falcosecurity / falco-website

Source code of the official Falco website
https://falco.org
Creative Commons Attribution 4.0 International
35 stars 221 forks source link

Blog about Falco artifacts signing and signature verification #1153

Closed maxgio92 closed 1 year ago

maxgio92 commented 1 year ago

/area blog

What would you like to be added:

A blog about the signing of the Falco artifacts (plugins and rule set) and related transparent verification of the artifacts' signatures, as OCI artifacts.

The blog should explain:

Why is this needed:

The blog is needed and is important to share with the community that the Falco ecosystem continuously improve supply chain security.

Additional context:

For reference about the discussion and the decisions made on Falco artifacts signing and signature verification, please refer to https://github.com/falcosecurity/falcoctl/issues/174.

Individual works spanned across:

maxgio92 commented 1 year ago

/assign

maxgio92 commented 1 year ago

As discussed with @LucaGuerra we'd like to work on this.

LucaGuerra commented 1 year ago

I will be very happy to work with Max on this. Thank you for tracking it :pray:

LucaGuerra commented 1 year ago

/assign