Changelog Interviews

Reproducible builds and secure software


Listen Later

Chris Lamb joined the show to talk about his project Reproducible Builds — which is funded by The Linux Foundation’s Core Infrastructure Initiative. We talked about the importance of having a verifiable path from source code to compiled binary, what this set of software development practices is all about, what it means to have Reproducible Builds, the challenges faced when implementing these development practices, and the inherent security you gain from them.

Join the discussion

Changelog++ members support our work, get closer to the metal, and make the ads disappear. Join today!

Sponsors:

  • GoCD – GoCD is an on-premise open source continuous delivery server created by ThoughtWorks that lets you automate and streamline your build-test-release cycle for reliable, continuous delivery of your product.
  • Flatiron – Are you ready to take the first step to being full-time programmer? Enroll in the FREE Bootcamp Prep course from Flatiron. Free enrollment is offered to the first 500 students only. So if you’re considering enrollment, don’t waste any time. Use our special link when you enroll to get $500 off your first month’s tuition when you move on to a career or certificate course.
  • LinodeOur cloud server of choice! Get one of the fastest, most efficient SSD cloud servers for only $10/mo. We host everything we do on Linode servers. Use the code changelog2017 to get 2 months free!
  • Featuring:

    • Chris Lamb – Website, GitHub, X
    • Adam Stacoviak – Website, GitHub, LinkedIn, Mastodon, X
    • Jerod Santo – GitHub, LinkedIn, Mastodon, X

    Show Notes:

    • This show began as an issue on GitHub
    • The Linux Foundation’s Core Infrastructure Initiative Funds the Reproducible Builds Project
    • Reproducible Builds
    • apt-secure (Ubuntu)
    • apt-secure (Debian)
    • thread.com
    • Something missing or broken? PRs welcome!

      ...more
      View all episodesView all episodes
      Download on the App Store

      Changelog InterviewsBy Changelog Media

      • 5
      • 5
      • 5
      • 5
      • 5

      5

      5 ratings


      More shows like Changelog Interviews

      View all
      Planet Money by NPR

      Planet Money

      30,839 Listeners

      The Changelog: Software Development, Open Source by Changelog Media

      The Changelog: Software Development, Open Source

      284 Listeners

      Conversations with Tyler by Mercatus Center at George Mason University

      Conversations with Tyler

      2,395 Listeners

      Twenty Thousand Hertz by Dallas Taylor

      Twenty Thousand Hertz

      3,926 Listeners

      Python Bytes by Michael Kennedy and Brian Okken

      Python Bytes

      215 Listeners

      NVIDIA AI Podcast by NVIDIA

      NVIDIA AI Podcast

      331 Listeners

      Syntax - Tasty Web Development Treats by Wes Bos & Scott Tolinski - Full Stack JavaScript Web Developers

      Syntax - Tasty Web Development Treats

      987 Listeners

      Darknet Diaries by Jack Rhysider

      Darknet Diaries

      7,879 Listeners

      Sean Carroll's Mindscape: Science, Society, Philosophy, Culture, Arts, and Ideas by Sean Carroll | Wondery

      Sean Carroll's Mindscape: Science, Society, Philosophy, Culture, Arts, and Ideas

      4,142 Listeners

      Practical AI by Practical AI LLC

      Practical AI

      192 Listeners

      Dwarkesh Podcast by Dwarkesh Patel

      Dwarkesh Podcast

      417 Listeners

      Oxide and Friends by Oxide Computer Company

      Oxide and Friends

      47 Listeners

      The AI Daily Brief (Formerly The AI Breakdown): Artificial Intelligence News and Analysis by Nathaniel Whittemore

      The AI Daily Brief (Formerly The AI Breakdown): Artificial Intelligence News and Analysis

      485 Listeners

      Changelog News by Changelog Media

      Changelog News

      13 Listeners

      Changelog & Friends by Changelog Media

      Changelog & Friends

      2 Listeners