safeguarding-cloud-native-supply-chain-chang-chi-duo-tu-ju-tao-daels-xia-re-zha-yi-zha-microsoft-mostafa-radwan-cloudroads.pdf

编号:627303 PDF 16页 1.34MB 下载积分:VIP专享
下载报告请您先登录!

safeguarding-cloud-native-supply-chain-chang-chi-duo-tu-ju-tao-daels-xia-re-zha-yi-zha-microsoft-mostafa-radwan-cloudroads.pdf

1、Safeguarding Cloud Native Supply Chain Notary Project Intro&Whats NextYi Zha,Senior Product Manager,MicrosoftMostafa Radwan,Principal Consultant,CloudRoadsAbout usYi ZhaSr Product Manager at MicrosoftMaintainer at CNCF project Notary ProjectCloud Native Supply Chain Security and EcosystemMostafa Rad

2、wanPrincipal Consultant at CloudRoadsCNCF Chicago Community Group OrganizerAgenda-Background-Notary Project Overview-Features&Milestones-User Stories-Demo-Q&ABackground 91%of Organizations experienced software supply chain attacks last year The Security Magazine,February 2024 There has been a 742%av

3、erage annual increase in software supply chain attacks over the past 3 years The State of Software Supply Chain Report 2023 Software supply chain attacks have impacted 62%of organizations surveyed The Software Supply Chain Security Report 2022Understand The ProblemDeveloperPushTriggerSource ControlB

4、uild SystemDependencies/LibsBuildContainer ImageStoreContainer RegistryPullDeployPullSigning Container ImagesDeveloperPrivate KeySignPushSigned Container ImageCertificate Authority(CA)CertificateDeployContainer RegistryTrustVerified?PullYesNotary Project-Our Missionhttps:/notaryproject.devSecuring s

5、oftware supply chains by using authentic container images and artifacts.Acquire imagesCatalog imagesBuild imagesDeploy imagesRun imagesAuthenticity and IntegrityThe Benefits of Notary ProjectSmooth PKI Integration:Ensures security,privacy,and data compliance.Extensibility:KMS Support:Azure Key Vault

6、,AWS Signer,Alibaba Cloud Secret Manager plugin,and Hashicorp Vault.Custom Plugins:Allows for the integration of custom plugins for signing and verification workflowSignature Portability:Compatible with OCI v1.1Signature Formats:JWS and COSE.Fine-tuned Trust Policies:Operates on

友情提示

1、下载报告失败解决办法
2、PDF文件下载后,可能会被浏览器默认打开,此种情况可以点击浏览器菜单,保存网页到桌面,就可以正常下载了。
3、本站不支持迅雷下载,请使用电脑自带的IE浏览器,或者360浏览器、谷歌浏览器下载即可。
4、本站报告下载后的文档和图纸-无水印,预览文档经过压缩,下载后原文更清晰。

本文(safeguarding-cloud-native-supply-chain-chang-chi-duo-tu-ju-tao-daels-xia-re-zha-yi-zha-microsoft-mostafa-radwan-cloudroads.pdf)为本站 (山海) 主动上传,三个皮匠报告文库仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。 若此文所含内容侵犯了您的版权或隐私,请立即通知三个皮匠报告文库(点击联系客服),我们立即给予删除!

温馨提示:如果因为网速或其他原因下载失败请重新下载,重复下载不扣分。
客服
商务合作
小程序
服务号
折叠