ç¹é·
Docker Hardened ImagesïŒDHIïŒã¯ãåãªããããã«ãªããŒã¹ã€ã¡ãŒãžãã¢ããªã±ãŒã·ã§ã³ã€ã¡ãŒãžãè¶ ããŠãããŒããã³ã°ãããåæèšå®ã眲åä»ãã¡ã¿ããŒã¿ãå¹ åºããšã³ã·ã¹ãã ãšã®äºææ§ãåããŠããŸãã
åäžã®ãµãŒãã¹ãä¿è·ããå Žåã§ããçµç¹å šäœã§ã³ã³ãã©ã€ã¢ã³ã¹ç®¡çãå°å ¥ããå Žåã§ãããã®ã»ã¯ã·ã§ã³ã§ã¯ DHI ãæ¬çªç°å¢ã«é©ããéžæè¢ã«ããŠããäž»èŠãªç¹é·ã玹ä»ããŸãã
äž»èŠãªç¹é·ã確èªãã
ããŒããã³ã°ãããã»ãã¥ã¢ã€ã¡ãŒãž
Docker Hardened Images ãè匱æ§ãåæžããé root å®è¡ã匷å¶ãããµãã©ã€ãã§ãŒã³ã»ãã¥ãªãã£ã®ããã« SLSA æºæ ã¡ã¿ããŒã¿ãå«ãä»çµã¿ã«ã€ããŠåŠã³ãŸãããã
ã·ãŒã ã¬ã¹ãªçµ±å
Docker Hardened Images ã CI/CD ãã€ãã©ã€ã³ãè匱æ§ã¹ãã£ããã³ã³ããã¬ãžã¹ããªãªã©ã®ããŒã«ãã§ãŒã³ãšã©ã®ããã«çµ±åãããããã玹ä»ããŸãã
ãšã³ã¿ãŒãã©ã€ãºãµããŒã
ãšã³ã¿ãŒãã©ã€ãºãµããŒãããã³ SLA ã«åºã¥ãæŽæ°ããªã·ãŒã«ã€ããŠåŠã³ãŸãããã
ç¶ç¶çãªãããé©çšãšã»ãã¥ã¢ãªä¿å®
Docker Hardened Images ãã»ãã¥ãªãã£ãããã«ãã£ãŠç¶ç¶çã«æŽæ°ãããé·æçã«ã»ãã¥ãªãã£ãç¶æã§ããããã¿ã«ã€ããŠã玹ä»ããŸãã
æè»ãªãªããžããªããŒã¹ã®äŸ¡æ Œäœç³»
Docker Hardened Images ããã€ã¡ãŒãžåäœã pull æ°ã«å¶éã®ãªãããªããžããªåäœã®æè»ãªäŸ¡æ Œã¢ãã«ãæäŸããŠããããšãåŠã³ãŸãããã