Details
Original language | English |
---|---|
Title of host publication | Proceedings of the 22nd ACM/IFIP International Middleware Conference |
ISBN (electronic) | 9781450385343 |
Publication status | Published - 2021 |
Externally published | Yes |
Event | 22nd ACM/IFIP International Middleware Conference - Virtual Event, Canada Duration: 6 Dec 2021 → 10 Dec 2021 |
Abstract
Keywords
- Containers, Virtual Machines, Performance
Cite this
- Standard
- Harvard
- Apa
- Vancouver
- BibTeX
- RIS
Proceedings of the 22nd ACM/IFIP International Middleware Conference. 2021.
Research output: Chapter in book/report/conference proceeding › Conference contribution › Research › peer review
}
TY - GEN
T1 - A Fresh Look at the Architecture and Performance of Contemporary Isolation Platforms
AU - van Rijn, V.J.
AU - Rellermeyer, Jan
PY - 2021
Y1 - 2021
N2 - With the ever-increasing pervasiveness of the cloud computing paradigm, strong isolation guarantees and low performance overhead from isolation platforms are paramount. An ideal isolation platform offers both: an impermeable isolation boundary while imposing a negligible performance overhead. In this paper, we examine various isolation platforms (containers, secure containers, hypervisors, unikernels), and conduct a wide array of experiments to measure the performance overhead and degree of isolation offered by the platforms. We find that container platforms have the best, near-native, performance while the newly emerging secure containers suffer from various overheads. The highest degree of isolation is achieved by unikernels, closely followed by traditional containers.
AB - With the ever-increasing pervasiveness of the cloud computing paradigm, strong isolation guarantees and low performance overhead from isolation platforms are paramount. An ideal isolation platform offers both: an impermeable isolation boundary while imposing a negligible performance overhead. In this paper, we examine various isolation platforms (containers, secure containers, hypervisors, unikernels), and conduct a wide array of experiments to measure the performance overhead and degree of isolation offered by the platforms. We find that container platforms have the best, near-native, performance while the newly emerging secure containers suffer from various overheads. The highest degree of isolation is achieved by unikernels, closely followed by traditional containers.
KW - Containers
KW - Virtual Machines
KW - Performance
U2 - 10.1145/3464298.3493404
DO - 10.1145/3464298.3493404
M3 - Conference contribution
BT - Proceedings of the 22nd ACM/IFIP International Middleware Conference
T2 - 22nd ACM/IFIP International Middleware Conference
Y2 - 6 December 2021 through 10 December 2021
ER -