How SIG Release Cooks Trustworthy Artifacts From Raw Source Code - Kubernetes Build Process
Offered By: CNCF [Cloud Native Computing Foundation] via YouTube
Course Description
Overview
Explore the intricate process of transforming Kubernetes source code into trustworthy artifacts in this informative conference talk. Gain insights into the workings of the Kubernetes Special Interest Group (SIG) Release, their recent achievements, and updated roadmap. Discover the ongoing efforts towards full SLSA (Supply-chain Levels for Software Artifacts) compliance and the move to community-controlled infrastructure for build processes and distribution. Learn about the expansion of artifact signing beyond containers and how to get involved in SIG Release. Understand the importance of these initiatives and the various ways to contribute, including SIG Release tooling, the Release Manager role, and the contributor ladder.
Syllabus
How SIG Release Cooks Trustworthy... - Carlos Panato & Adolfo Veytia, Jeremy Rickard, Sascha Grunert
Taught by
CNCF [Cloud Native Computing Foundation]
Related Courses
Hardening Your Soft Software Supply ChainPluralsight DevOps with GitHub and Azure: Implementing Software Supply Chain Security with GitHub
Pluralsight Securing Your Software Supply Chain with Sigstore
Linux Foundation via edX GitHub Supply Chain Security Using GitGat
Linux Foundation via edX Kyverno - Deep Dive - Tech Talks
Mirantis via YouTube