Главная
Study mode:
on
1
Intro
2
Kubernetes Container Images
3
Kubernetes Release Overview
4
Our Mission
5
SBOM Definition
6
Kubernetes Release
7
Building the SBOM
8
Linear Response
9
Linux Foundation
10
SPDX
11
Building a better Kubernetes system
12
Creating a bill of materials
13
Declarative SBOM definition
14
Demo
15
Test Project
16
Output Director
17
Overview
18
Licensing
19
Git Ignore
20
Visualization
21
Structure
22
Provenance
23
attestation
24
future plans
Description:
Discover how to create your own Software Bill of Materials (SBOM) in this informative conference talk from KubeCon + CloudNativeCon Europe 2022. Explore the journey of the Kubernetes Release Engineering team in developing an SBOM for Kubernetes, and learn about the tools and libraries they created to help developers generate SPDX-compliant Bills of Materials for their own projects. Gain insights into the importance of SBOMs in the software supply chain, the benefits for developers and operators, and the intricacies of the SPDX standard. Watch a live demonstration of building an SPDX SBOM using the tools discussed, and understand how to implement automatic license detection for files and container images. Delve into topics such as Kubernetes container images, release processes, declarative SBOM definitions, and future plans for enhancing software transparency and security.

We Built the Kubernetes SBOM and Now You Can Write Your Own

CNCF [Cloud Native Computing Foundation]
Add to list
0:00 / 0:00