Open2025/01/24にコメント追加3sigstore(cosign)ピン留めされたアイテムbells172025/01/24に更新 sigstore(cosign) 公式サイト: https://www.sigstore.dev/ 主要なリポジトリ: https://github.com/sigstore/cosign https://github.com/sigstore/policy-controller https://github.com/sigstore/helm-charts https://github.com/sigstore/rekor https://github.com/sigstore/fulcio https://github.com/sigstore/gitsign 返信を追加bells172025/01/24 Notary v2/Notation 公式サイト: https://notaryproject.dev/ CNCFのIncubatingプロジェクト: https://www.cncf.io/projects/notary-project/ 主要なリポジトリ: https://github.com/notaryproject/notation https://github.com/notaryproject/specifications https://github.com/notaryproject/notaryproject.dev https://github.com/notaryproject/tuf https://github.com/notaryproject/roadmap https://github.com/notaryproject/meeting-notes 返信を追加bells172025/01/24 コンテナイメージ署名関連のリンク集 https://dlorenc.medium.com/notary-v2-and-cosign-b816658f044d https://kubernetes.io/docs/tasks/administer-cluster/verify-signed-artifacts/ https://kyverno.io/docs/writing-policies/verify-images/ https://github.com/sigstore/cosign-gatekeeper-provider https://knqyf263.hatenablog.com/entry/2022/02/06/213003 https://docs.docker.com/engine/security/trust/ https://theupdateframework.io/ https://csrc.nist.gov/pubs/sp/800/190/final https://slsa.dev/ https://github.com/notaryproject/specifications/blob/main/requirements/scenarios.md https://github.com/notaryproject/specifications/blob/main/requirements/requirements.md https://in-toto.io/ https://kyverno.io/docs/writing-policies/verify-images/notary/ https://github.com/sigstore/cosign/tree/main/specs https://security.googleblog.com/2021/03/introducing-sigstore-easy-code-signing.html https://knqyf263.hatenablog.com/entry/2018/03/09/144550 https://github.com/google/trillian https://knqyf263.hatenablog.com/entry/2022/12/19/234539 https://blog.flatt.tech/entry/sigstore_keyless_signing https://knqyf263.hatenablog.com/entry/2022/11/17/034432 https://arxiv.org/abs/1711.07278 https://dl.acm.org/doi/10.1145/3548606.3560596 https://warontherocks.com/2022/05/dependency-issues-solving-the-worlds-open-source-software-security-problem/ https://github.com/chainguard-dev/ssc-reading-list 返信を追加
ピン留めされたアイテムbells172025/01/24に更新 sigstore(cosign) 公式サイト: https://www.sigstore.dev/ 主要なリポジトリ: https://github.com/sigstore/cosign https://github.com/sigstore/policy-controller https://github.com/sigstore/helm-charts https://github.com/sigstore/rekor https://github.com/sigstore/fulcio https://github.com/sigstore/gitsign 返信を追加
bells172025/01/24 Notary v2/Notation 公式サイト: https://notaryproject.dev/ CNCFのIncubatingプロジェクト: https://www.cncf.io/projects/notary-project/ 主要なリポジトリ: https://github.com/notaryproject/notation https://github.com/notaryproject/specifications https://github.com/notaryproject/notaryproject.dev https://github.com/notaryproject/tuf https://github.com/notaryproject/roadmap https://github.com/notaryproject/meeting-notes 返信を追加
bells172025/01/24 コンテナイメージ署名関連のリンク集 https://dlorenc.medium.com/notary-v2-and-cosign-b816658f044d https://kubernetes.io/docs/tasks/administer-cluster/verify-signed-artifacts/ https://kyverno.io/docs/writing-policies/verify-images/ https://github.com/sigstore/cosign-gatekeeper-provider https://knqyf263.hatenablog.com/entry/2022/02/06/213003 https://docs.docker.com/engine/security/trust/ https://theupdateframework.io/ https://csrc.nist.gov/pubs/sp/800/190/final https://slsa.dev/ https://github.com/notaryproject/specifications/blob/main/requirements/scenarios.md https://github.com/notaryproject/specifications/blob/main/requirements/requirements.md https://in-toto.io/ https://kyverno.io/docs/writing-policies/verify-images/notary/ https://github.com/sigstore/cosign/tree/main/specs https://security.googleblog.com/2021/03/introducing-sigstore-easy-code-signing.html https://knqyf263.hatenablog.com/entry/2018/03/09/144550 https://github.com/google/trillian https://knqyf263.hatenablog.com/entry/2022/12/19/234539 https://blog.flatt.tech/entry/sigstore_keyless_signing https://knqyf263.hatenablog.com/entry/2022/11/17/034432 https://arxiv.org/abs/1711.07278 https://dl.acm.org/doi/10.1145/3548606.3560596 https://warontherocks.com/2022/05/dependency-issues-solving-the-worlds-open-source-software-security-problem/ https://github.com/chainguard-dev/ssc-reading-list 返信を追加