From the course: DevOps Foundations: DevSecOps
Unlock this course with a free trial
Join today to access over 25,500 courses taught by industry experts.
Real-life examples
From the course: DevOps Foundations: DevSecOps
Real-life examples
- [Instructor] In this video, we're going to take what we've learned and put it together. We've talked about building a CICD pipeline, doing static scanning inside of your pipeline, why APIs are so important. And now we're going to put it together and use a sample application to do vulnerability security testing. And when we do it, we're going to do it in a DevSecOps friendly way from the command line. So let's walk through the setup. First, go to aikido.dev, and click on start for free. Fill out that information and set up an account. When it asks you, "Do you want to connect your local repository," just say you want to do local scanning for now. After that, we want to download the Webgoat docker image. If you haven't installed Docker before, install the Docker application that works for your operating system. Once you do that, you can use this Docker pull command to pull down the latest Webgoat instance. Webgoat is a purposely vulnerable web application. It has vulnerabilities that…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.