Secure Containerized Applications
Erica Windisch
@ewindisch
for
Service
{
Application
(not actually a security pattern)
https://www.cvedetails.com/vulnerability-list/vendor_id-6276/XEN.html
"x86 considered
harmful"
VMs do not contain
1. http://blog.invisiblethings.org/2015/10/27/x86_harmful.html
1
Consolidation may be appropriate for you, but it's not a security pattern.
(aka isolation)
= isolation
...not more services
with more seams
"This seems like a lot of work"
erica@windisch.us
@ewindisch