Hardened Docker Desktop
Hardened Docker Desktop ã¯ãDocker Business å¥çŽãæã€é¡§å®¢ã®ã¿ãå©çšå¯èœã§ãã
Hardened Docker Desktop ã¯ãéçºè ã®ç°å¢ã«ãããã»ãã¥ãªãã£ãåäžãããããã«èšèšãããäžé£ã®ã»ãã¥ãªãã£æ©èœã§ãããéçºè ã®äœéšãçç£æ§ã«æå°éã®åœ±é¿ãäžããããé æ ®ãããŠããŸãã
ããã«ãããå³æ Œãªã»ãã¥ãªãã£èšå®ãé©çšããéçºè ããã®ã³ã³ãããæå³çãŸãã¯å¶çºçã«ãããã®å¶åŸ¡ãåé¿ããã®ãé²ãããšãã§ããŸãããŸããã³ã³ããã®åé¢ã匷åããããšã§ãDocker Desktop ã® Linux VM ããã®åºç€ãšãªããã¹ãã«æªæã®ãããã€ããŒããäŸµå ¥ãããªã¹ã¯ã軜æžã§ããŸãã
Hardened Docker Desktop ã§ã¯ãDocker Desktop ã®èšå®ã«é¢ãã管ç責任ã Organization ã«ç§»è¡ããŸããããã«ãããèšå®ããã»ãã¥ãªãã£å¶åŸ¡ã¯ Docker Desktop ã®å©çšè ã«ãã£ãŠå€æŽãããããšã¯ãããŸããã
ãã®æ©èœã¯ä»¥äžã®ãããªã»ãã¥ãªãã£æèã®é«ã Organization åãã§ã:
-
ãŠãŒã¶ãŒã«å¯ŸããŠã«ãŒãæš©éã管çè æš©éãäžããŠããªã
-
Docker Desktop ã Organization ã®äžå€®ç®¡çäžã«çœ®ããã
-
ç¹å®ã®ã³ã³ãã©ã€ã¢ã³ã¹èŠä»¶ãæºããå¿ èŠããã
Organization ã«ã©ã®ãããªã¡ãªãããããã®ãïŒ
Hardened Desktop ã®æ©èœã¯åå¥ã«åäœããŸãããçžäºã«é£æºããŠå€å±€é²åŸ¡æŠç¥ãæ§ç¯ããéçºè ã®äœæ¥ç°å¢ãããŸããŸãªæ©èœå±€ïŒDocker Desktop ã®èšå®ãã³ã³ããã€ã¡ãŒãžã®ååŸãã³ã³ããã€ã¡ãŒãžã®å®è¡ïŒã«ãããæœåšçãªæ»æããä¿è·ããŸãããã®å€å±€é²åŸ¡ã¢ãããŒãã«ãããå æ¬çãªã»ãã¥ãªãã£ãå®çŸããŸãããŸãã以äžã®ãããªè åšã軜æžããŸã:
-
ãã«ãŠã§ã¢ããµãã©ã€ãã§ãŒã³æ»æ: Registry Access Management ã Image Access Management ã«ãããéçºè ãç¹å®ã®ã³ã³ããã¬ãžã¹ããªãã€ã¡ãŒãžã¿ã€ãã«ã¢ã¯ã»ã¹ããã®ãå¶éããæªæã®ãããã€ããŒãã®ãªã¹ã¯ãå€§å¹ ã«äœæžããŸãããŸããEnhanced Container IsolationïŒECIïŒã«ãããLinux ãŠãŒã¶ãŒããŒã ã¹ããŒã¹å ã§ã«ãŒãæš©éãªãã§ã³ã³ãããå®è¡ããããšã§ãæªæã®ãããã€ããŒããå«ãã³ã³ããã®åœ±é¿ãæããŸãã
-
ã©ãã©ã«ã ãŒãã¡ã³ãïŒæ°Žå¹³ç§»åïŒ: Air-gapped containers ã䜿çšãããšãã³ã³ããã®ãããã¯ãŒã¯ã¢ã¯ã»ã¹å¶éãèšå®ã§ããæªæã®ããã³ã³ããã Organization å ã®ãããã¯ãŒã¯ã§ã©ãã©ã«ã ãŒãã¡ã³ãïŒæ°Žå¹³ç§»åïŒãè¡ãã®ãé²ãããšãã§ããŸãã
-
å éšããã®è åš: Settings Management ã«ãããDocker Desktop ã®ããŸããŸãªèšå®ãæ§æã»åºå®ããäŒæ¥ããªã·ãŒã匷å¶çã«é©çšããããšã§ãéçºè ãæå³çãŸãã¯å¶çºçã«å®å šæ§ã®äœãèšå®ãå°å ¥ããã®ãé²ããŸãã
Settings Management
Settings Management ã掻çšããŠãéçºè ã®ã¯ãŒã¯ãããŒãã©ã®ããã«ä¿è·ã§ããããåŠã³ãŸãããã
Enhanced Container Isolation (匷åãããã³ã³ããåé¢)
Enhanced Container Isolation (匷åãããã³ã³ããåé¢)ãã©ã®ããã«ã³ã³ããæ»æãé²ãã®ããç解ããŸãããã
Registry Access Management
Docker Desktop 䜿çšæã«ãéçºè ãã¢ã¯ã»ã¹ã§ããã¬ãžã¹ããªãå¶åŸ¡ããã
Image Access Management
éçºè ã Docker Hub ãããã«ã§ããã€ã¡ãŒãžãå¶åŸ¡ããã