Home / Companies / JFrog / Blog / April 2020

April 2020 Summaries

6 posts from JFrog

Filter
Month: Year:
Post Summaries Back to Blog
In agile development, maintaining a continuous loop of planning, coding, and building is crucial for optimizing workflow speed, but disruptions in this cycle can hinder progress. JFrog's integrations with Atlassian Bitbucket Server and Jira aim to enhance this process by providing visibility and traceability in the DevOps pipeline. The integration allows users to track their compiled binaries within Bitbucket Server, linking source code changes in Bitbucket to builds in Artifactory with associated build information, including commit hashes. This setup facilitates a seamless connection from Bitbucket commits to Artifactory builds and finally to Jira issues, ensuring that each part of the development process is interconnected. By leveraging these integrations, developers can create a more unified system for managing application projects, reducing the divide between code and builds, and providing a comprehensive view of the entire development and deployment process.
Apr 27, 2020 500 words in the original blog post.
The blog post provides an overview of how to use JFrog CLI with JFrog Distribution workflows, emphasizing JFrog Distribution's role in managing software releases on a centralized platform for secure distribution to remote locations. It introduces the JFrog CLI as a user-friendly client for simplifying interactions with JFrog solutions, supporting Distribution 2.x commands from version 1.35.1 onwards. The article details the process of creating, updating, signing, distributing, and deleting Release Bundles, highlighting key commands and configurations needed for each step, such as using a GPG key for signing and specifying distribution rules for deployment. Additionally, it offers troubleshooting tips by setting the log level to debug for more detailed command-line messages.
Apr 22, 2020 646 words in the original blog post.
JFrog has updated its software supply chain platform to enhance global DevSecOps capabilities on the AWS Marketplace, ensuring safe and efficient software updates. The platform offers a comprehensive suite of DevOps tools, including JFrog Artifactory for managing binary repositories, JFrog Xray for vulnerability scanning, and JFrog Pipelines for CI/CD automation. These features provide enterprise accounts with the necessary resources for rapid builds and software distribution across teams, supported by Artifactory's compatibility with over 30 package types and enhanced security measures. Additionally, the platform offers features like SAML SSO support, multi-site replication, and high-volume distribution via Amazon CloudFront CDN. The inclusion of JFrog Projects facilitates project resource and user management, while Xray integrates security vulnerability analysis to ensure safe deployment of applications. A trial on AWS includes the JFrog Security Pack, featuring SCIM ID management, third-party vault integration, AWS PrivateLink, and advanced security and compliance tools, all aimed at streamlining DevSecOps processes for enterprises.
Apr 20, 2020 361 words in the original blog post.
Installing or updating JFrog Artifactory on Microsoft Azure can be simplified by using the Azure Marketplace, which offers a streamlined process through an Azure ARM template, reducing the time and complexity typically involved in a manual setup. This method eliminates the need for extensive Azure and Artifactory expertise by automating the creation of necessary components such as virtual networks, network interfaces, and load balancers, and configuring registry settings. The process requires an active Azure subscription, available vCPUs, Artifactory Enterprise licenses, and a domain name with an SSL certificate. Users can select from database options like new or existing Postgres or MSSQL instances and specify storage settings during the setup. Once the configuration is validated and deployment is initiated, it automatically sets up Artifactory, providing users with access through a Fully Qualified Domain Name and default login credentials, allowing them to integrate Artifactory into their DevOps strategy efficiently.
Apr 09, 2020 947 words in the original blog post.
JFrog IDE integrations enhance software security by providing developers with tools to scan project dependencies directly within their IDEs, identifying security vulnerabilities and license compliance issues early in the development process. These integrations support a range of environments, including Visual Studio Code, IntelliJ IDEA, WebStorm, PyCharm, Android Studio, GoLand, Eclipse, and Visual Studio, allowing developers to view a dependency tree, assess issue severity, and explore dependency details efficiently. By implementing a DevSecOps strategy and "shifting left," organizations can address potential threats like vulnerabilities and license violations at the onset, thereby mitigating risks and reducing costs. The tools provided by JFrog Xray facilitate proactive security measures by enabling filtering of scan results, highlighting transitive dependencies responsible for vulnerabilities, and offering quick access to dependency information, ultimately promoting more secure and efficient software delivery.
Apr 06, 2020 458 words in the original blog post.
Carl Quinn, a revered figure in the Java and DevOps communities, passed away, leaving a significant impact on those who knew him, including the JFrog community. Although he was never an official employee, Carl's influence was instrumental in shaping JFrog's early years, providing valuable feedback and championing innovations like the first Docker registry and the universal binary repository. He was known for his passion for technology and people, and his contributions extended across companies like Netflix, Riot Games, and Zoox. Carl was deeply involved with the community, often seen engaging and advocating for best practices, and was set to be the first participant in JFrog's "SuperFrogs" advocacy program. His legacy is marked by his dedication, kindness, and unwavering support for his peers, making him a beloved friend and mentor whose presence will be sorely missed but whose impact will endure.
Apr 03, 2020 565 words in the original blog post.