Securing GitOps Supply Chain with Sigstore and Kyverno
Offered By: CNCF [Cloud Native Computing Foundation] via YouTube
Course Description
Overview
Explore how to secure the GitOps supply chain by signing and verifying container images within Argo Workflows pipelines using open-source projects Sigstore and Kyverno. Learn to eliminate security risks in the software supply chain by signing all container images in public or private registries and ensuring no malicious images are deployed in Kubernetes clusters. This 26-minute conference talk, presented by Roberto Carratala and Faz Sadeghi from Red Hat, demonstrates practical techniques to enhance the security of your GitOps workflows and protect your Kubernetes environments from potential threats.
Syllabus
Securing GitOps Supply Chain with Sigstore and Kyverno - Roberto Carratala & Faz Sadeghi, Red Hat
Taught by
CNCF [Cloud Native Computing Foundation]
Related Courses
Kyverno - Deep Dive - Tech TalksMirantis via YouTube Kubernetes Native Policy Management with Kyverno
Ekoparty Security Conference via YouTube Hands-on Introduction to Sigstore - Securing the Software Supply Chain
Rawkode Academy via YouTube Hands-on with Policy Reporter - Kyverno Visibility Tool
Rawkode Academy via YouTube Introduction to Kyverno - Getting Started with Kubernetes Policy Management
Rawkode Academy via YouTube