Abstract
With the ever-increasing pervasiveness of the cloud computing paradigm, strong isolation guarantees and low performance overhead from isolation platforms are paramount. An ideal isolation platform offers both: an impermeable isolation boundary while imposing a negligible performance overhead. In this paper, we examine various isolation platforms (containers, secure containers, hypervisors, unikernels), and conduct a wide array of experiments to measure the performance overhead and degree of isolation offered by the platforms. We find that container platforms have the best, near-native, performance while the newly emerging secure containers suffer from various overheads. The highest degree of isolation is achieved by unikernels, closely followed by traditional containers.
Original language | English |
---|---|
Title of host publication | Proceedings of the 22nd ACM/IFIP International Middleware Conference |
Publisher | ACM DL |
Number of pages | 13 |
ISBN (Electronic) | 978-1-4503-8534-3 |
DOIs | |
Publication status | Published - 2021 |
Event | 22nd ACM/IFIP International Middleware Conference - Virtual Event, Quebeq City, Canada Duration: 6 Dec 2021 → 10 Dec 2021 https://middleware-conf.github.io/2021/ |
Conference
Conference | 22nd ACM/IFIP International Middleware Conference |
---|---|
Abbreviated title | Middleware '22 |
Country/Territory | Canada |
City | Quebeq City |
Period | 6/12/21 → 10/12/21 |
Internet address |
Keywords
- Containers
- Virtual Machines
- Performance