }
@unknown{unknown, author = {Daki\'{c}, Vedan and Red\v{z}epagi\'{c}, Jasmin and Ba\v{s}i\'{c}, Matej}, year = {2022}, DOI = {10.2507/33rd.daaam.proceedings.xxx}, keywords = {CI/CD, Kubernetes, Openshift, Gitlab, Jenkins, ArgoCD}, journal = {Annals of DAAAM for ... and proceedings of the ... International DAAAM Symposium ...}, doi = {10.2507/33rd.daaam.proceedings.xxx}, title = {CI/CD TOOLSET SECURITY}, keyword = {CI/CD, Kubernetes, Openshift, Gitlab, Jenkins, ArgoCD} }

Citati:





    Contrast
    Increase Font
    Decrease Font
    Dyslexic Font