Главная
Study mode:
on
1
Intro
2
Kubernetes resource manifests
3
Why sign Kubernetes manifests?
4
Integrity Shield Project
5
Present Idea to Sigstore Community
6
Contribution to Sigstore (YAML Manifest Signing)
7
YAML Manifest Signature
8
Kubernetes Policy Working Group call (Feb. 2022)
9
Securing Kubernetes manifests - Kyverno 1.8.0
10
SigstoreCon 2022 @ Detroit
11
End-to-end supply chain
12
Integrity issues in delivery
13
End-to-end software supply chain integrity
Description:
Explore the importance of protecting Kubernetes resource manifests throughout the software development lifecycle in this conference talk by Yuji Watanabe from IBM. Learn about the Integrity Shield Project and its contribution to Sigstore for YAML manifest signing. Discover how this initiative addresses integrity issues in delivery and ensures end-to-end software supply chain integrity. Gain insights into the Kubernetes Policy Working Group's efforts and the implementation of secure manifest practices in Kyverno 1.8.0. Understand the significance of signing Kubernetes manifests and how it contributes to a more secure containerized environment.

Protecting Kubernetes Resource Manifests in End-to-End Software Development Lifecycle

OpenSSF
Add to list