Loading…
Seattle, WA
December 10–13, 2018
Click Here for More Information & Registration
View Venue Map
Tuesday, December 11 • 1:45pm - 2:20pm
Intro: TUF/Notary - Justin Cappos, NYU & Justin Cormack, Docker

Sign up or log in to save this to your schedule and see who's attending!

Feedback form is now closed.
Software distribution and packaging systems are rapidly becoming the weak link in the software lifecycle. This talk provides an accessible overview of two CNCF projects (Notary and TUF), that provide what has been roundly described as the most secure mechanism for distributing software. Notary, which implements the TUF specification, signs and transparently validates metadata to enable the system to recover from the compromise of servers, theft of keys, insider attacks, etc. Notary / TUF are surprisingly easy to use and used to provide cutting edge security not only across major cloud companies, but a diverse set of adopters, including automobiles. WARNING: Attending this talk may cause (justifiable) fear in the software update mechanism on your devices!

Speakers
avatar for Justin Cappos

Justin Cappos

Professor, NYU
Justin Cappos is a professor in the Computer Science and Engineering department at New York University, who strives to provide service to society through technology. Justin's research philosophy focuses on solving real world security problems in practice. He and his students often... Read More →
avatar for Justin Cormack

Justin Cormack

Security Lead, Docker
Justin Cormack is security lead at Docker, a maintainer on the CNCF's Notary project, and a contributor to the CNCF SIG Security. He is particularly interested in container security, application isolation, authentication, policy and supply chain security. He has spoken at several... Read More →


Tuesday December 11, 2018 1:45pm - 2:20pm
3 A/B