Securing Docker Containers you own this product

prerequisites
experience creating Docker files with Dockerfile • fundamentals of Git and GitHub • basics of make scripts • basics of DockerHub
skills learned
security principles for containers • static analysis, dependency checking, and resource signing • custom security policies
Peter Sellars
4 weeks · 6-8 hours per week · BEGINNER

pro $24.99 per month

  • access to all Manning books, MEAPs, liveVideos, liveProjects, and audiobooks!
  • choose one free eBook per month to keep
  • exclusive 50% discount on all purchases

lite $19.99 per month

  • access to all Manning books, including MEAPs!

team

5, 10 or 20 seats+ for your team - learn more


Look inside
In this liveProject, you’ve just started a new role as a release engineer for the enterprise finance company FinShare. FinShare wants to modernize its outdated technology stack with containerization and you’ve been tasked with building an automated container workflow for future production use. But there’s a big catch: FinShare operates under some major regulatory requirements and any breaches in security could be disastrous for the company’s reputation and bottom line. Your challenge is to make sure that FinShare’s Docker containers are built to be secure, robust, and compliant. To do this, you’ll implement your security team’s requirements, identify and fix governance issues, create signed and trusted container images, and optimize your container builds—all based on the specialist guidance of your expert colleagues.
This project is designed for learning purposes and is not a complete, production-ready application or solution.

liveProject mentor Ganesh Swaminathan shares what he likes about the Manning liveProject platform.

book resources

When you start your liveProject, you get full access to the following books for 90 days.

project author

Peter Sellars
Pete is a platform engineer at HyprNZ and founder of Catosplace. He has many years of experience in building and operating containers. He has worked closely with security, governance and development teams to build secure, robust and verifiable containers across many business domains. Pete has spoken at DevOpsDays NZ and Container Camp, and he founded the Auckland Docker and Continuous Delivery Meetup. He has run Docker Birthday Hack Days and workshops in Auckland, New Zealand in his role as a Docker Community Leader.

prerequisites

This liveProject is for developers, SRE, or operational team members with experience creating Docker containers using Dockerfile. You will need a free DockerHub and GitHub account. To begin this liveProject, you will need to be familiar with:

TOOLS
  • Fundamentals of Git and GitHub
  • Basics of make scripts
  • Basics of DockerHub
  • Intermediate Docker CLI knowledge
  • Intermediate Dockerfile command awareness
  • Intermediate Markdown/YAML file creation and manipulation
TECHNIQUES
  • Basic Docker local filesystem mounting knowledge
  • Basic Docker run parameter passing techniques
  • Basic DockerHub push and pull capabilities
  • Basic Git push and pull capabilities
  • Basic make target creation
  • Experience creating Dockerfiles that build Docker Images
  • Experience running Docker containers requiring

you will learn

In this liveProject, you’ll learn fundamental development practices for building security into your Docker containers. These skills will ensure your containers are robust and compliant to best practices, and will give you a deeper understanding of software security principles in general.

  • Principle of Least Privilege and other security principles
  • Static analysis, dependency checking and resource signing
  • Custom-designed security and governance policies in automated builds pipelines
  • Optimization techniques such as multi-stage builds and scratch images
  • Inspect and extract container dependencies
  • Creating signed containers

features

Self-paced
You choose the schedule and decide how much time to invest as you build your project.
Project roadmap
Each project is divided into several achievable steps.
Get Help
While within the liveProject platform, get help from other participants and our expert mentors.
Compare with others
For each step, compare your deliverable to the solutions by the author and other participants.
book resources
Get full access to select books for 90 days. Permanent access to excerpts from Manning products are also included, as well as references to other resources.

choose your plan

team

monthly
annual
$49.99
$499.99
only $41.67 per month
  • five seats for your team
  • access to all Manning books, MEAPs, liveVideos, liveProjects, and audiobooks!
  • choose another free product every time you renew
  • choose twelve free products per year
  • exclusive 50% discount on all purchases
  • Securing Docker Containers project for free