-
Securing Gradle BuildsCourse ObjectivesCourse Overview
-
Securing RepositoriesUsing Trusted RepositoriesRepository Content Filtering
-
Securing DependenciesChecking for Known CVEsChecksum VerificationSignature Verification
-
Securing GradleVerify Wrapper and Binary
-
Securing Build ProcessDevelocity Provenance Governor
-
FeedbackSurvey
There are several methods malicious attackers use to compromise your products, even through your builds. Gradle provides a number of feature to protect your builds against attackers. Take this course to learn how to enable these features for your builds.
What You'll Learn:
Centralizing repository configuration:
For large projects with many subprojects, it can be hard to vet all the repositories
Learn how to centralize the repository definitions to help only trusted repositories are used
Verifying dependencies:
Learn how to be alerted when CVEs are discovered in dependencies
Enable Gradle features to validate and authenticate dependencies
Protect Gradle binaries:
Attackers have been known to try to replace Gradle binaries to compromise builds
Learn how to enable features to protect against this
Prerequisites:
Gradle Build Tool experience, including knowledge of core concepts and authoring build files (Kotlin DSL experience a plus)
By the end of this course, you'll be able to:
Better secure your Gradle builds
Enroll today and enhance your Gradle Build Tool skills to gain deeper insights into your builds and improve your development workflow!