Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

CNCF [Cloud Native Computing Foundation]

No Keys? No Problem - Why You Can Trust Sigstore Signatures

CNCF [Cloud Native Computing Foundation] via YouTube

Overview

Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
This talk explains how Sigstore’s public infrastructure supports trust in keyless software signatures, including its trust root and TUF operations. A demo tests a Sigstore client against a simulated compromise of critical components.

Syllabus

Intro
Sigstore Ecosystem
Where are the keys?
Compromise
Trust in Services
Key management requirements
TUF introduction - continued
TUF - Example deployment
Pictures of where TUF is used
Sigstore Community Root
Initial Root Trust
Ceremony Operations
Root Management
Sigstore TUF Target Layout
Sigstore Client Usage
Client integration
Client Ecosystem
Find out more

Taught by

CNCF [Cloud Native Computing Foundation]

Reviews

Start your review of No Keys? No Problem - Why You Can Trust Sigstore Signatures

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.