Trust in Honk, Tie Up Your YAML - A Kpack Experience for Container Image Building
Offered By: CNCF [Cloud Native Computing Foundation] via YouTube
Course Description
Overview
Explore a comprehensive demonstration on utilizing kpack for building container images on Kubernetes clusters. Discover the advantages of kpack, including its declarative builder resource and use of unprivileged Kubernetes primitives. Learn how kpack exports OCI-compatible images, orchestrates around source code, and schedules rebuilds based on changes to source, stack, or buildpacks. Delve into kpack's internal use of Cloud Native Buildpacks and its potential to enhance supply chain security. Understand how kpack integrates with sigstore projects like cosign, provides a parameterless and hermetic build process for higher SLSA levels, and automatically generates SBOMs. Gain valuable insights into improving security practices, particularly in the realm of supply chain security, through this informative conference talk.
Syllabus
Trust in Honk, Tie up Your Yaml: A Kpack Experience - Ram Iyengar, Cloud Foundry Foundation
Taught by
CNCF [Cloud Native Computing Foundation]
Related Courses
Ketchup, Mustard, and Relish of Software Supply Chain Security - Panel DiscussionLinux Foundation via YouTube SLSA in Action: Securing the Software Supply Chain
Linux Foundation via YouTube Securing Your Supply Chain by Building with FRSCA
Linux Foundation via YouTube Open Tools for Secure Supply Chains in Kubernetes - From Release Engineering
Linux Foundation via YouTube Google SLSA and NIST SSDF - Emerging Software Supply Chain Security Best Practices
Linux Foundation via YouTube