æè»ãªãªããžããªåäœã®äŸ¡æ Œäœç³»
Docker Hardened Images ã¯ãã»ãã¥ãªãã£ãã³ã³ãã©ã€ã¢ã³ã¹ã ãã§ãªããéçšé¢ããã³ã³ã¹ãé¢ã§ã®å¹çæ§ãéèŠããŠèšèšãããŠããŸãã
ãªããžããªåäœã§èª²éãããã¢ãã«ã«ããã䜿çšéãšã³ã¹ããæ£ç¢ºã«ã³ã³ãããŒã«ã§ããŸãã
èªç±ã«éžã¹ããªããžããªãã©ãŒãªã³ã°
Docker Hardened Images ã§ã¯ããªããžããªåäœã§ãã©ãŒãè¡ãããšã§ã察å¿ãããã¹ãŠã®ã¿ã°ãããªã¢ã³ããããŒãžã§ã³ã«ã¢ã¯ã»ã¹ã§ããŸãã
ã©ã®ãªããžããªããã©ãŒãããã¯ãããŒãºã«å¿ããŠæè»ã«éžæå¯èœã§ãã
ãã®æè»æ§ã«ããããããžã§ã¯ãã®é²è¡ã«å¿ããŠç°å¢ãç«ã¡äžããããã©ã³ã¿ã€ã ãçµ±åããããã³ã¹ããé·æçã«ç®¡çããããšãã£ãéçšãå¯èœã«ãªããŸãã
åå¥ã®ã€ã¡ãŒãžã pull æ°ããšã®èª²éãæ°ã«ããå¿ èŠã¯ãããŸããã
ãã¹ãŠã®ããªã¢ã³ããšããŒãžã§ã³ã«ã¢ã¯ã»ã¹å¯èœ
Docker Hardened Image ã®ãªããžããªããã©ãŒãããšããã®ãªããžããªå ã§ãµããŒããããŠãããã¹ãŠã®ã¿ã°ã«ã¢ã¯ã»ã¹ã§ããŸãã
ããã«ã¯ãè€æ°ã®ããŒãžã§ã³ãããŒã¹ãã£ã¹ããªãã¥ãŒã·ã§ã³ïŒAlpine ã Debian ãªã©ïŒãããã³éçºçšïŒå®è¡æããªã¢ã³ããå«ãŸããŸãã
åãŠãŒã¹ã±ãŒã¹ã«æé©ãªã¿ã°ã远å ã³ã¹ããªãã§èªç±ã«éžæã§ããŸãã
ãã®æè»ãªä»çµã¿ã«ãããããŒã ã¯ã³ã¹ããèª²éæ§é ã«çžãããããšãªããã»ãã¥ã¢ãªã€ã¡ãŒãžãå®å¿ããŠæ¡çšã§ããŸãã
ããŒã å šäœã§ã®ã¢ã¯ã»ã¹å ±æ
äžåºŠãªããžããªããã©ãŒããã°ãOrganization å ã®èª°ã§ããã®ã€ã¡ãŒãžã pullãæ€èšŒãã¹ãã£ã³ãå®è¡ããããšãã§ããŸãã
å©çšéã«å¿ããè¿œå æéã¯çºçããŸããã
å¿ èŠãªãªããžããªã ãããã©ãŒããããŒã ã¯èªç±ã«æŽ»çšã§ããŸãã
ãã©ãããã©ãŒã ããŒã ã«ãšã£ãŠã®ã³ã¹ãå¹ç
ãã®èª²éã¢ãã«ã¯ããã©ãããã©ãŒã ããŒã ãã»ãã¥ãªãã£ããŒã ã«ãšã£ãŠäºç®ç®¡çãã·ã³ãã«ã«ããŸãã
åå¥ã®ã€ã¡ãŒãžãã¿ã°åäœã§å©çšç¶æ³ã远跡ããã®ã§ã¯ãªãã管ç察象ã®ãªããžããªåäœã§ã³ã¹ããææ¡ã§ãããããã»ãã¥ãªãã£ããªã·ãŒã®é©çšãããŒã ã®ã¢ã¯ã»ã¹ç®¡çãã³ã¹ã管çãäžå åã§ããŸãã