Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Linux Foundation

Toto-Ally TUF: Simple Tools for a Secure Software Supply Chain

Linux Foundation via YouTube

Overview

Explore a comprehensive conference talk on securing software supply chains using in-toto and The Update Framework (TUF). Learn about the alarming increase in software supply chain attacks and discover how these CNCF projects work together to counter threats. Understand the fundamentals of in-toto for creating verifiable attestations about supply chain steps and artifacts, and how TUF secures software repositories against various attacks. Examine a real-world case study demonstrating the combined use of in-toto and TUF, and get introduced to new open-source tools that simplify their joint deployment. Gain valuable insights into protecting your software distribution process and ensuring end-to-end supply chain integrity.

Syllabus

Toto-Ally TUF: Simple Tools for a Secure Software Supply Chain - Marina Moore & Aditya Yelgundhalli

Taught by

Linux Foundation

Reviews

Start your review of Toto-Ally TUF: Simple Tools for a Secure Software Supply Chain

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.