Enforcing Organization Policies with Enterprise Contract
Offered By: OpenSSF via YouTube
Course Description
Overview
Discover how to enforce organizational policies for container images using the open-source Enterprise Contract ecosystem in this 21-minute conference talk by Zoran Regvart from Red Hat. Learn about leveraging Sigstore signatures, in-toto attestations, and other tamper-proof sources to maintain security in the rapidly evolving tech landscape. Focus on the Tekton ecosystem while exploring how Enterprise Contract, a CI agnostic tool, can be used to validate specific tasks like code scanners during the container image build process. Gain insights into going beyond simple signature checks for comprehensive container image validation. Although familiarity with the Sigstore community project is beneficial, beginners are also welcome to attend this informative session presented by OpenSSF.
Syllabus
Enforcing Organization Policies with Enterprise Contract - Zoran Regvart, Red Hat
Taught by
OpenSSF
Related Courses
Introduction to JenkinsLinux Foundation via edX Introduction to Cloud Native, DevOps, Agile, and NoSQL
IBM via edX Learn Azure DevOps CI/CD pipelines
Udemy IBM Full Stack Software Developer
IBM via Coursera DevOps: CI/CD with Jenkins pipelines, Maven, Gradle
Udemy