Language Selection

English French German Italian Portuguese Spanish

Ubuntu Linux maker Canonical publishes curated container images to help secure software supply chains

Filed under
Linux
Ubuntu

A good deal of software development now relies on open source images, but it can be hard for businesses to know if they're introducing security flaws by using them.

Canonical -- the company behind Ubuntu Linux -- is addressing this by publishing the LTS (Long Term Support) Docker Image Portfolio, a curated set of secure container application images, on Docker Hub.

LTS Images are built on trusted infrastructure, in a secure environment, with guarantees of stable security updates. Canonical and Docker will collaborate on Docker Official Images and the LTS Docker Image Portfolio to bring the best of the two to the community and ecosystem. The entire LTS Docker Image Portfolio will also be exempted from per-user rate limits.

Read more

Canonical publishes LTS Docker Image Portfolio on Docker Hub

  • Canonical publishes LTS Docker Image Portfolio on Docker Hub

    The LTS Docker Image Portfolio comes with up to ten years Extended Security Maintenance by Canonical. “LTS Images are built on trusted infrastructure, in a secure environment, with guarantees of stable security updates,” said Mark Lewis, VP Application Services at Canonical. “They offer a new level of container provenance and assurance to organisations making the shift to container based operations.”

    Canonical and Docker will collaborate on Docker Official Images and LTS Docker Image Portfolio to bring the best of the two to the community and ecosystem. The entire LTS Docker Image Portfolio will be exempted from per-user rate limits.

Canonical publishes set of secure container application images

  • Canonical publishes set of secure container application images

    The LTS Docker Image Portfolio comes with up to ten years Extended Security Maintenance by Canonical. “LTS Images are built on trusted infrastructure, in a secure environment, with guarantees of stable security updates,” said Mark Lewis, VP Application Services at Canonical.

    “They offer a new level of container provenance and assurance to organizations making the shift to container based operations.”

    Canonical and Docker will collaborate on Docker Official Images and LTS Docker Image Portfolio to bring the best of the two to the community and ecosystem. The entire LTS Docker Image Portfolio will be exempted from per-user rate limits.

Canonical becoming blob publisher

  • Canonical Becomes A Docker Verified Publisher

    Canonical has teamed up with Docker to distribute its free and commercial software through Docker Hub as a Docker Verified Publisher.

    The collaboration will ensure that hardened free and commercial Ubuntu images will be available to all developer software supply chains for multi-cloud app development.

Comment viewing options

Select your preferred way to display the comments and click "Save settings" to activate your changes.

More in Tux Machines

Distrowatch is Not a Measure of Popularity

Here’s a fun blog post where I get possibly irrationally annoyed by people who use a web page incorrectly. Let me get this off my chest and then move on to better topics tomorrow. Distrowatch is a popular website among Linux enthusiasts. The main page consists of reverse-chronological news articles of interest to Linux users. Often this consists of new stable and development release announcements, reviews and weekly roundups. Read more

Lenovo IdeaPad 3 - Windows and Linux experience a week later

Here we are. My initial satisfaction with the laptop's default offering has gone down some. I am quite disappointed with how Microsoft chooses to promote Windows 10. Yes, it rules the desktop market, so it can do pretty much what it pleases, but this is a long game. And in the long game, they are not winning themselves any loyalty. If Linux ever achieves functionality parity, off I go. The same goes for Lenovo. I don't mind a vendor offering its tools and solutions. That's fine. But if I choose to have those tools removed, then there are no two ways about it. I'm most likely not going to buy any Lenovo machine again, because I don't appreciate being treated like a potato. In this regard, Linux does a much friendlier job - to be let down by random erraticism. I'm talking about the sound config I had to handle, plus the VLC quirk. And let's not forget Secure Boot - even though it does not affect my two installed distros at the moment. Hardware wise, the keyboard quirks are quite annoying, and the screen can do only so much. Other than that, the laptop is robust and neat, fast, and the CPU fans don't rev too much. The battery life is pretty good, but I need more data to verify if the original numbers hold true. Well, there you go. This is my satisfaction report a week into the laptop's usage. I am certain there will be more lovely surprises, twists and turns along the way, but then, part of the experience is figuring out issues early. This way, if and when I deploy software in my production setup, I will have all the right workarounds in place, and my seven-digit IQ will not be affected. Stay tuned for more good stuff. See ya. Read more

Genode OS Planning For PinePhone Bring-Up, Better GPU Support In 2021

For those wanting to run a micro-kernel operating system for your low-cost, open-source friendly PinePhone, the Genode OS framework plans to port to the PinePhone this year. Genode OS and its Sculpt general purpose platform are also wanting to better embrace GPU support in 2021. The Genode operating system framework that features an original, open-source micro-kernel abstraction layer and a set of user-space components in development since 2008, published their road-map for the year. Like many in the open-source community, Genode OS developers and users have been intrigued by PINE64's PinePhone that offers an Allwinner A64-powered open-source smartphone with 2GB of RAM, 16GB eMMC, and other basics for just $149~199 USD. While there are many Linux distributions supporting the PinePhone, Genode OS wants in on the action too and plans to port their operating system framework to it this year. They want Genode on PinePhone to serve as "a feature phone, covering basic web-browsing needs, placing calls, and SMS." Read more Also: Genode OS Framework is adding PinePhone support

KaOS Linux’s First ISO Release in 2021 Adds Linux Kernel 5.10 LTS and Qt 6

KaOS Linux 2021.01 is now available for download, the first ISO release of this KDE focused and desktop oriented rolling GNU/Linux distribution inspired by Arch Linux to ship with the latest and greatest Linux 5.10 LTS kernel series, which, as expected, provides state-of-the-art hardware support. In addition, KaOS Linux 2021.01 is the first ISO release to ship with the latest Qt 6 open-source and cross-platform application framework, which is already used by some apps, including Poppler, Qtkeychain, Qsynth, Strawberry, and others. Qt 6 is accompanied by the PyQt 6.0 stack, which includes PyQt6-sip, PyQt-Builder, and Sip 6. Read more