Bakalářská práce
Získaná ocenění: Cena děkana FI za vynikající závěrečnou práci

Using a Docker cluster in a production environment

Jan Kubeša, učo 456462
Anotace

Docker je virtualizační nástroj, který vytváří jednoúčelové izolované kontejnery, sdílející přístup ke kernelu operačního systému hosta. Tímto přístupem eliminována potřeba virtualizace celých operačních systémů a snižují se dodatečné požadavky na virtualizaci. Tato práce představuje klíčové koncepty a potřebné návrhové změny, které musí učinit společnost nebo veřejná instituce proto, aby přešla …více

Abstract

Docker is a virtualization tool that creates small single-purpose isolated containers, sharing access to the kernel of the host operating system and thus limiting the virtualization overhead and the need for separate virtualized operating systems. This thesis introduces key concepts and needed design changes for a company or public institution to switch form an infrastructure solely based on …více

Zadání práce
The aim of this Bachelor thesis is to describe the concepts, best practices, and tools needed to run full-scale applications in a containerized environment. The theoretical part of the thesis includes an overview of basic container environment concepts such as single process virtualization, networking between containers and the outside world, copy on write filesystem and basics of running stateful applications. Explanation of concepts specific to a multi-node cluster is also given. After the introduction of needed concepts, fundamental challenges of a containerized environment are presented together with proposed best practices to tackle them. Emphasis is put on privacy, security and reliability challenges specific to containers such as storing and managing persistent data across containers, kernel and network security, etc. Overview of alternative solutions is given along with use cases in which such tools would fit better than the included implementation.

The practical part of the thesis takes all the concepts from the theoretical part and shows their implementation in practice. This part describes the approach of an IT administrator of a small sized provider of managed IT services currently running standard physical or virtual servers on owned bare metal infrastructure making the switch to a containerized environment by deploying a centrally managed Docker cluster. The implementation includes scalability of deployed production applications, as well as redundancy, dealing with persistent data across containers and multiple physical servers as well as implements security best practices proposed in the theoretical part of the thesis.

The last chapter will outline areas for further research including technologies not yet well established in production environments as well as formal requirements for products that would better solve some of the challenges identified earlier.
Práce zkontrolována:
5. 12. 2019 13:11, prof. RNDr. Václav Matyáš, M.Sc., Ph.D., učo 344
Plný text práce
342,6 KB / soubor PDF
Jazyk práce
angličtina angličtina
Termín obhajoby
12. 2. 2020
Práce byla úspěšně obhájena

Vedoucí

prof. RNDr. Václav Matyáš, M.Sc., Ph.D., učo 344
KPSK FI MU

Oponent

doc. RNDr. Petr Švenda, Ph.D., učo 4085
KPSK FI MU

  • Přidání souboru

    Soubor nebo složku lze nahrát pomocí tlačítka Přidat.
  • Další operace se soubory

    Podrobnosti lze zjistit označením příslušného řádku.
  • Pohled pro experty

    Pro častou práci je možné zvolit režim Více možností.
  • Vyhledávání souborů

    Vyhledávaný výraz můžete zadat přímo do adresního řádku.
  • Rychlý přístup k souborům

    Pomocí funkce Nedávné je možné se rychle vrátit k právě prohlíženým souborům. Oblíbené soubory je také možné označit Hvězdičkou.