Skip to content

Steve Lasker

Main navigation
  • Home
  • Contact

Category Archive: Artifacts

Signed, Sealed, and Distributed

S S Read More

Supply chains need to securely distribute artifacts from a source to one or more destinations. Assuring the integrity is signed, sealed and delivered is a key capability.

February 22, 2023 Artifacts, Security, Supply Chain Security, Uncategorized

Initiators of Supply Chain Incidents

S S Read More

When describing mitigations to supply chain security incidents, it helps to categorize how different incidents may be initiated. Based on the category, different mitigation strategies are more likely to be effective.

January 31, 2023 Artifacts, Security, Supply Chain Security, Tips

Roles and Responsibilities of Signing, SBoMs, and Security Scanners

S S Read More

As cloud-native development continues to automate the consumption of upstream content providers, the ability for automation to make […]

January 11, 2022 Artifacts, CNCF, Docker, Notary v2, OCI, Security, Tips

Separating Identity From Location

Adopting cloud-native development has become synonymous with consuming public content. To be productive, and not “reinvent the wheel”, […]

September 24, 2021 Artifacts, CI/CD, CNCF, Container Registry, DevOps, Docker, Docker Registry, Notary v2, OCI, Security, Uncategorized

Artifact Services, the Case for a Generalized Package Manager

In this article I’ll offer a view for why any single new package manager isn’t a great idea, […]

August 26, 2021 Artifacts, CNCF, Container Registry, Docker Registry, OCI

Is It Time to Change How We Reference Container Images?

Every long journey begins with the first step.

October 21, 2020 Artifacts, Container Registry, Docker, Docker Registry, OCI, Security, Uncategorized

Consuming Upstream Content in Your Software or Service

S S Read More

Developers are increasingly contributing to and consuming more upstream content. However, as every community effort has proven, risks […]

September 1, 2020 Artifacts, Azure, CI/CD, Container Registry, DevOps, Docker, Docker Registry, Linux, Security, Tips

Registry Names, Namespaces, Images, Artifacts & Tags

Sailing is known for having a unique language. Why are image references so vague?

February 17, 2020 Artifacts, Container Registry, Docker, Docker Registry, OCI, Tips, Uncategorized

OCI Artifacts and a View of the Future

The future of OCI Artifacts: Cross Repo & Registry Signing, Catalog Search and Eventing APIs are some of the next things to come – with your help

August 25, 2019 Artifacts, Container Registry, DevOps, Docker Registry, OCI

OCI Artifact Authoring: Annotations & Config.json

When authoring OCI Artifacts, should I use Annotations or Config.json?

August 8, 2019 Artifacts, Container Registry, Docker Registry, OCI
Blog at WordPress.com.
  • Home
  • Contact
Secondary navigation
  • Home
  • Contact
  • Search

Begin typing your search above and press return to search. Press Esc to cancel.

  • Follow Following
    • Steve Lasker
    • Already have a WordPress.com account? Log in now.
    • Steve Lasker
    • Customize
    • Follow Following
    • Sign up
    • Log in
    • Report this content
    • View site in Reader
    • Manage subscriptions
    • Collapse this bar