Building the Software Supply Chain on Docker Official Images
Offered By: Docker via YouTube
Course Description
Overview
Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore Docker's approach to securing the software supply chain in this 33-minute DockerCon 2023 talk. Discover how Docker is modernizing its toolchain to provide security by default, including software bill of materials (SBOMs), provenance, cryptographic signing, and verification. Learn about the application of these principles to Docker Official Images (DOI), a significant component in most teams' software supply chains. Gain insights into how Docker and BastionZero leverage open standards like The Update Framework (TUF) and Supply-Chain Levels for Software Artifacts (SLSA), along with a novel decentralized signing approach using modern cryptographic methods. Understand how these innovations are being incorporated into open-source projects like BuildKit and the Docker CLI to enhance software supply chain metadata and verification.
Syllabus
Building the Software Supply Chain on Docker Official Images (DockerCon 2023)
Taught by
Docker
Related Courses
GitHub Supply Chain Security Using GitGatLinux Foundation via edX Introduction to Security Principles in Cloud Computing
Google via Google Cloud Skills Boost DevOps with GitHub and Azure: Implementing Software Supply Chain Security with GitHub
Pluralsight Hardening Your Soft Software Supply Chain
Pluralsight Secure Software Supply Chain: Using Cloud Build & Cloud Deploy to Deploy Containerized Applications
Google via Google Cloud Skills Boost