16 subscribers
התחל במצב לא מקוון עם האפליקציה Player FM !
פודקאסטים ששווה להאזין
בחסות


1 Richard (Kudo) Couto: The Hidden Horror Behind a Billion-Dollar Brand 42:18
DEVSECOPS Talks #17-2020 - Best Practices for Building Docker Images
Manage episode 314878030 series 3292115
This is the first episode in the new format - 30 minutes short and crisp episodes, i.e., less water and side discussions, focusing on the topic, duration under (well, almost under) 30 minutes. We hope you like it!
The topic of this episode is building docker images - automation, security, best practices.
In this episode, we discuss:
- Saving money with T3a family
- Building Docker images locally and in CI
- Setting up deamonless Docker builds for CI and k8s
- Using multistage builds to keep your images nice and clean as well as encapsulate the build environment and make it portable
- Passing secrets to Docker build and inspecting image layers for secrets (ssh-agent and many more)
- Keeping Docker images updated with dependencies and updates
- Scanning Docker images for vulnerabilities
- Docker image layers caching - doing it right
- DockerHub is to delete old images stored for free, and GitHub is ready to host them for you
- Docker image naming so you can find all you need to debug quickly
In some of the information overlaps with episode #3 but greatly extends information provided before https://devsecops.fm/episodes/docker-secure-build/
Visit https://devsecops.fm to see show notes and https://gitter.im/devsecopstalks/community to join a discussion
79 פרקים
Manage episode 314878030 series 3292115
This is the first episode in the new format - 30 minutes short and crisp episodes, i.e., less water and side discussions, focusing on the topic, duration under (well, almost under) 30 minutes. We hope you like it!
The topic of this episode is building docker images - automation, security, best practices.
In this episode, we discuss:
- Saving money with T3a family
- Building Docker images locally and in CI
- Setting up deamonless Docker builds for CI and k8s
- Using multistage builds to keep your images nice and clean as well as encapsulate the build environment and make it portable
- Passing secrets to Docker build and inspecting image layers for secrets (ssh-agent and many more)
- Keeping Docker images updated with dependencies and updates
- Scanning Docker images for vulnerabilities
- Docker image layers caching - doing it right
- DockerHub is to delete old images stored for free, and GitHub is ready to host them for you
- Docker image naming so you can find all you need to debug quickly
In some of the information overlaps with episode #3 but greatly extends information provided before https://devsecops.fm/episodes/docker-secure-build/
Visit https://devsecops.fm to see show notes and https://gitter.im/devsecopstalks/community to join a discussion
79 פרקים
כל הפרקים
×
1 #79 - Going Local: What’S Driving The Move? 20:31

1 #78 - Building AI Tools For IaC Compliance 41:12

1 #77 - Chaos Engineering Explained: Part 2 34:30

1 #76 - Chaos Engineering Explained: Part 1 26:29

1 #75 - Learning from the Crisis: Post-Incident Actions 24:18

1 #74 - From Preparation To Execution: Handling An Active Incident 27:50

1 #73 - Incident Response: Key Preparations You Need 38:23

1 #72 - AWS Resource Control Policies (RCPs) 21:25

1 #71 - Unpacking The Dora Accelerate State Of Devops Report 40:49

1 #66 - Multi-Account Strategy And Landing Zones: Account Segmentation Approaches For Security And Efficiency On AWS 58:14

1 #65 - Understanding Nats: An Explainer Of Its Features And Capabilities 37:18

1 DEVSECOPS Talks #64 - From Terraform To Opentofu: Story From The Trenches 39:40

1 DEVSECOPS Talks #63 - Yet Another AI Episode 34:36

1 DEVSECOPS Talks #62 - The DevSecOps Perspective: Key Takeaways From Re:Invent 2023 33:22

1 DEVSECOPS Talks #61 - GitHub Actions And Evolution Of CI/CD Tools 46:21

1 DEVSECOPS Talks #60 - ChatGPT Anniversary: Where Are We With AI In Our Everyday Work 41:37

1 DEVSECOPS Talks #59 - Migration Off The Cloud: To Leave or Not to Leave? 29:41

1 DEVSECOPS Talks #58 - AWS CDK with Igor Soroka 40:03

1 DEVSECOPS Talks #57 - Terraform Best Practices with Ben Goodman 36:38

1 DEVSECOPS Talks #56 - Backstage and Internal Development Platforms (IDP) 36:02

1 DEVSECOPS Talks #55 - Unpacking System Initiative with Paul Stack 57:47

1 DEVSECOPS Talks #54 - HashiCorp’s BSL Move and OpenTF: What DevSecOps Practitioners Need to Know 33:36

1 DEVSECOPS Talks #53 - Open Software Supply Chain Attack Reference Framework with Neatsun 49:22

1 DEVSECOPS Talks #52 - Lingon a.k.a Juliens and Jacobs open source project 37:32

1 DEVSECOPS Talks #51 - Provisioning bare-metal servers 48:56

1 DEVSECOPS Talks #50 - History of AWS networking and new ways to design your VPC setup 31:10
ברוכים הבאים אל Player FM!
Player FM סורק את האינטרנט עבור פודקאסטים באיכות גבוהה בשבילכם כדי שתהנו מהם כרגע. זה יישום הפודקאסט הטוב ביותר והוא עובד על אנדרואיד, iPhone ואינטרנט. הירשמו לסנכרון מנויים במכשירים שונים.