Event language
UI language
<p>Canonical’s ethos is based on the fact that open source has always been about freedom of choice and broad access. Anyone can use the software. Anyone can improve it. We want secure, reliable software to be available to everyone. Not just experts. <strong>Containers</strong> now sit at the center of modern application delivery. But, they also sit at the center of modern security risk. The main challenge is that most containers are shipped with unused packages and old dependencies, and so expose large attack surfaces. Most developers aren’t OS or security specialists, that’s why they need tools to easily build secure containers.</p><p>Here, we introduce <strong>Rockcraft</strong> and <strong>Chisel</strong>, two Ubuntu-native, open source tools designed to make secure, minimal, and reproducible container images, and promoted by a rapidly growing community.</p><p></p><ul><li><strong>Rockcraft</strong> is the tool that helps you build OCI-compliant “rocks”: declarative, reproducible container images with first-class integration with Chisel.</li><li><strong>Chisel</strong> allows developers to build “slices” of the Ubuntu root filesystem, producing highly minimal, hardened images without compromising usability.</li></ul><p></p><p> </p><p>This talk is <strong>beginner-friendly</strong> and <strong>practical</strong>. I will compare and <strong>demo</strong> this approach with familiar strategies like <strong>distroless images, slim variants, and `FROM scratch` builds</strong>. We’ll look at how Rockcraft + Chisel fit into this existing ecosystem, and where they shine. You can integrate them into existing software delivery pipelines, and democratize container security. Secure open source, made accessible to everyone.</p>