Synopsis Black Duck is an open source management solution that enables you
to create rules to govern your use of open source components.
The Synopsis Black Duck GKE Binary Authorization solution
creates Binary Authorization attestations based on Black Duck policy rules.
CloudBees CI is a continuous integration (CI) solution that manages
Jenkins-based CI pipelines. You can use CloudBees CI with Jenkins to build
and sign container images and to create Binary Authorization attestations.
CircleCI is a CI platform. You can use CircleCI to set up
Binary Authorization policies, create signing keys, build and sign container images,
and create Binary Authorization attestations.
Digester
is a Google-developed open source tool that automatically resolves tags to
image digests and adds the digests to Kubernetes resources. Binary Authorization
matches these digests with attestations. Digester resolves tags
for container and init container images in Kubernetes Pod and Pod template
specs.
Terraform
Terraform is an
infrastructure management platform.
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-03-05 UTC."],[[["This page lists third-party tools that integrate with Binary Authorization, including solutions for automating signing, managing open-source components, and continuous integration."],["Binx.io offers automation for signing based on vulnerability findings through the use of Terraform, Kritis Signer, and Cloud Run."],["Synopsis Black Duck allows the creation of Binary Authorization attestations based on open-source component policy rules."],["CloudBees CI and CircleCI both facilitate using Binary Authorization policies, with CloudBees CI managing Jenkins-based pipelines, and CircleCI serving as a CI platform for building and signing container images."],["Digester is a Google-developed tool that resolves image tags to digests, which are then matched by Binary Authorization to verify attestations."]]],[]]