<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Sigstore on</title><link>https://deploy-preview-3419--ornate-narwhal-088216.netlify.app/open-source/sigstore/</link><description>Recent content in Sigstore on</description><generator>Hugo -- gohugo.io</generator><language>en</language><copyright>Copyright (c) 2023 Chainguard</copyright><lastBuildDate>Tue, 06 Oct 2020 08:49:15 +0000</lastBuildDate><atom:link href="https://deploy-preview-3419--ornate-narwhal-088216.netlify.app/open-source/sigstore/index.xml" rel="self" type="application/rss+xml"/><item><title>How to Keyless Sign a Container Image with Sigstore</title><link>https://deploy-preview-3419--ornate-narwhal-088216.netlify.app/open-source/sigstore/how-to-keyless-sign-a-container-with-sigstore/</link><pubDate>Wed, 24 Aug 2022 08:49:31 +0000</pubDate><guid>https://deploy-preview-3419--ornate-narwhal-088216.netlify.app/open-source/sigstore/how-to-keyless-sign-a-container-with-sigstore/</guid><description>&lt;p&gt;&lt;em&gt;An earlier version of this material was published in the &lt;a href="https://learning.edx.org/course/course-v1:LinuxFoundationX&amp;#43;LFS182x&amp;#43;2T2022/block-v1:LinuxFoundationX&amp;#43;LFS182x&amp;#43;2T2022&amp;#43;type@sequential&amp;#43;block@5fb8482a3b764ce0903e2c424842d32f/block-v1:LinuxFoundationX&amp;#43;LFS182x&amp;#43;2T2022&amp;#43;type@vertical&amp;#43;block@2e3388391d6040f5beb5bacbf19f96f5"&gt;lab in chapter 5&lt;/a&gt; of the Linux Foundation &lt;a href="https://learning.edx.org/course/course-v1:LinuxFoundationX&amp;#43;LFS182x&amp;#43;2T2022/home"&gt;Sigstore course&lt;/a&gt;.&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;This tutorial will bring some of the components of Sigstore together in an example project. In this demonstration, we’ll be using GitHub Actions to perform keyless signing on a sample container. In this example, we’ll use a Django container that displays a generic “Hello, World” style landing page. Django is a Python web framework.&lt;/p&gt;</description></item><item><title>Cosign</title><link>https://deploy-preview-3419--ornate-narwhal-088216.netlify.app/open-source/sigstore/cosign/</link><pubDate>Mon, 29 Jul 2024 15:12:18 +0000</pubDate><guid>https://deploy-preview-3419--ornate-narwhal-088216.netlify.app/open-source/sigstore/cosign/</guid><description>&lt;p&gt;A Sigstore tool used to sign and verify software artifacts&lt;/p&gt;</description></item><item><title>Policy Controller</title><link>https://deploy-preview-3419--ornate-narwhal-088216.netlify.app/open-source/sigstore/policy-controller/</link><pubDate>Tue, 21 Feb 2023 13:05:12 +0812</pubDate><guid>https://deploy-preview-3419--ornate-narwhal-088216.netlify.app/open-source/sigstore/policy-controller/</guid><description>&lt;p&gt;A Kubernetes admission controller used to validate signatures and attestations on container images as well as enforce policies using CUE or Rego languages.&lt;/p&gt;</description></item><item><title>Fulcio</title><link>https://deploy-preview-3419--ornate-narwhal-088216.netlify.app/open-source/sigstore/fulcio/</link><pubDate>Tue, 06 Oct 2020 08:49:15 +0000</pubDate><guid>https://deploy-preview-3419--ornate-narwhal-088216.netlify.app/open-source/sigstore/fulcio/</guid><description>&lt;p&gt;A new kind of root certificate authority for code signing&lt;/p&gt;</description></item><item><title>Rekor</title><link>https://deploy-preview-3419--ornate-narwhal-088216.netlify.app/open-source/sigstore/rekor/</link><pubDate>Tue, 06 Oct 2020 08:49:15 +0000</pubDate><guid>https://deploy-preview-3419--ornate-narwhal-088216.netlify.app/open-source/sigstore/rekor/</guid><description>&lt;p&gt;An immutable, tamper-resistant ledger of metadata generated within a software project’s supply chain&lt;/p&gt;</description></item></channel></rss>