Amazon ECR now supports managed container image signing

Amazon ECR Managed Container Image Signing
Amazon ECR now supports managed container image signing to enhance security and reduce operational overhead. Container image signing verifies images are from trusted sources. Managed signing simplifies setup with just a few clicks or an API call.
To start, create a signing rule with an AWS Signer profile specifying parameters like signature validity period and repositories. ECR automatically signs images using the identity of the entity pushing the image. AWS Signer handles key material and certificate lifecycle management, and all operations are logged through CloudTrail.
What to do
- Create a signing rule with an AWS Signer profile.
- Configure parameters such as signature validity period and repositories.
- Enable automatic signing in the ECR Console or via API.
Source: AWS release notes
If you need further guidance on AWS, our experts are available at AWS@westloop.io. You may also reach us by submitting the Contact Us form.



