Overview
This document will walk users through the process of creating and submitting an image for Iron Bank. Failure to comply with the following requirements could lead to pipeline failures and/or delays in the process.
Repository Structure
Project layout and required files
Hardening Manifest
Project metadata and build configuration
Choosing a Base Image
Defines available base images and usage
Dockerfile Requirements
Best practices and security requirements for images
Justifications
How to submit justifications and tips for what to include
Automating Updates
How to handle version updates automatically
Verified Publisher Program
How to submit images directly to pipeline as a Verified Publisher