Тёмный

T1S1 Rob Bos - How to use GitHub Actions with security in mind 

Developer Days
Подписаться 413
Просмотров 69
50% 1

When working in the real world with continuous integration / continuous deployment, you have to take care of your pipelines and the things they have access to.
- Who can push code into to an environment?
- Who could read and change the connection strings to the database?
- Who can create new resources in your cloud environment?
- Do you trust your third party extensions?
- What part of the network does your pipeline have access to?
I'll go over each of these aspects of your GitHub Actions Workflows and show you what to look for and how to improve your security stance without locking every DevOps engineer out.

Наука

Опубликовано:

 

11 дек 2021

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии    
Далее
Вопрос Ребром - Субо
49:41
Просмотров 970 тыс.
The moment we stopped understanding AI [AlexNet]
17:38
Просмотров 807 тыс.
T2S5 John Kilmister - Maze Generation for Fun in C#
41:47
The cloud is over-engineered and overpriced (no music)
14:39
Новодельный ноутбук Pocket386
1:16:17
How to Soldering wire in Factory ?
0:10
Просмотров 6 млн