Proposals for automating management of Docker Images used with RedHat OpenShift and/or comparable docker container platforms. Managing vulnerabilities in Docker Image Registries can be a daunting task. New vulnerabilities are discovered at a rapid pace. Creating a trusted registry with clean images for production containers is challenging. We would like an automated system that pull from external image repositories, apply known remediations, scan for vulnerabilities and build them to trusted internal image registry. Though images may not be completely vulnerability free, the process can take them to a manageable level. This automated system should also be leverage in CI/CD pipelines.
- Related keywords
- docker
- image repository
- vulnerability management
- openshift
- redhat
- containers
- images
- continuous integration
- continuous deployment
- software pipeline
- Assets and opportunities to be offerred
<Assets>
Twistlock Vulnerability, NeuVector Network Security