YoVDO

Securing Build Platforms: Enhancing Trust in Software Distribution

Offered By: Linux Plumbers Conference via YouTube

Tags

Software Security Courses Linux Courses Compliance Courses Yocto Project Courses Sigstore Courses OpenEmbedded Courses SLSA Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the critical importance of securing build platforms in software development during this 35-minute conference talk from the Linux Plumbers Conference. Delve into the growing concerns surrounding the software chain of trust and its impact on security, compliance, and reliability. Examine how Linux distributions mitigate trust decisions for consumers and the challenges in evaluating distribution trustworthiness. Learn about npm's adoption of SLSA and Sigstore for build provenance, and consider the complexities of applying similar techniques to distribution build platforms. Investigate the efforts of SUSE and Flatcar Linux in this area, along with their unresolved verification issues. Gain insights into potential solutions for Linux distribution build platforms, with a focus on OpenEmbedded/Yocto Project and proof-of-concept experiments in the yocto-autobuilder2 system.

Syllabus

Securing build platforms - Joshua Lock


Taught by

Linux Plumbers Conference

Related Courses

Cybersecurity and Its Ten Domains
University System of Georgia via Coursera
Compliance in Office 365: eDiscovery
Microsoft via edX
Legal Compliance For Incorporating Startup
Indian Institute of Technology Kanpur via Swayam
The Business of Cybersecurity Capstone
University System of Georgia via Coursera
Creating a Portfolio
Indian School of Business via Coursera