Главная
Study mode:
on
1
Intro
2
Meet Marina Priya
3
Why do we need Sigstore
4
Cosign
5
Cosign for other software
6
Record
7
Timestamp
8
Fulcio
9
Demo
10
Cosign Verification
11
Demo Overview
12
Update Framework
13
Offline Ceremony
14
Integrations
15
Tecton Chains
16
In Practice
17
Future Steps
18
Questions
Description:
Explore software supply chain integrity through Sigstore in this 23-minute conference talk by Marina Moore and Priya Wadhwa from Google. Learn about the importance of Sigstore, its key components like Cosign, and how it enhances software security. Discover practical applications through demos on Cosign verification and the update framework. Gain insights into offline ceremonies, integrations, and real-world implementations such as Tecton Chains. Conclude with a look at future developments and participate in a Q&A session to deepen your understanding of this crucial aspect of software development and distribution.

Software Supply Chain Integrity with Sigstore

Linux Foundation
Add to list