Securing Your Container Native Supply Chain with SLSA, GitHub and Tekton
Offered By: CNCF [Cloud Native Computing Foundation] via YouTube
Course Description
Overview
Explore practical approaches to securing your container native supply chain using SLSA, GitHub, and Tekton in this informative 32-minute conference talk. Learn how to apply SLSA principles to protect your build system, starting with the creation and verification of source code attestations using the in-toto project. Follow a step-by-step demonstration on achieving SLSA Level 2 in popular build systems like Tekton and GitHub Actions. Gain valuable insights into integrating Sigstore with Tekton and discover how to secure existing Tekton instances. Whether you're new to supply chain security or looking to enhance your current practices, this presentation offers actionable strategies for safeguarding your cloud native deployments across various build systems.
Syllabus
Securing Your Container Native Supply Chain with SLSA, Github and Te... Laurent Simon & Priya Wadhwa
Taught by
CNCF [Cloud Native Computing Foundation]
Related Courses
Ketchup, Mustard, and Relish of Software Supply Chain Security - Panel DiscussionLinux Foundation via YouTube SLSA in Action: Securing the Software Supply Chain
Linux Foundation via YouTube Securing Your Supply Chain by Building with FRSCA
Linux Foundation via YouTube Open Tools for Secure Supply Chains in Kubernetes - From Release Engineering
Linux Foundation via YouTube Google SLSA and NIST SSDF - Emerging Software Supply Chain Security Best Practices
Linux Foundation via YouTube