Image Signing and Runtime Verification at Scale - Datadog's Journey

Image Signing and Runtime Verification at Scale - Datadog's Journey

CNCF [Cloud Native Computing Foundation] via YouTube Direct link

Takeaways

19 of 19

19 of 19

Takeaways

Class Central Classrooms beta

YouTube playlists curated by Class Central.

Classroom Contents

Image Signing and Runtime Verification at Scale - Datadog's Journey

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Intro
  2. 2 Why sign & verify images?
  3. 3 Modern Consensus on Image Signing
  4. 4 Signature Metadata in a Registry
  5. 5 Signature Format: Payload
  6. 6 Signature Format: Envelope
  7. 7 Signature Format: Registry Layout
  8. 8 Signing as a Service
  9. 9 Signing Thin Client
  10. 10 Signing Service: Least Privilege & Auditability
  11. 11 Signing Service: Encapsulation
  12. 12 Validating Admission Webhooks
  13. 13 Image Verification in containerd
  14. 14 Developer Perspective
  15. 15 Distributing Verifier Config
  16. 16 Distributing Public Keys & Mode
  17. 17 Distributing Image Revocation List
  18. 18 Challenges & Recommendations
  19. 19 Takeaways

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.